Description :
Role : Vice President - Cloud Engineering & Architecture (AWS)
Job Summary :
As a Vice President - Cloud Engineering & Architecture (AWS) at a leading Investment Banking company, you will play a pivotal role in shaping our enterprise cloud strategy and execution. This senior technical position requires 10+ years of overall experience in AWS design and DevOps engineering, with mandatory expertise (7-9 years) in building and operating a secure, multi-account AWS Landing Zone. You will be responsible for defining architectural blueprints, implementing advanced governance controls using AWS Control Tower and Terraform, driving platform evolution roadmaps, and leading the integration of core AWS constructs with existing enterprise systems.
Key Responsibilities and Duties :
Cloud Architecture & Landing Zone Governance :
- Provide architecture and design leadership for the creation of AWS account constructs within AWS Control Tower.
- Implement and enforce granular controls at the Organizational Unit (OU) and Account level, including the configuration of mandatory Service Control Policies (SCPs) and Permissions Boundaries.
- Design, test, and deploy / implement Landing Zone modular constructs for provisioning accounts based on defined policy and best practice, implemented on a foundation utilizing AWS Control Tower and Account Factory for Terraform (AFT).
- Drive the development of Cloud platform Roadmaps and the continued evolution of the AWS cloud environment.
Core Service Design and IaC Development :
Design and build standardized Terraform modules to manage core account constructs for networking, monitoring, identity, and governance.Configure foundational services, including VPC / Subnets, CloudTrail, CloudWatch, and IdP SSO integration.Design, build, and manage complex integrations with shared services such as Route 53, Direct Connect Gateways, and API Gateways.Develop patterns for interaction and integration with existing Nomura systems such as CMDB or observability platforms (e.g., Prometheus / Grafana stack).Advanced Engineering and Problem Solving :
Demonstrate proficiency in writing Terraform Infrastructure as Code (IaC) for complex AWS Cloud deployments.Write microservices / serverless architectures that can provide integration capabilities to enterprise systems such as IPAM (IP Address Management).Handle complex or abstract problem statements summarization, solutioning, and successfully lead their deployment to Production.Exercise creative use of available tools to efficiently produce scalable and secure solutions in the cloud technology space.Leadership and Mentorship :
Analyze requirements and make / contribute to strategic decision making regarding cloud architecture.Provide mentoring to junior team members, including line management, technical oversight, and workload prioritization.Required Experience & Skills
Overall Experience : 10+ years working on AWS in a design and / or DevOps engineering role with proven experience in design, deployment, and enterprise-scale implementation.Landing Zone / Governance Expertise : 79 years of experience building or operating a multi-account AWS Landing Zone, including hands-on experience with :1. AWS Control Tower & AFT, AWS Organizations, and creation of new AWS accounts.
2. IAM roles, policies, Permissions Boundaries, Resource Based Policies, and Service Control Policies (SCPs).
3. AWS Config and AWS Service Catalogue.
Core AWS Services : Deep knowledge of AWS Networking constructs (VPC, Direct Connect, Route 53, DHCP, DNS) and AWS Identity constructs (SSO via IdP federation).Logging / Monitoring : Expertise in AWS Logging and monitoring concepts (CloudTrail, CloudWatch, s3 replication, bucket policies).IaC & Automation : Highly proficient in writing Terraform IaC for AWS Cloud and 7 - 9 years of experience in code development using AWS SDK / Boto and Python.DevOps : Strong working experience with Gitlab Enterprise and Version control best practices.Certification : AWS Certified Solution Architect Professional certification is required.Documentation : Experience in documenting designs, system & process workflows in JIRA / Confluence.Preferred Skills :
Experience with defining and implementing complex Enterprise Security requirements.Prior experience with other Infrastructure as Code tools (e.g., CloudFormation).Expertise in AMI creation and hardening processes, and leveraging AWS Images.(ref : hirist.tech)