We are looking for a Senior DevOps Engineer with strong AWS expertise to design, build, and maintain scalable, secure, and highly available cloud infrastructure. You will work across networking, compute, containers, databases, and CI/CD pipelines while driving best practices in automation, observability, and security.
Responsibilities
- Design and maintain IAM roles and policies following the principle of least privilege, including cross-account access and federation
- Build and manage VPC network topology with public/private subnets, route tables, NAT/Internet Gateways, and security groups across Availability Zones
- Provision and maintain EC2 instances and Auto Scaling Groups, applying cost optimization strategies such as Spot and On-Demand mix
- Configure ALB/NLB load balancers, target groups, health checks, and TLS termination
- Deploy and maintain container clusters on ECS/Fargate or EKS, including autoscaling and version upgrades
- Manage ECR repositories, including lifecycle policies, vulnerability scanning, and access permissions
- Organize and secure S3 buckets with versioning, lifecycle rules, and encryption
- Deploy and maintain RDS/Aurora databases with Multi-AZ, backups, and performance monitoring
- Set up CloudWatch dashboards, alarms, and log-based alerting for observability
- Manage encryption keys and secrets using KMS and Secrets Manager
- Configure CloudFront distributions and Route 53 DNS zones and routing policies
- Build and maintain CI/CD pipelines and Infrastructure as Code using Terraform or CloudFormation
Requirements
- 5+ years of experience in DevOps or Cloud Engineering roles with a strong focus on AWS
- Expertise in AWS IAM, VPC, EC2, Auto Scaling, and ELB (ALB/NLB)
- Proficiency in containers and orchestration using ECS/Fargate or EKS, Docker, and ECR
- Skills in AWS storage and database services, including S3 and RDS/Aurora
- Knowledge of CloudWatch, KMS, and Secrets Manager for observability and secrets management
- Familiarity with CloudFront and Route 53 for content delivery and DNS management
- Competency in Infrastructure as Code tools such as Terraform or CloudFormation
- Experience with CI/CD tools such as GitLab CI, GitHub Actions, or Jenkins
- Proficiency in scripting with Bash and/or Python for automation
- Strong analytical and problem-solving skills with a structured and proactive approach to work
Nice to have
- Familiarity with EBS/EFS, DynamoDB, and ElastiCache
- Background in building serverless functions with Lambda
- Knowledge of Direct Connect, Site-to-Site VPN, WAF, and Shield
- Understanding of AWS security best practices, cost optimization, and high availability/disaster recovery strategies
- Experience with monitoring tools such as Prometheus, Grafana, Datadog, or ELK Stack