We are looking for an experienced AWS Cloud Engineer to design, deploy, and operate secure and scalable cloud environments. This role focuses heavily on AWS Landing Zone implementations and Terraform-based Infrastructure as Code, working closely with the Cloud Center of Excellence (CCoE). The ideal candidate is hands-on, security-focused, and comfortable managing multi-account AWS environments in production.
What You'll Do
- Design, deploy, and support AWS infrastructure using Terraform (IaC).
- Implement and manage AWS Landing Zones (AWS Control Tower or custom-built).
- Manage multi-account AWS environments with proper separation (Prod, UAT, Dev).
- Build standardized networking, security, and logging frameworks.
- Develop and maintain reusable Terraform modules following best practices.
- Networking: VPC, Transit Gateway, subnets, routing
- Security & Identity: IAM, IAM Identity Center (SSO), SCPs
- Compute & Integration: EC2, Auto Scaling, ALB/NLB, Lambda
- Data: S3, RDS, DynamoDB
- Apply AWS security and compliance best practices.
- Integrate Terraform workflows into CI/CD pipelines.
- Monitor cloud usage, optimize costs, and improve performance and reliability.
- Troubleshoot production infrastructure issues.
- Maintain clear documentation, architecture diagrams, and SOPs.
What We're Looking For
- Strong hands-on experience operating AWS production environments.
- Proven expertise with Terraform on AWS.
- Practical experience implementing or managing AWS Landing Zones.
- AWS governance and security best practices
- IAM, SCPs, least-privilege access
- AWS networking (Transit Gateway, CIDR, routing, DNS, NACLs)
- Experience managing multiple AWS accounts.
- Ability to work independently and take full ownership of cloud platforms.
Added Advantage
- AWS certifications (Solutions Architect, SysOps, DevOps).
- Experience with Kubernetes / Amazon EKS.
- Exposure to Ansible or similar tools.
- Familiarity with CloudWatch, Prometheus, Grafana.
- Scripting skills in Python and/or Bash.
- Experience supporting enterprise or regulated environments.