Role Summary We are looking for a Senior Platform Engineer with deep expertise in AWS, DevOps, and DevSecOps practices, who can design and maintain secure, scalable, and developer-friendly platforms. This role will champion developer experience by building self-service capabilities, golden paths, and automation for common workflows, while ensuring platform reliability through SRE practices and compliance automation. The ideal candidate will have experience with Atlassian Compass (preferred) or Backstage for Internal Developer Portals, strong CI/CD skills, and a solution-oriented mindset. Previous development experience is a plus.
Key Responsibilities
Platform & Infrastructure
Architect and maintain AWS-based infrastructure (ECS, EKS, ECR, VPC, IAM, Lambda, API Gateway, S3, RDS).
Implement Infrastructure as Code (IaC) using AWS CDK (preferred), AWS cloud formation and Terraform for modular, reusable patterns.
Optimize cost, performance, and security across environments.
Orchestrate containers, observability stacks, and scaling strategies across distributed systems to ensure reliability and high availability.
CI/CD & Developer Experience
Build and standardize CI/CD pipelines using GitHub Actions, reusable workflows, and deployment strategies.
Integrate GitHub Advanced Security (CodeQL, Secret Scanning, Dependabot) into pipelines for proactive security.
Enable OIDC-based deployments for secure, secretless AWS access. Drive adoption of internal developer platform (IDP) such as Atlassian Compass (Preferred) or Backstage to enable developer self service, service cataloging, scorecards, and golden paths.
Observability & Reliability
Implement OpenTelemetry for distributed tracing and metrics.
Configure APM monitoring tooling (e.g Datadog ), including dashboards, alerts, and SLOs for application health and performance.
Improve MTTR through automated incident response and runbooks.
Security & Compliance
Embed security checks in CI/CD pipelines (e.g., SAST, dependency scanning, secret scanning, container image scanning, etc.) to support SOC 2 and PCI compliance Experience with Policy as Code using OPA (Open Policy Agent) and Conftest to validate IaC templates before deployment will be preferred
Apply AWS Well-Architected Framework principles across all platform designs to ensure security, reliability, performance efficiency, cost optimization, and operational excellence.
SBOM (Software Bill of Materials): Ensures transparency of all dependencies for compliance and vulnerability management.
Cosign (Image Signing): Provides cryptographic verification of container images to prevent tampering and supply chain attacks.
AI & Automation
Work with AI MCP servers to automate operational workflows and enhance developer experience.
Collaboration & Leadership
Partner with engineering teams to define platform standards and best practices. Mentor peers and promote automation-first culture.
Operate with minimal supervision and deliver solution-oriented outcomes.
Required Skills
Cloud: AWS (ECS, EKS, ECR, IAM, VPC, Lambda, API Gateway, S3, RDS). IaC: AWS CDK (preferred), Terraform.
CI/CD: GitHub, GitHub Actions, GitHub Advanced Security (GHAS). Languages: C#, Python, Bash, Go, Java, JavaScript. Containers: ECS, EKS, ECR.
Observability: OpenTelemetry, Datadog.
IDP: Atlassian Compass (preferred) or Backstage. Strong problem-solving and solution-oriented mindset. Previous development experience is a plus.
Preferred Skills
AWS services and observability tools like Datadog.
Policy-as-Code experience (OPA, Conftest).
Secrets management (AWS Secrets Manager, Vault).
Experience with developer portals and platform standardization (Atlassian Compass or Backstage).
Certifications (Plus):
AWS Certification (Solutions Architect, DevOps Engineer, or Security Specialty).
GitHub Certification (GitHub Actions or GitHub Advanced Security).
OPA/Policy-as-Code Certification (or equivalent governance/security automation