Infrastructure Automation Engineer (Terraform-heavy)
Role details
Job location
Tech stack
Job description
As we continue to grow, we're looking for a skilled Infrastructure Automation Engineer (Terraform-heavy) to join our dynamic team and contribute to our mission of transforming business processes through technology., This role is part of Bright Vision Technologies' in-house Statement of Work (SOW) engagement. The client, end customer, and employer for this position is Bright Vision Technologies - there is no third-party client, vendor, or implementation partner involved. We do not engage in C2C, 1099, or third-party arrangements for this role. BUT STRICTLY NO C2C/1099/3RD PARTY COMPANIES. ALL OUR ROLES ARE W2 AND NO 3RD PARTY BROKERING PLEASE. Candidates must be willing to work directly as a full-time W2 employee of Bright Vision Technologies and contribute to our in-house SOW deliverables. No new H1B sponsorship is available for this role. However, candidates who are currently on a valid H1B visa and require a transfer are welcome to apply. We will support H1B transfers for qualified candidates. For every role, a technical coding assessment is mandatory. Please apply only if you are confident in your technical abilities and hands-on experience. Job Summary We are seeking an Infrastructure Automation Engineer with deep Terraform expertise to design, build, and maintain the infrastructure-as-code foundations that power our cloud and hybrid environments. This role focuses on creating reusable Terraform modules, hardening pipelines, enforcing policy-as-code, and standardizing infrastructure delivery across multiple teams and cloud providers. The ideal candidate brings strong software engineering discipline to infrastructure work, has shipped production-grade Terraform at scale, and understands the operational realities of managing thousands of resources across many environments and accounts., * Design, develop, and maintain modular, composable Terraform code that codifies the entire infrastructure estate across cloud accounts and environments.
- Build a library of well-tested, reusable Terraform modules with clear interfaces, semantic versioning, and comprehensive documentation.
- Implement Terraform automation pipelines using GitHub Actions, GitLab CI, Atlantis, Terraform Cloud, or Spacelift, with plan/apply gating, drift detection, and policy enforcement.
- Define and enforce policy-as-code using Sentinel, Open Policy Agent (OPA), Conftest, or Checkov to prevent insecure or non-compliant infrastructure changes.
- Manage Terraform state at scale with appropriate backend strategies, state locking, workspace organization, and disaster recovery patterns.
- Drive multi-account, multi-region, and multi-cloud infrastructure provisioning strategies with clear isolation, naming, and tagging standards.
- Implement infrastructure testing including unit tests with terraform-compliance, integration tests with Terratest, and policy tests across pull requests.
- Collaborate with security, networking, and platform teams to embed guardrails directly into reusable modules and pipelines.
- Standardize patterns for secrets management, identity federation, and least-privilege IAM through reusable Terraform abstractions.
- Lead migrations from legacy, ClickOps, or non-IaC infrastructure into managed Terraform footprints with minimal disruption.
- Drive cost optimization, tagging hygiene, and lifecycle management across the Terraform-managed estate.
- Mentor engineering teams on Terraform best practices, anti-patterns, and pull-request review standards.
- Maintain comprehensive runbooks, architecture diagrams, and onboarding materials for the infrastructure platform.
- Stay current with Terraform, OpenTofu, and broader IaC ecosystem developments and recommend adoption where beneficial.
Requirements
- Bachelor's degree in Computer Science, Engineering, or a related field.
- Five or more years of experience in cloud infrastructure or DevOps engineering, with significant Terraform focus.
- Deep, hands-on expertise authoring and maintaining production Terraform across at least one major cloud provider.
- Strong experience designing reusable Terraform modules with clean APIs and version discipline.
- Hands-on experience with Terraform state management, backends, and large-scale workspace organization.
- Strong scripting skills in Python, Go, or Bash.
- Experience with CI/CD pipelines for infrastructure code and automated policy enforcement.
- Solid understanding of cloud networking, identity, and security primitives.
- Strong Git-based workflows including code review, branching, and release management.
- Excellent troubleshooting and root-cause analysis skills.
Preferred Qualifications
- Experience with multi-cloud Terraform (AWS + Azure or AWS + GCP).
- Familiarity with Terragrunt, Atlantis, Spacelift, or env0.
- Experience with policy-as-code engines (Sentinel, OPA, Checkov).
- Contributions to public Terraform modules or providers.
- Exposure to FinOps practices and tagging-driven cost governance.
Benefits & conditions
This is a fantastic opportunity to join an established and well-respected organization offering tremendous career growth potential. Infrastructure Automation Engineer (Terraform-heavy) Job Title: Infrastructure Automation Engineer (Terraform-heavy) Location: 100% Remote (Continental United States) Position Type: In-house Bright Vision Technologies SOW engagement (no third-party client or vendor) Experience: 5+ years Sponsorship: No new H1B sponsorship available. H1B transfers welcomed for qualified candidates. Employment Type: Full-time, direct W2 with Bright Vision Technologies (no C2C, no 1099, no third-party) Engagement: Long-term, multi-year, aligned to the Bright Vision SOW delivery roadmap Compensation: Competitive base salary commensurate with experience, plus benefits. Employment Terms & Visa Policy