Description : About the Client :
The organization is a mission-driven technology company focused on creating safer communities through innovative school bus safety solutions across North America. By leveraging AI-powered cameras and cloud-connected systems, it helps school districts monitor and enforce traffic laws around school buses, protecting students as they travel to and from school. The company partners closely with local governments, law enforcement, and transportation agencies to deliver end-to-end programs that include installation, monitoring, violation processing, and public education all at no cost to taxpayers.
About the role :
The client is hiring a DevOps Engineer to build and secure cloud platforms with Infrastructure-as-Code (Terraform & AWS CDK), GitOps, and multi?account AWS. Youll modernize legacy monoliths and accelerate microservices delivery while embedding security-by-default and reliability into everything we ship.
Key Responsibilities :
- IaC at scale : Design, build, and maintain reusable Terraform modules and CDK constructs for landing zones, VPC / networking, compute, databases, and security controls across multiple accounts / environments.
- GitOps enablement : Implement and operate Github Actions for app and platform workloads; declarative config, drift detection, and progressive delivery (canary / blue?green).
- Cloud security & compliance : Enforce least?privilege IAM, KMS encryption, Secrets Manager / Parameter Store, GuardDuty / Security Hub, CloudTrail / Lake; contribute to SOC 2 / ISO27001 / CIS hardening and policy?as?code.
- Multi-account architecture : Evolve AWS Organizations / Control Tower / SCPs, cross?account roles, and shared services (observability, CI / CD, artifact registries, networking) with clear blast?radius boundaries.
- Modernization : Partner with teams to decompose monoliths via the strangler?fig pattern, carve?outs, and data migration strategies; define microservice standards (contracts, observability, release patterns).
- CI / CD & reliability : Own build / test / release pipelines (GitHub Actions) quality gates, artifact / version promotion, rollbacks;
- Observability & ops : Standardize metrics / logs / traces with CloudWatch / Datadog codify dashboards, alerts, and runbooks. Drive cost visibility and guardrails.
- Developer experience : Ship self's ervice templates, Backstage scaffolds / golden paths, and documentation that make the paved road the easiest road.
Preferred Qualifications :
5+ years in DevOps / Platform / SRE roles operating production systems.Advanced Terraform and / or AWS CDK (TypeScript / Python); authored reusable modules / constructs and remote state strategies.AWS depth : VPC design (subnets, routing, NAT, TGW), ALB / NLB, ECS / EKS / Lambda, RDS / Aurora, S3, CloudFront, Route 53, IAM, KMS; experience with Control Tower / Organizations / SCPs.Containers & GitOps : Docker image build / hardening, Kubernetes and / or ECS operations.Security?first mindset : Secrets management, encryption, vulnerability scanning, image signing / SBOMs, Policy-as?Code;CI / CD & testing : Pipelines with unit / integration / e2e gates, environment promotion, and rollback strategies.Operations : On?call participation, incident management, and post?incident improvement.Nice to Haves :
Backstage or internal developer platform (IDP) experience; golden?path templates.Network security (WAF, Zero?Trust), data security (PII tokenization / DLP), or compliance program experience.Additional policy?as?code tools : AWS Config conformance packs, CloudFormation Guard, tfsec / Checkov, Snyk.Cost management : CUR / Cost Explorer, anomaly detection, unit economics / chargeback, Savings Plans / RI strategy.Certifications : AWS DevOps / Solutions Architect, HashiCorp Terraform Associate, Kubernetes CKA / CKAD.Why Join Us?
Impact at scale : Shape a modern, secure platform powering dozens of services across multi?account AWS.Automation first : Green?light to eliminate toil with codegolden paths, GitOps, and paved?road tooling.Security by default : Partner closely with Security / GRC to build compliant systems without slowing delivery.Growth : Hands?on with modernization (monolith ? microservices), platform design, and SRE maturity.Team culture : Pragmatic, low?ego engineers who value clarity, ownership, and reliability.(ref : hirist.tech)