Own technical architecture and design decisions for SAM — landing zone design, account vending, IAM governance, and identity management (AWS Identity Center)
Translate the Security Architect's guardrail requirements and security standards into implementable engineering work — Terraform modules, automation pipelines, and detection/remediation patterns
Design for platform consumers, not just infrastructure: build reusable, self-service modules and APIs that over 200+ product teams can adopt without needing to contact SAM for every change
Drive automation-first engineering: replace manual, ticket-driven workflows with programmatic access, IaC-managed configuration, and self-service tooling
Set and enforce technical standards: code review expectations, Terraform module structure, CI/CD pipeline design, testing practices, and documentation-as-code
Lead incident response for platform-level issues: coordinate resolution, run post-incident reviews, and drive reliability improvements into the engineering backlog
Mentor and grow engineers: conduct design reviews, pair on complex problems, provide constructive PR feedback, and create an environment where the team's technical capability improves over time
Evaluate and introduce new technologies, patterns, and AWS services
Requirements
Total minimum 8 years of experience in IT split between: Technical Experience, minimum 4 years
Experience with architecture, software development or operations of internet-scale SaaS products
Previously worked as DevOps engineer, Cloud Engineer, System Reliability Engineer, Technical Leader, or an Architect
Very good understanding and hands-on working experience in AWS
Experience in cloud security services
Experience with AWS cloud infrastructure with medium to large global enterprises with global geographical topologies
Understanding and hands on working knowledge of the following technologies AWS cloud services (AWS IAM, AWS Organisation, AWS Identity Center), GitLab, Pipelines, Terraform
Infrastructure-as-Code and related tools (Terraform / Terragrunt / GitLab pipelines, GitHub actions)
Knowledgeable in DevSecOps and integrating security into the development pipeline
Understanding and experience with modern software development processes and release cycles (CI/CD, GitOps, …)
Proficient in Bash / PowerShell / Git
Experience in any one or more: Python, GoLang, Java, C, Ruby
Technical deep expertise and technical leadership, minimum 4 years
Experience in Cloud Security and Serverless Architectures (Microservices and event driven architecture)
(Lambda, DynamoDB, API Gateway, Step-Functions, ECS, EKS)
Proficiency with CI/CD, Infrastructure as Code, containerization, orchestration, building DevOps toolchains, and software development process automation
A DevOps mindset focused on driving and supporting best practices, quality, and consistency within all phases of infrastructure automation
A very good understanding of current trends, tools, and practices in DevOps and Cloud Infrastructure
Python design patterns, OO programming
Knowledge of standards and ability to apply good practices in the scope of designing IT solutions architecture
Ability to communicate effectively and inclusively with a diverse range of team members and stakeholders
Experience with the software development lifecycle, the ability to work on cross-functional teams with both technical and non-technical team members, and the desire to learn and grow within the organization
Tech Stack
AWS
Cloud
DynamoDB
Java
Microservices
Python
Ruby
Terraform
Benefits
Annual bonus payment based on your performance
Dedicated training budget (training, certifications, conferences, diversified career paths etc.)
Recharge Fridays (2 Fridays off per quarter available)
Take time Program (up to 3 months of leave to use for any purpose)
Vacation subsidy available.
Flex Location (possibility to perform our work from different places in the world for a certain period of time)
Take Time for Charity (additional paid leave of maximum 2 weeks to engage in the charity action of your choice)