job summary:
We are seeking a Senior Platform Engineer to architect and scale our AWS-driven ecosystems while championing a "developer-first" culture through self-service Internal Developer Portals (IDPs) like Atlassian Compass. In this role, you will bridge the gap between development and operations by building "golden paths," standardizing high-velocity CI/CD pipelines with GitHub Actions, and embedding DevSecOps practices to ensure SOC 2 and PCI compliance. We are looking for a solution-oriented expert with 7+ years of experience who can leverage Infrastructure as Code (AWS CDK/Terraform) and AI-driven automation to reduce friction for our engineering teams. If you are passionate about observability, security-by-design, and building platforms that developers actually love to use, we want to talk to you about joining our San Antonio-based or remote team.
location: San Antonio, Texas
job type: Contract to Perm
salary: $65 - 73 per hour
work hours: 8am to 5pm
education: Bachelors
responsibilities:
Platform & Infrastructure
- Architect and maintain AWS-based infrastructure ECS, EKS, ECR, VPC, IAM, Lambda, API Gateway, S3, RDS
- Implement Infrastructure as Code (IaC) using AWS CDK (preferred), AWS cloud formation and Terraform for modular, reusable patterns.
- Optimize cost, performance, and security across environments.
- Orchestrate containers, observability stacks, and scaling strategies across distributed systems to ensure reliability and high availability.
CI/CD & Developer Experience- Build and standardize CI/CD pipelines using GitHub Actions, reusable workflows, and deployment strategies.
- Integrate GitHub Advanced Security CodeQL, Secret Scanning, Dependabot) into pipelines for proactive security.
- Enable OIDC-based deployments for secure, secretless AWS access.
- Drive adoption of internal developer platform (IDP) such as Atlassian Compass Preferred) or Backstage to enable developer self service, service cataloging, scorecards, and golden paths.
Observability & Reliability- Implement OpenTelemetry for distributed tracing and metrics.
- Configure APM monitoring tooling (e.g Datadog ), including dashboards, alerts, and SLOs for application health and performance.
- Improve MTTR through automated incident response and runbooks.
Security & Compliance- Embed security checks in CI/CD pipelines (e.g., SAST, dependency scanning, secret scanning, container image scanning, etc.) to support SOC 2 and PCI compliance
- Experience with Policy as Code using OPA
- Open Policy Agent) and Conftest to validate IaC templates before deployment will be preferred
- Apply AWS Well-Architected Framework principles across all platform designs to ensure security, reliability, performance efficiency, cost optimization, and operational excellence.
- SBOB Software Bill of Materials): Ensures transparency of all dependencies for compliance and vulnerability management.
- Cosign (Image Signing): Provides cryptographic verification of container images to prevent tampering and supply chain attacks.
AI & Automation- Work with AI MCP servers to automate operational workflows and enhance developer experience.
Collaboration & Leadership- Partner with engineering teams to define platform standards and best practices.
- Mentor peers and promote automation-first culture.
- Operate with minimal supervision and deliver solution-oriented outcomes.
qualifications:
- Cloud: AWS ECS, EKS, ECR, IAM, VPC, Lambda, API Gateway, S3, RDS
- IaC: AWS CDK (preferred), Terraform.
- CI/CD: GitHub, GitHub Actions, GitHub Advanced Security (GHAS).
- Languages: C#, Python, Bash, Go, Java, JavaScript.
- Containers: ECS, EKS, ECR.
- Observability: OpenTelemetry, Datadog.
- IDP: Atlassian Compass (preferred) or Backstage.
- Strong problem-solving and solution-oriented mindset.
- Previous development experience is a plus.
Preferred Skills
- AWS services and observability tools like Datadog.
- Policy-as-Code experience
- OPA, Conftest).
- Secrets management
- AWS Secrets Manager, Vault).
- Experience with developer portals and platform standardization
- Atlassian Compass or Backstage).
Certifications (Huge plus):
- AWS Certification (Solutions Architect, DevOps Engineer, or Security Specialty).
- GitHub Certification (GitHub Actions or GitHub Advanced Security).
- OPA/Policy-as-Code Certification (or equivalent governance/security automation credentials).
Equal Opportunity Employer: Race, Color, Religion, Sex, Sexual Orientation, Gender Identity, National Origin, Age, Genetic Information, Disability, Protected Veteran Status, or any other legally protected group status.
At Randstad Digital, we welcome people of all abilities and want to ensure that our hiring and interview process meets the needs of all applicants. If you require a reasonable accommodation to make your application or interview experience a great one, please contact
Pay offered to a successful candidate will be based on several factors including the candidate's education, work experience, work location, specific job duties, certifications, etc. In addition, Randstad Digital offers a comprehensive benefits package, including: medical, prescription, dental, vision, AD&D, and life insurance offerings, short-term disability, and a 401K plan (all benefits are based on eligibility).
This posting is open for thirty (30) days.
![]()