Description
Remote
Our client seeks an experienced AWS Cloud Platform Engineer to support an enterprise AWS environment managing 100+ accounts, 250+ serverless functions, and a robust infrastructure-as-code ecosystem aligned to digital transformation and regulatory objectives. This hands-on role focuses on day-to-day platform operations, account lifecycle, VPC networking, security controls enforcement, and operational support within a regulated environment with strict change and compliance requirements.
Due to client requirements, applicants must be willing and able to work on a w2 basis. For our w2 consultants, we offer a great benefits package that includes Medical, Dental, and Vision benefits, 401k with company matching, and life insurance.
Rate: $75.00 to $85.00/hr. w2
Responsibilities
- Provision and manage AWS accounts and services, including decommissioning within AWS Organizations.
- Perform VPC provisioning, upgrades, and configuration management using Terraform.
- Manage Transit Gateway attachments, route table configurations, and cross-account connectivity.
- Support compute infrastructure including EC2 fleet management, Auto Scaling Groups, and load balancers.
- Fulfill infrastructure change requests through ITSM processes and formal change management.
- Develop, maintain, and troubleshoot Terraform configurations for AWS provisioning.
- Operate within Terraform Cloud workspaces with policy-as-code enforcement and contribute to internal modules and guardrails.
- Implement and maintain SCPs, IAM policies, and least-privilege access models.
- Enforce encryption and data protection standards across EBS, RDS, S3, and KMS.
- Triage and remediate findings from CSPM tools, vulnerability scans, and drift detection.
- Manage VPC endpoints, PrivateLink connectivity, and network security controls.
- Monitor and respond to alarms, security findings, and AWS Config rule violations.
- Support FinOps practices including budget monitoring, enforcement, and resource optimization.
- Participate in an on-call rotation for cloud platform support.
- Collaborate with application, security, and enterprise architecture stakeholders.
- Maintain operational runbooks, SOPs, and technical documentation including troubleshooting procedures and customer guides.
Experience Requirements
- 5 to 10 years of hands-on cloud infrastructure engineering with an AWS focus.
- Demonstrated experience with Terraform and IaC lifecycle management.
- Deep knowledge of AWS core services including VPC, EC2, Lambda, S3, RDS, IAM, KMS, CloudWatch, CloudTrail, Route 53, API Gateway, and ELB (ALB/NLB), plus Transit Gateway.
- Experience operating multi-account AWS environments using AWS Organizations and SCPs.
- Proficiency in IAM policy design, cross-account access patterns, and least-privilege principles.
- Experience with CI/CD pipelines such as Terraform Cloud, Jenkins, or GitHub Actions.
- Experience with Git-based workflows including branching strategies, pull requests, and code reviews.
- Experience working in regulated or enterprise environments with formal change management such as ServiceNow.
- Strong troubleshooting and problem-solving skills for complex multi-account AWS environments.
- Effective written and verbal communication with ability to produce clear technical documentation.
- Must-have technical skills: AWS VPC architecture and network design patterns, cloud security controls, Elastic Load Balancing, Linux or macOS command-line proficiency, NAT Gateway, VPC endpoints and PrivateLink, Python and Bash or Shell scripting, Route 53 DNS architecture, Transit Gateway design, and understanding of TCP/IP, DNS, TLS or SSL, and network troubleshooting.
- Nice-to-have skills: AWS certifications, CSPM tools, policy-as-code frameworks, experience in financial services or regulated industries, containerization and serverless familiarity, HashiCorp Vault, FinOps and AWS cost optimization, and working knowledge of Golang.
Education Requirements