Cloud & Infrastructure Engineer
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
+16 more
Job description
This is a hybrid role spanning DevOps, Cloud Operations, and Site Reliability Engineering. The same person builds the infrastructure and the pipelines that deploy to it, runs and secures that environment day to day, and owns its reliability - service health, observability, incident response, and reducing the operational toil that comes with all three.
Security is the first responsibility of this role, ahead of scalability and flexibility. As a financial services company, NEWITY holds sensitive borrower and business data, and we expect this engineer to set and hold the standard for how that infrastructure is secured - including when that means pushing back.
This role works directly with Product Engineering day to day but reports to the SVP, Head of Security & Infrastructure. That separation is deliberate: it preserves the independence this role needs to enforce security and infrastructure standards without being subject to feature-delivery pressure, * Support implementation and ongoing management of scalable, secure, and highly available AWS cloud infrastructure supporting business-critical applications and services.
- Own the implementation and ongoing management of secure, scalable, and highly available AWS cloud infrastructure supporting business-critical applications and services
- Own the security posture of that infrastructure - identify, prioritize, and remediate infrastructure security findings, and maintain the access, network, and data-protection controls that keep the environment defensible
- Administer and harden identity and access within AWS: least-privilege policy design, role and permission-set hygiene, and credential lifecycle management
- Own secrets management posture - secure storage, rotation, and safe runtime access patterns for application workloads
- Design, implement, and maintain Infrastructure as Code solutions using tools such as Terraform or AWS CloudFormation
- Build and optimize CI/CD pipelines to enable automated, reliable, and secure software deployments
- Contribute to cloud architecture, infrastructure standards, and operational best practices supporting performance, reliability, security, and cost efficiency
- Manage containerized and cloud-native environments
- Own and expand remote-access infrastructure (AWS Client VPN)
- Administer a small set of supporting Azure services, including secrets/key management and role assignments
- Maintain monitoring, logging, alerting, and observability solutions (CloudWatch, GuardDuty, and similar) to identify and resolve issues
- Own service reliability and availability - define and track service health objectives, manage capacity and performance, and drive down operational toil through automation
- Participate in incident response, root cause analysis, and recovery planning efforts
- Support the infrastructure underpinning NEWITY’s external partner integrations - banking, credit, identity verification, tax, and lending-marketplace data providers - including credential storage, network paths, and exposure controls
- Partner with Product Engineering to support application performance, scalability, and regulatory requirements, while remaining organizationally independent of that team
- Support NEWITY’s SOC 2 Type II compliance program through infrastructure evidence and control maintenance, and help extend that work as additional compliance frameworks come into scope over time
- Drive cloud cost optimization initiatives and recommend improvements
- Promote DevOps best practices, automation, and a culture of continuous improvement
- Research and recommend emerging technologies to support infrastructure strategy
Requirements
- Bachelor’s degree in Computer Science, Information Technology, Engineering, or a related field, or equivalent professional experience
- Bachelor’s degree in Computer Science, Information Technology, Engineering, or a related field, or equivalent professional experience
- 4 - 7 years of experience in Cloud Infrastructure, DevOps, Platform Engineering, or Site Reliability Engineering (SRE)
- Experience designing, deploying, and supporting AWS cloud environments in production
- Strong expertise across AWS - compute and serverless, storage, managed databases, networking, edge/CDN and DNS, API management, and event-driven messaging.
- Experience with Infrastructure as Code tools such as Terraform or AWS CloudFormation
- Proven experience building and maintaining CI/CD pipelines using GitHub Actions, Azure DevOps, Jenkins, GitLab CI, or similar platforms
- Strong cloud security fundamentals: least-privilege access design, secrets management, and network and public-exposure hardening
- Proficiency implementing and maintaining secure cloud environments, preferably within regulated industries
- Experience with monitoring, logging, alerting, and threat-detection tooling
- Site reliability fundamentals: service health and availability monitoring, capacity and performance management, and systematically reducing operational toil through automation
- Scripting and automation ability in at least one general-purpose language
- Solid understanding of networking, security, identity management, and cloud architecture best practices
- Experience operating within a change-controlled, audited environment (SOC 2 or comparable)
- Comfortable partnering daily with a separate product engineering organization while remaining independent of it, including raising and holding security or reliability objections
- Excellent problem-solving, communication, and cross-functional collaboration skills
- Experience with containerization and orchestration technologies a plus
- Azure experience (secrets/key management, RBAC, security posture tooling) a plus
- Exposure to Jack Henry or IBM i / AS400 environments a plus - we run on a hosted platform with limited back-end access, but have had real success interfacing directly with the i Series to work around platform limitations
- AWS certification (e.g., Solutions Architect Associate, SysOps Administrator Associate, or Security Specialty) a plus
Benefits & conditions
- Base Rate: $110,000 - $150,000 Per Year + Performance Bonus, (Commensurate with Experience)
- Comprehensive Health, Dental, and Vision Insurance
- Retirement Plan with a Company Contribution of 3% of Total Salary
- Paid Time Off and Holidays
- Professional Development Opportunities
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again
7 Cloud Computing Trends Coming in 2025 for Developers
The Most Popular IT Jobs on the Market
Best Paying Jobs in Technology