Mid-Level Platform Engineer - B2B Data Exchange
Role details
Job location
Tech stack
Job description
- Design and implement standardized B2B data exchange patterns including SFTP, AS2, and API using AWS services such as Transfer Family, API Gateway, PrivateLink, cross-account S3, EventBridge, and managed MFT/EDI where applicable.
- Build data ingestion, curation, and delivery pipelines using S3, Glue, Lake Formation, Step Functions, Lambda, Kinesis or MSK, and Redshift or Snowflake on AWS.
- Apply end-to-end encryption and key management practices including TLS and KMS; implement data masking or tokenization and controls for PII or PHI handling.
- Engineer secure VPC networking patterns, cross-account access, and service-to-service connectivity.
- Implement role- and attribute-based access controls with IAM and Lake Formation to deliver least-privilege access for business units.
- Operationalize data contracts, schema validation, and cataloging with Glue Data Catalog and versioned interfaces.
- Establish guardrails via AWS Organizations, Control Tower, and SCPs; enforce configuration baselines and drift detection.
- Embed observability with CloudWatch, CloudTrail, AWS Config, structured logging, metrics, and traces.
- Define and implement SLIs or SLOs, error budgets, automated remediation, and create runbooks, playbooks, and incident response workflows.
- Implement secrets management, certificate rotation, partner credential lifecycle, and automated onboarding or offboarding.
- Deliver infrastructure as code with Terraform or CloudFormation and GitOps workflows; create reusable modules, pipelines, and golden patterns.
- Integrate CI or CD with testing, security scans, and linting; enable progressive delivery for data exchange components.
- Partner with Security, Legal, and Compliance to meet SOX, SOC 2, GDPR, CCPA, and HIPAA requirements where applicable.
- Collaborate with TPMs, Data Engineering, Security or IAM, and external partners to troubleshoot and improve integrations.
- Provide Tier-3 data engineering support, lead post-incident reviews, and drive continuous improvement across reliability and security.
Requirements
- 3 to 5+ years of platform, cloud, or data engineering with a track record of secure B2B integrations at scale.
- Advanced proficiency with AWS services for data exchange and governance including S3, IAM, KMS, Transfer Family, API Gateway, PrivateLink, VPC, Glue or Lake Formation, Step Functions, Lambda, and EventBridge; familiarity with Kinesis or MSK and Redshift or Snowflake on AWS.
- Hands-on implementation of SFTP, AS2, EDI, and API-based exchanges, managed file transfer, and partner connectivity patterns.
- Strong security fundamentals including least privilege, encryption in transit and at rest, tokenization and PII handling, network segmentation, and cross-account access.
- Expertise with infrastructure as code using Terraform or CloudFormation, CI or CD, Git workflows, and scripting with Python or Bash.
- Proven experience building observability and reliability using CloudWatch, CloudTrail, metrics or tracing, alerting, runbooks, and SLOs.
- Excellent troubleshooting with the ability to lead complex incident response and root cause analysis.
- Experience with enterprise identity and federation using SAML, OAuth, or OIDC, and ABAC or RBAC policy models (preferred).
- Knowledge of data contracts, schema governance, and data cataloging practices (preferred).
- Exposure to Control Tower, AWS Organizations, SCPs, Config rules, and security baselines (preferred).
- Familiarity with compliance frameworks including SOX, SOC 2, HIPAA, GDPR, or CCPA and audit evidence automation (preferred).
- CNCF or Kubernetes experience (preferred).
Education Requirements:
- AWS Solutions Architect, DevOps Engineer, or Security Specialty certification (preferred).
Benefits & conditions
Our client is seeking a mid-level platform engineer to design and operate secure, scalable B2B data exchange capabilities on AWS. The role focuses on reusable patterns, guardrails, and automation that enable compliant, observable data flows across external partners and internal teams. Work includes standardized integrations, governance enablement, and reliability engineering within a regulated environment. The engineer will collaborate with stakeholders to improve integrations and drive continuous operational excellence.
Due to client requirements, applicants must be willing and able to work on a w2 basis. For our w2 consultants, we offer a great benefits package that includes Medical, Dental, and Vision benefits, 401k with company matching, and life insurance.
Rate: $60.00 to $70.00/hr. w2, Skills, experience, and other compensable factors will be considered when determining pay rate. The pay range provided in this posting reflects a W2 hourly rate; other employment options may be available that may result in pay outside of the provided range.
W2 employees of Eliassen Group who are regularly scheduled to work 30 or more hours per week are eligible for the following benefits: medical (choice of 3 plans), dental, vision, pre-tax accounts, other voluntary benefits including life and disability insurance, 401(k) with match, and sick time if required by law in the worked-in state/locality.