Job Description
<p><p><b>We are seeking a hands-on AWS DevOps Engineer with 4+ years of experience in managing cloud infrastructure and integrating secure DevOps practices.</b></p><p><p><b><br/></b></p> This role demands high-speed execution in a fastpaced, secure software development environment, working closely with security teams to proactively identify, patch, and remediate security issues across the AWS and DevOps Responsibilities :</b></p><p><b><br/></b></p><p><b>Cloud & Hybrid Infrastructure :</b></p></p><p><b><br/></b>- Design, implement, Integrate and manage scalable, secure, and reliable infrastructure across AWS and, where needed, on-premise hybrid environments.</p><p><br/>- Provision, configure, and maintain AWS services (EC2, VPCs, IAM, S3, EBS, EFS, Route 53, ELB/ALB/NLB, CloudFront, RDS, ECS/EKS, CloudWatch, Lambda, API Gateway).<br/><br/></p><p>- Enforce multi-account and hybrid cloud strategies: manage AWS Organizations, Control Tower, SCPs, as well as LAN/WAN networking and on-premise as Code & Automation :</b></p><p><b><br/></b></p>- Develop, maintain, and optimize CI/CD pipelines using tools such as Jenkins, AWS CodePipeline, CodeCommit, and GitLab.<br/><br/></p><p>- Automate infrastructure provisioning and configuration management using Terraform and CloudFormation.
</p><p><br/></p><p>- Integrate quality gates and security scanners (Snyk, Trivy, Checkov) for secure coding and deployment & Serverless :</b></p><p><b><br/></b></p>- Manage and monitor container platforms : Docker, Kubernetes, ECS/Fargate.<br/><br/></p><p>- Build, deploy, and scale serverless microservices using Lambda and API Gateway integrations, ensuring robust integration with microservices-based Logging & Incident Response :</b></p><p><b><br/></b></p>- Implement and tune monitoring, alerting, and observability stacks : CloudWatch, X-Ray, Prometheus, Grafana, ELK Stack, with optional third-party tools (Datadog, New Relic).<br/><br/></p><p>- Perform regular audit log reviews and support incident response via CloudTrail, VPC Flow Logs, and SIEM Access & Networking :</b></p><p><p><b><br/></b></p>- Configure and manage IAM roles, policies, and permissions boundaries for fine-grained access Set up and manage AWS WAF, firewalls, routers, and load balancers to secure and optimize network traffic.<br/><br/></p><p>- Ensure compliance with security, backup, and governance standards (ISO 27001, SOC 2, or similar & Hybrid Administration :</b></p><p><b><br/></b></p>- Administer Microsoft environments, including Azure Entra ID/AD, patch management, anti-virus solutions, </p><p>and user access Collaboration :</b></p><p><b><br/></b></p>- Interface with developers, QA, Security, and Product teams to provide infrastructure, automation, and operational support across the software lifecycle.<br/><br/></p><p>- Actively participate in sprint planning, release reviews, and post-incident retrospectives, bringing DevOps and security context to the table.</p><p><br/></p><p><b>Required Qualifications :</b><br/><br/></p><p>- AWS Certified (Solutions Architect Associate / DevOps Engineer).<br/><br/></p><p>- Experience with automated security scanning tools (e.g., Snyk, Trivy, AWS Inspector).<br/><br/></p><p>- Exposure to container security (EKS, ECS, Docker hardening).<br/><br/></p><p>- Familiarity with ISO 27001, SOC 2, or similar compliance have Skills & Traits :</b></p><p><b><br/></b></p>- 3 to 5 years of hands-on AWS experience, including core services (EC2, IAM, VPC, S3, RDS, CloudWatch, etc.<br/><br/></p><p>- Cloud : Proficiency in AWS (required) knowledge of Azure and GCP (preferred).<br/><br/></p><p>- IAM & Security : Hands-on experience with IAM, roles, policies, permissions boundaries.<br/><br/></p><p>- Serverless & API Management : Experience with API Gateway, Lambda, especially for microservice architectures.</p><p><br/>- Hybrid Infrastructure : Familiarity with on-premise servers, hybrid and LAN/WAN deployments.<br/><br/></p><p>- Containers & Orchestration : Docker, Kubernetes, ECS/Fargate expertise.<br/><br/></p><p>- CI/CD : Jenkins, GitLab, AWS CodePipeline, CodeCommit.<br/><br/></p><p>- IaC : Terraform, CloudFormation proficiency.</p><p><br/>- Linux & Networking : Strong Linux admin, shell scripting, LAN/WAN, routing, firewall configuration.</p><p><br/></p><p>- Monitoring : CloudWatch, Prometheus, Grafana, ELK Stack, X-Ray.<br/><br/></p><p>- Microsoft Ecosystem : Azure Entra ID / AD, RBAC, patch and anti-virus management.<br/><br/></p><p>- Version Control : Proficient in Git-based version control (CodeCommit, GitLab).</p><br/></p> (ref:hirist.tech)