Design and implement AWS multi-account architectures with robust governance, security controls, and compliance frameworks.
Develop Infrastructure-as-Code templates using AWS CDK (TypeScript) or with declarative template engines like Terraform within automated provisioning pipelines.
Architect secure network topologies including VPCs, Transit Gateways, and connectivity to on-premises data centers.
Establish and enforce cloud security baselines using AWS Config, GuardDuty, Security Hub, and KMS standards in cooperation with the Information Security team.
Implement industry-standard cloud FinOps practices including cost optimization, tagging strategies, budget monitoring, and chargeback reporting.
Partner with the Engineering (software development/delivery) and DevSecOps teams to enable secure CI/CD pipelines and automated infrastructure deployment that supports applications and services.
Provide cloud platform expertise to the Enterprise Architecture team and participate in Architecture Review Board decision-making.
Mentor junior engineers and establish cloud engineering best practices across the organization.
Requirements
Bachelor's degree in computer science, Engineering, Information Systems, or related field.
5+ years of experience in cloud engineering, infrastructure automation, or platform engineering roles with demonstrable progressive responsibility and ownership.
AWS certifications such as Solutions Architect Associate/Professional or Security Specialty.
Experience supporting large-scale technology transformations or modernization programs.
FinOps Certified Practitioner or similar cost optimization credentials.
Experience working in federally or state regulated industries such as insurance, financial services, healthcare, or aviation.