Job Description
Role Summary We are looking for a Senior Platform Engineer with deep expertise in AWS, DevOps, and DevSecOps practices, who can design and maintain secure, scalable, and developer-friendly platforms. This role will champion developer experience by building self-service capabilities, golden paths, and automation for common workflows, while ensuring platform reliability through SRE practices and compliance automation. The ideal candidate will have experience with Atlassian Compass (preferred) or Backstage for Internal Developer Portals, strong CI/CD skills, and a solution-oriented mindset. Previous development experience is a plus. Key Responsibilities Platform & Infrastructure Architect and maintain AWS-based infrastructure ECS, EKS, ECR, VPC, IAM, Lambda, API Gateway, S3, RDS . Implement Infrastructure as Code (IaC) using AWS CDK (preferred), AWS cloud formation and Terraform for modular, reusable patterns. Optimize cost, performance, and security across environments. Orchestrate containers, observability stacks, and scaling strategies across distributed systems to ensure reliability and high availability. CI/CD & Developer Experience Build and standardize CI/CD pipelines using GitHub Actions, reusable workflows, and deployment strategies. Integrate GitHub Advanced Security CodeQL, Secret Scanning, Dependabot) into pipelines for proactive security. Enable OIDC-based deployments for secure, secretless AWS access. Drive adoption of internal developer platform (IDP) such as Atlassian Compass Preferred) or Backstage to enable developer self service, service cataloging, scorecards, and golden paths. Observability & Reliability Implement OpenTelemetry for distributed tracing and metrics. Configure APM monitoring tooling (e.g Datadog ), including dashboards, alerts, and SLOs for application health and performance. Improve MTTR through automated incident response and runbooks. Security & Compliance Embed security checks in CI/CD pipelines (e.g., SAST, dependency scanning, secret scanning, container image scanning, etc.) to support SOC 2 and PCI compliance Experience with Policy as Code using OPA Open Policy Agent) and Conftest to validate IaC templates before deployment will be preferred Apply AWS Well-Architected Framework principles across all platform designs to ensure security, reliability, performance efficiency, cost optimization, and operational excellence. SBOM Software Bill of Materials): Ensures transparency of all dependencies for compliance and vulnerability management. Cosign (Image Signing): Provides cryptographic verification of container images to prevent tampering and supply chain attacks. AI & Automation Work with AI MCP servers to automate operational workflows and enhance developer experience. Collaboration & Leadership Partner with engineering teams to define platform standards and best practices. Mentor peers and promote automation-first culture. Operate with minimal supervision and deliver solution-oriented outcomes. Required Skills Cloud: AWS ECS, EKS, ECR, IAM, VPC, Lambda, API Gateway, S3, RDS . IaC: AWS CDK (preferred), Terraform. CI/CD: GitHub, GitHub Actions, GitHub Advanced Security (GHAS). Languages: C#, Python, Bash, Go, Java, JavaScript. Containers: ECS, EKS, ECR. Observability: OpenTelemetry, Datadog. IDP: Atlassian Compass (preferred) or Backstage. Strong problem-solving and solution-oriented mindset. Previous development experience is a plus. Preferred Skills AWS services and observability tools like Datadog. Policy-as-Code experience OPA, Conftest). Secrets management AWS Secrets Manager, Vault). Experience with developer portals and platform standardization Atlassian Compass or Backstage). Certifications Plus : AWS Certification Solutions Architect, DevOps Engineer, or Security Specialty). GitHub Certification (GitHub Actions or GitHub Advanced Security). OPA/Policy-as-Code Certification (or equivalent governance/security automation credentials).
Job Responsibilities
Platform & Infrastructure- Architect and maintain AWS-based infrastructure ECS, EKS, ECR, VPC, IAM, Lambda, API Gateway, S3, RDS
- Implement Infrastructure as Code (IaC) using AWS CDK (preferred), AWS cloud formation and Terraform for modular, reusable patterns.
- Optimize cost, performance, and security across environments.
- Orchestrate containers, observability stacks, and scaling strategies across distributed systems to ensure reliability and high availability.
CI/CD & Developer Experience- Build and standardize CI/CD pipelines using GitHub Actions, reusable workflows, and deployment strategies.
- Integrate GitHub Advanced Security CodeQL, Secret Scanning, Dependabot) into pipelines for proactive security.
- Enable OIDC-based deployments for secure, secretless AWS access.
- Drive adoption of internal developer platform (IDP) such as Atlassian Compass Preferred) or Backstage to enable developer self service, service cataloging, scorecards, and golden paths.
Observability & Reliability- Implement OpenTelemetry for distributed tracing and metrics.
- Configure APM monitoring tooling (e.g Datadog ), including dashboards, alerts, and SLOs for application health and performance.
- Improve MTTR through automated incident response and runbooks.
Security & Compliance- Embed security checks in CI/CD pipelines (e.g., SAST, dependency scanning, secret scanning, container image scanning, etc.) to support SOC 2 and PCI compliance
- Experience with Policy as Code using OPA
- Open Policy Agent) and Conftest to validate IaC templates before deployment will be preferred
- Apply AWS Well-Architected Framework principles across all platform designs to ensure security, reliability, performance efficiency, cost optimization, and operational excellence.
- SBOB Software Bill of Materials): Ensures transparency of all dependencies for compliance and vulnerability management.
- Cosign (Image Signing): Provides cryptographic verification of container images to prevent tampering and supply chain attacks.
AI & Automation- Work with AI MCP servers to automate operational workflows and enhance developer experience.
Collaboration & Leadership- Partner with engineering teams to define platform standards and best practices.
- Mentor peers and promote automation-first culture.
- Operate with minimal supervision and deliver solution-oriented outcomes.