
Senior Software Engineer, AWS Cloud Infrastructure
Posted 21 hours ago

Posted 21 hours ago
This is a fully remote position, open to applicants in United States.
• Take ownership of and advance the AWS architecture for enterprise workloads, which includes multi-account foundations, landing zones/Control Tower, networking, security baselines, and shared platforms.
• Develop and enhance AWS governance frameworks, covering organizational structure, SCPs, tagging, cost management, compliance, audit readiness, and operational standards.
• Create and manage AWS identity and access solutions utilizing IAM, IAM Identity Center, and Microsoft Entra ID integrations for SSO, federation, role mapping, access reviews, and enforcing least privilege principles.
• Construct, secure, and run AWS platforms and full-stack services employing TypeScript and Python.
• Promote operational excellence through effective monitoring, alerting, dashboards, SLOs/SLIs, runbooks, incident response, and sustainable fixes.
• Engage in the on-call rotation and take responsibility for incidents until resolution and learning are achieved.
• Automate infrastructure and deployment processes utilizing Infrastructure as Code and CI/CD practices.
• Collaborate with engineering and IT teams to deliver secure, maintainable solutions and enhance production readiness.
• Provide mentorship to fellow engineers and advocate for best operational practices.
• Extensive senior-level experience in software engineering with significant hands-on expertise in building and operating production systems on AWS.
• Strong full-stack engineering skills in TypeScript and Python, covering APIs, services, tooling, and cloud automation.
• In-depth knowledge of AWS IAM, Organizations, VPC, EC2, ECS/EKS or Lambda, S3, RDS/DynamoDB, CloudWatch, KMS, Config, and GuardDuty.
• Capability to design and implement AWS governance at scale, which includes multi-account strategies, policy guardrails, access control, security standards, and operational controls.
• Solid understanding of AWS networking fundamentals, such as VPNs, peering, Transit Gateway, routing, DNS, and hybrid connectivity.
• Experience with enterprise SSO; preference for Microsoft Entra ID federation into AWS, including SAML/OIDC, IAM Identity Center, application and role mapping, and access lifecycle management.
• Background in regulated or audit-ready environments, encompassing change control, evidence and traceability, least privilege practices, and durable controls.
• Proven track record of operational ownership, including alerts, monitoring, incident response, reliability improvements, and post-incident engineering enhancements.
• Strong experience with Infrastructure as Code; familiarity with Pulumi and/or SST is preferred; knowledge of Terraform or AWS CDK is also acceptable.
• Experience with Bitbucket Pipelines and/or GitHub Actions.
• Proficient with modern AI coding and productivity tools, possessing the judgment to validate outputs, test changes, manage risks, and ensure production quality.
• Comfortable with regular computer and screen work, maintaining clear communication, basic hand coordination, focus, and occasional movement.
• 99% of the premium covered for medical, dental, and vision plans.
• Company-paid life insurance.
• Accidental Death & Dismemberment (AD&D) insurance.
• Disability benefits.
• Optional plans to tailor coverage to individual needs.
• Dollar-for-dollar 401(k) match up to 6% on eligible contributions.
• Long-term stock incentives.
• Employee Stock Purchase Plan (ESPP).
• Discretionary quarterly bonuses.
• Highly flexible wellness benefits.
• Generous paid time off (PTO).
• Paid holidays.
• Company-wide shutdowns.
LaunchDarkly
Incentivio
Cayuse Holdings
Capgemini
Get handpicked remote jobs straight to your inbox weekly.