About this role
Senior Cloud Engineer
We are seeking a Senior Cloud Engineer to design, build, and maintain scalable, secure, and highly available cloud infrastructure supporting mission-critical applications within a banking environment. This role plays a central part in the migration from on-premises and PCF platforms to AWS, leading container orchestration, infrastructure-as-code adoption, and modern DevOps practices. You will combine deep hands-on AWS engineering expertise with architectural thinking, security awareness, and cost discipline, while providing technical leadership and mentorship to engineering teams across the platform.
Responsibilities
- Design, provision, and manage secure, scalable AWS infrastructure across core services including EKS, ECS, EC2, VPC, IAM, S3, and RDS, ensuring high availability, fault tolerance, and performance for critical workloads
- Automate infrastructure provisioning via Terraform, maintaining repeatable, version-controlled, peer-reviewed environments aligned with enterprise standards
- Maintain comprehensive architecture documentation, runbooks, and operational procedures to ensure platform supportability across teams
- Lead PCF-to-AWS migration activities by assessing workloads, defining migration strategies, and containerizing applications with Docker for deployment on Kubernetes (EKS) or ECS
- Design and implement container orchestration patterns supporting microservices deployments, rolling updates, blue-green and canary releases, and horizontal scaling
- Collaborate with application teams to ensure workloads are cloud-ready by addressing dependencies, configuration, secrets management, and environment parity across development stages
- Build, maintain, and enhance CI/CD pipelines for automated build, test, security scanning, and deployment using GitLab CI, Jenkins, GitHub Actions, or similar tools
- Integrate security and quality gates within pipelines including SAST, DAST, dependency and container image scanning, and compliance checks to embed shift-left security practices
- Support engineering teams in adopting modern DevOps and GitOps practices, promoting infrastructure-as-code, automated testing, and continuous delivery
- Manage cloud networking components such as VPCs, subnets, routing tables, security groups, NACLs, load balancers (ALB/NLB), and DNS to ensure secure, segmented architectures meeting banking-grade requirements
- Implement and enforce cloud security best practices, including encryption, secrets management, least-privilege IAM policies, and identity federation
- Ensure infrastructure compliance with organizational security policies and applicable financial services regulatory standards
- Establish comprehensive monitoring, logging, metrics, and alerting across cloud environments to provide full observability of infrastructure health, application performance, and security events
- Respond to infrastructure incidents, conduct root cause analyses, and drive remediation to maintain service availability and resilience
- Optimize cloud resources through right-sizing, capacity planning, autoscaling policies, resource tagging, and governance practices to maximize platform value without unnecessary expenditure
Skills
Must have: substantial expertise in cloud engineering and AWS environments, AWS certifications at the Solutions Architect Associate or Professional level, or DevOps Engineer Professional level, with a preference for advanced certifications. Hard skills include:
-
Proficient management of containerized applications using Docker and Kubernetes (EKS), including cluster operations, networking, Helm charts, and deployment methodologies
-
Expertise in Terraform for infrastructure-as-code, including module creation, state handling, remote backend configuration, and CI/CD integration
-
Understanding of networking principles such as VPC design, subnetting, routing, security group policies, load balancing (ALB/NLB), DNS management (Route 53), and network troubleshooting
-
In-depth knowledge of cloud security practices and IAM, covering policy development, enforcing least-privilege access, encryption techniques, secrets management, identity federation, and security monitoring
-
Experience in developing and maintaining CI/CD pipelines using platforms like GitLab CI, Jenkins, or GitHub Actions, incorporating security and quality controls
-
Scripting skills in Python, Bash, or Go for automation, tooling, and operational tasks
-
Strong Linux administration capabilities, with competence in operating and troubleshooting Linux production systems
-
Soft skills focus on effective communication, enabling clear articulation of infrastructure decisions and trade-offs to development teams, security personnel, and leadership stakeholders
-
Nice to have
-
N/A
-
Other
-
Languages
-
English: C1 Advanced
-
Senior