AWS Cloud Architect / Solutions Engineer
Role details
Job location
Tech stack
Job description
The AWS Cloud Architect / Solutions Engineer will lead the design, implementation, and monitoring of our AWS based micro-services infrastructure with a strong emphasis on security best practices. They will collaborate with our offshore engineering team to ensure the successful and secure migration of our CRM system, while empowering our in-house PHP-focused engineers with the knowledge and tools to manage and maintain the new environment. This role requires deep expertise in AWS, micro-services architecture, and a proactive approach to embedding security at every layer of our cloud infrastructure.
Responsibilities Duties and Responsibilities include but are not limited to the following:
- Design and implement a scalable, secure, and cost-efficient AWS micro-services infrastructure to support our
CRM migration from a PHP-based system to a .NET-driven environment, prioritizing security best practices.
- Monitor and guide the offshore engineering team's progress in migrating CRM functionalities to AWS,
ensuring adherence to security standards, performance benchmarks, and project timelines.
- Educate and upskill our in-house PHP engineering team on AWS fundamentals, micro-services concepts, and
security best practices to ensure long-term self-sufficiency and secure operations.
- Set up monitoring, logging, and alerting systems (e.g., Datadog, CloudWatch, ELK Stack) to track the health,
performance, and security posture of the AWS environment, with a focus on detecting and mitigating risks.
- Act as the technical liaison between in-house engineers and offshore contractors, ensuring clear
communication and alignment on deliverables, including security requirements.
- Architect solutions that securely integrate our legacy PHP systems with the new .NET micro-services,
ensuring seamless functionality, data integrity, and protection against vulnerabilities.
- Implement and enforce AWS security best practices (e.g., IAM least privilege, VPC segmentation, encryption
at rest and in transit, security group configurations) to safeguard our infrastructure and sensitive data, ensuring compliance with industry standards.
- Optimize AWS resource usage to balance performance, security, and cost, providing regular reports to
leadership on cloud spending and security investments.
- Proactively identify and address security risks during and post-migration, including regular audits of the cloud
environment and contractor deliverables.
- Perform daily duties in line with Information Security Policies and Procedures.
- Ensure that information Confidentiality, Integrity and Privacy is always maintained with processing information
Requirements
- 7+ years of experience in cloud architecture, with at least 3 years focused on AWS in a production
environment and a proven track record of implementing security best practices.
- Proficiency with AWS services including EC2, ECS/EKS, Lambda, API Gateway, RDS, DynamoDB, S3,
CloudFormation, and CloudWatch, with hands-on experience securing these services.
- Hands-on experience designing and deploying secure micro-services architectures, preferably with .NET
Core.
- Familiarity with PHP and .NET to bridge the gap between legacy systems and the new infrastructure, with an
understanding of secure coding practices.
- Experience setting up and managing monitoring solutions (e.g., Datadog, CloudWatch, Prometheus, Grafana)
for distributed systems, with an emphasis on security monitoring.
- Deep knowledge of AWS security tools and practices (e.g., AWS Shield, WAF, KMS, GuardDuty) and
experience securing micro-services environments against common threats (e.g., DDoS, data breaches).
- Proven ability to oversee contractors, mentor teams, and instill a security-first mindset across technical and
non-technical stakeholders.
- Strong analytical skills to troubleshoot issues in cloud deployments and migrations while addressing security
vulnerabilities.
- Excellent verbal and written communication skills to collaborate with cross-functional and remote teams and
articulate security requirements.
What Will Make You Stand Out
- AWS Certification (e.g., AWS Solutions Architect - Associate or Professional, AWS Security Specialty).
- Experience with CI/CD pipelines (e.g., Jenkins, GitLab CI, AWS CodePipeline) and securing them.
- Familiarity with containerization (Docker, Kubernetes) in AWS environments and securing container
workloads.
- Background in CRM systems or large-scale application migrations with a security focus
Benefits & conditions
Health insurance Vision insurance Dental insurance Life insurance 401(k) retirement plan PTO