Job Description
Key Responsibilities
- Design, build, and manage AWS platform services including account structure, shared services, networking, IAM, logging, monitoring, and governance baselines.
- Implement and maintain AWS landing zones, multi-account environments, guardrails, tagging standards, and platform blueprints using AWS Organizations and Control Tower.
- Engineer reusable infrastructure modules and platform automation using Terraform, CloudFormation, or similar Infrastructure as Code tools.
- Build and support secure connectivity patterns across VPCs, subnets, route tables, NAT gateways, Transit Gateway, Direct Connect, VPN, and VPC endpoints.
- Define and implement identity, access, and secrets management using IAM roles, policies, federation, KMS, and Secrets Manager in alignment with least-privilege principles.
- Enable CI/CD and DevOps teams by integrating platform services with deployment pipelines, infrastructure provisioning workflows, and environment standardization.
- Establish monitoring, observability, alerting, and audit capabilities using CloudWatch, CloudTrail, Config, and enterprise monitoring tools.
- Drive platform reliability, backup, patching, resiliency, and disaster recovery readiness for critical infrastructure services.
- Optimize AWS platform cost, performance, and operational efficiency through right-sizing, automation, lifecycle policies, and platform governance controls.
- Provide Level 3 support for platform issues, troubleshoot complex incidents, perform root cause analysis, and implement corrective and preventive improvements.
- Collaborate with security, compliance, and architecture teams to ensure the AWS platform aligns with organizational standards and regulatory requirements.
- Create and maintain platform documentation including HLDs, LLDs, standards, runbooks, onboarding guides, and operational procedures.
͏
Required Skills & Experience
- 12+ years of Strong hands-on expertise in AWS platform engineering, cloud infrastructure, and enterprise operations.
- Deep knowledge of core AWS services including EC2, VPC, ELB, Auto Scaling, Route 53, S3, EBS, EFS/FSx, IAM, KMS, CloudWatch, CloudTrail, Config, and AWS Backup.
- Strong experience in designing and operating AWS multi-account platforms, landing zones, shared services, and governance frameworks.
- Hands-on experience with Terraform, CloudFormation, scripting, and automation for provisioning, compliance, and operational tasks.
- Solid understanding of AWS networking, hybrid connectivity, segmentation, DNS, proxy patterns, and secure traffic design.
- Experience in identity federation, role-based access control, key management, logging, audit, and cloud security best practices.
- Strong understanding of high availability, backup, recovery, incident management, operational readiness, and site reliability practices.
- Experience supporting DevOps enablement, CI/CD integration, and platform services for application teams.
- Strong troubleshooting, stakeholder communication, and documentation skills in enterprise environments.
Preferred Qualifications
- AWS Certified Solutions Architect, SysOps Administrator, or DevOps Engineer certification preferred.
- Experience with Control Tower, Organizations, Service Catalog, Systems Manager, GuardDuty, Security Hub, and Config rules.
- Exposure to container platforms, Kubernetes, ECS/EKS, or platform support for modern application environments is an advantage.
- Experience in cloud migration, data center transformation, or hybrid cloud platform engineering is desirable.
