Padmi

Cloud / DevOps Engineer

IndiaPosted 2 months ago
Infrastructure And DatabasesMid-levelFull Time; Regular
Apply at aivarinnovations

Opens the source posting on shine.com

Source description

About the role

View original

Responsibilities: Our accelerators get deployed into customer cloud accounts with strict compliance requirements (HIPAA, SOC 2 HITRUST).Own the full deployment and operations story: Terraform modules for customer provisioning, CI/CD pipelines, compliance-hardened configurations, an observability stack, and multi-tenant network isolation.Build Terraform modules that provision the full accelerator stack in customer AWS accounts repeatably, version controlled, and compliant.Implement compliance-hardened infrastructure, HIPAA-eligible configs, encryption at rest/transit, private endpoints, and IMDSv2 audit logging.Design CI/CD pipelines with automated testing, container builds, staged rollouts, and rollback mechanisms.Configure the observability stack, Prometheus, Grafana, Fluent Bit, and OpenTelemetry, with alerting.Design VPC architecture, private subnets, security groups, NACLs, NAT gateways, and peering for customer deployments.Produce compliance evidence for SOC 2 HIPAA, and HITRUST audits; automate evidence collection.Automate Day 2 operations backup/restore, secret rotation, certificate management, and patch management. Requirements: Experience: 3-7 years | Strong AWS + Terraform required. Must-Have Technical Skills: AWS deep expertise in VPC design, IAM policies, and multi-account strategy (not surface-level).Terraform modules, state management, workspaces, drift detection, CI/CD integration.Container orchestration ECS (Fargate) or EKS, ECR, and container security scanning.CI/CD design: GitHub Actions, CodePipeline, or equivalent.Security engineering IAM: least privilege, encryption, network segmentation, and secrets management.Monitoring Prometheus, Grafana, and CloudWatch and alerting configuration.Experience deploying into customer/third-party cloud accounts.Core Tech Stack: Terraform, AWS (VPC, ECS/EKS, RDS, S3 Lambda, KMS, CloudTrail, Security Hub, GuardDuty), GitHub Actions, Docker/ECR, Prometheus/Grafana/FluentBit/OpenTelemetry, Bash, Python. Responsibilities: Our accelerators get deployed into customer cloud accounts with strict compliance requirements (HIPAA, SOC 2 HITRUST).Own the full deployment and operations story: Terraform modules for customer provisioning, CI/CD pipelines, compliance-hardened configurations, an observability stack, and multi-tenant network isolation.Build Terraform modules that provision the full accelerator stack in customer AWS accounts repeatably, version controlled, and compliant.Implement compliance-hardened infrastructure, HIPAA-eligible configs, encryption at rest/transit, private endpoints, and IMDSv2 audit logging.Design CI/CD pipelines with automated testing, container builds, staged rollouts, and rollback mechanisms.Configure the observability stack, Prometheus, Grafana, Fluent Bit, and OpenTelemetry, with alerting.Design VPC architecture, private subnets, security groups, NACLs, NAT gateways, and peering for customer deployments.Produce compliance evidence for SOC 2 HIPAA, and HITRUST audits; automate evidence collection.Automate Day 2 operations backup/restore, secret rotation, certificate management, and patch management. Requirements: Experience: 3-7 years | Strong AWS + Terraform required. Must-Have Technical Skills: AWS deep expertise in VPC design, IAM policies, and multi-account strategy (not surface-level).Terraform modules, state management, workspaces, drift detection, CI/CD integration.Container orchestration ECS (Fargate) or EKS, ECR, and container security scanning.CI/CD design: GitHub Actions, CodePipeline, or equivalent.Security engineering IAM: least privilege, encryption, network segmentation, and secrets management.Monitoring Prometheus, Grafana, and CloudWatch and alerting configuration.Experience deploying into customer/third-party cloud accounts.Core Tech Stack: Terraform, AWS (VPC, ECS/EKS, RDS, S3 Lambda, KMS, CloudTrail, Security Hub, GuardDuty), GitHub Actions, Docker/ECR, Prometheus/Grafana/FluentBit/OpenTelemetry, Bash, Python.

One address, no account. We’ll tell you when matching roles go live.

More at aivarinnovations

Related open roles

View all roles