Senior Cloud Architect

Crown Agents Bank
London, UK
25 days ago
Apply on www.collegerecruiter.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Working hours
Regular working hours

Tech stack

Amazon Web Services Amazon Elastic Compute Cloud Amazon S3 Applications Architecture Audit Trail Cloud Computing Cloud Computing Security Cloud Engineering Databases Continuous Integration Fault Tolerance Github
+22 more
Identity and Access Management Intrusion Detection and Prevention Subnetting Key Management Network Security Routing Network Segmentation Software Vulnerability Management Software Organization AWS Cdk Load Balancing Test-Driven Development (TDD) Autoscaling System Availability Amazon Virtual Private Cloud (VPC) Infrastructure Automation Frameworks Functional Programming Cloudwatch Api Gateway Amazon Simple Queue Service (SQS) Terraform Devsecops

Job description

Senior Cloud Architect to join our team. Architect and implement robust AWS-based systems that meet high standards for scalability, performance, and security for our Payments and Foreign Exchange (FX) business. This role requires a hands-on cloud architect with extensive AWS expertise, promoting best practices in infrastructure-as-code, security, and DevSecOps within a fast-paced financial technology environment, ensuring alignment with business goals and driving innovation., * As a senior member of the Engineering and Architecture team, collaborate with development teams to design and implement cloud-native application architectures on AWS that are highly available, scalable, and secure, ensuring solutions meet business needs while aligning with cloud best practices and compliance requirements.

  • Partner with the Platform engineering team to create reusable cloud design patterns and blueprints/modules (Infrastructure as Code templates) for provisioning and hosting applications on AWS to ensure architectural consistency and governance across teams, reducing duplicate efforts.
  • Design and oversee AWS networking configurations (VPCs, subnets, routing) and multi-account setups. Implement cloud security standards, including network segmentation and security groups, identity & access management, and encryption.
  • Drive automation across the cloud environment using Infrastructure-as-Code tools such as Terraform and AWS CDK to provision resources in a repeatable manner.
  • Collaborate with the security team to implement security best practices, including identity management, encryption, compliance (such as GDPR and ISO 27001), and threat detection and vulnerability management (e.g., Inspector, Security Hub, GuardDuty).
  • Monitor and optimise AWS environments for performance, cost, and efficiency (right-sizing, auto-scaling, etc.). Implement monitoring and logging solutions (such as CloudWatch, CloudTrail, and X-Ray) to track performance and troubleshoot issues.
  • Provide technical leadership and mentorship to engineering teams, promoting AWS well-architected best practices and guiding engineers in cloud-native design and troubleshooting.
  • Engage with senior technology leadership and stakeholders to communicate architectural decisions, technical risks, and opportunities.

Requirements

  • Proven practical experience of AWS services including account management, networking, security and identity, compute, storage, databases, and messaging.
  • Established cloud architecture principles, patterns, and guardrails to guide the design and development of solution architectures.
  • Extensive experience with AWS core services such as AWS Organisations, S3, EC2, ECS, ECR, KMS, RDS, SQS, SNS, Lambda, VPC, IAM, API Gateway, etc.
  • Strong understanding of AWS networking and security controls. Expertise in designing secure VPCs (subnets, routing, NACLs) and implementing network security measures (security groups, firewalls), as well as identity management (AWS IAM). Knowledge of cloud security best practices (encryption, key management, vulnerability management) and experience in securing mission-critical workloads.
  • Strong knowledge of Infrastructure-as-Code tools, particularly Terraform, and creating reusable Terraform modules. Ability to define and deploy cloud infrastructure through code for consistency and repeatability.
  • Experience in designing architectures for high availability and fault tolerance, using multi-AZ and multi-region strategies, load balancing, and auto-scaling.
  • Experience in setting up multi-account AWS environments or landing zones (e.g., using AWS Organisations/Control Tower) to enforce governance and isolation between workloads and implementing backup strategies and disaster recovery plans on AWS to ensure business continuity.
  • Knowledge of modern software development practices, such as Test-Driven Development (TDD), CI/CD (using tools like GitHub and GitHub Actions), DevSecOps, SRE, etc.
  • Knowledge of machine learning and AI applications in financial services.

Benefits & conditions

  • Contributory personal pension plan: - Minimum: Employee 2% and Employer 7%. Employer matches contributions in 1% increments to a maximum of: Employee 5% and Employer 10%
  • Life Assurance - 4 times annual salary
  • Group Income Protection
  • Private Medical Insurance - may include cover for partner and/or children at company cost. Cover includes Optical, Dental and Audiology
  • Discretionary Bonus
  • Competitive Annual Leave
  • 2 Volunteering Days
  • Benefit Hub

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.collegerecruiter.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

6:36 min

Funding open source through GitHub Accelerator and Sponsors

Stormy Peters · World Congress 2023

3:35 min

Defining a serverless architecture using AWS CDK

Raphael Manke Raphael Manke · World Congress 2023

2:04 min

Enhancing network privacy with routing fees and onion routing

Andreas M Antonopoulos · LIVE

1:24 min

Evaluating formal AWS certifications versus raw practical engineering experience

Jan Giacomelli · LIVE

1:36 min

Managing infrastructure as code with AWS CDK

Markus Ziller Markus Ziller · World Congress 2024

2:40 min

Using GitHub primitives for internal documentation and corporate operations

Kyle Daigle · Coffee With Developers

Videos

See all

Related articles

See all