Description
1. Engineering & Infrastructure:
Infrastructure as Code – Design, build, and maintain infrastructure using Terraform, AWS CloudFormation, or AWS CDK.
CI/CD Pipelines – Deliver and manage automated deployment pipelines using AWS CodePipeline, GitHub Actions, or Jenkins.
Monitoring & Observability – Implement monitoring, alerting, and logging using CloudWatch, Datadog, Grafana, or similar.
Incident Response – Lead root cause analysis and resolution of production incidents; contribute to on-call rotations.
Documentation – Maintain up-to-date architecture diagrams, runbooks, and decision records.
2. Architecture & Design:
Cloud Architecture Vision – Own the end-to-end architecture strategy, defining reference patterns and guardrails used across all teams.
Well-Architected Reviews – Conduct and facilitate AWS Well-Architected Reviews across the five pillars: operational excellence, security, reliability, performance, and cost.
Technology Evaluation – Assess and recommend new AWS services and third-party tooling, balancing innovation with operational stability.
Cloud-Native Patterns – Drive adoption of event-driven architecture, microservices, serverless, and twelve-factor design principles.
3. Governance & Security
Cloud Governance – Establish and enforce governance frameworks — account structures, landing zones, tagging policies, and guardrails via AWS Control Tower and AWS Organisations.
Security Architecture – Own the cloud security posture, designing zero-trust network models, identity federation strategies, and data protection controls.
Compliance – Ensure compliance with relevant frameworks including SOC 2, ISO 27001, GDPR, and HIPAA/PCI-DSS where applicable.
Threat Modelling – Lead architecture security reviews and threat modelling for new systems.
4.Cost, Performance & Strategy
FinOps – Own the cloud spend strategy, partnering with finance and engineering to set budgets, track usage, and drive continuous optimisation.
Performance at Scale – Design for resilience and low latency, including multi-region architectures and disaster recovery planning.
5. Stakeholder Engagement & Leadership
Executive Communication – Translate complex cloud trade-offs into clear guidance for C-suite and non-technical stakeholders.
Cross-Functional Collaboration – Partner with product, data, and security teams to align cloud architecture with broader business goals.
Vendor Management – Represent the engineering organisation in relationships with AWS and third-party partners.
Mentorship – Coach
- This is a senior, dual-function role. Candidates should bring both strong engineering fundamentals and the ability to operate at an architectural and strategic level.
- 7+ years in cloud engineering, DevOps, or infrastructure roles, with at least 4 years focused on AWS (some Azure skills will be beneficial)
- Proven experience delivering and architecting large-scale, production AWS environments across multiple accounts and regions.
- Background in both hands-on infrastructure work and architecture-level decision making.
- Some Azure experience is an advantage
- Deep knowledge of core AWS services: EC2, ECS/EKS, Lambda, S3, RDS/Aurora, VPC, IAM, Route 53, CloudFront, SQS/SNS.
- Expert-level AWS networking: Transit Gateway, VPC peering, Direct Connect, PrivateLink, DNS, TLS, and load balancing.
- Strong Infrastructure as Code proficiency — Terraform preferred; CloudFormation or CDK also valued.
- Containerisation and orchestration: Docker, Kubernetes/EKS.
- Cloud security architecture: IAM, SCP, KMS, Secrets Manager, GuardDuty, Security Hub, WAF.
- Multi-account AWS strategies using Organisations, Control Tower, and Service Catalog.
- Proficiency in at least one scripting or programming language: Python, Bash, or Go.Must be able to maintain confidentiality.
- Excellent written and verbal communication; able to present to both technical teams and senior leadership.
- Strong analytical thinking and the ability to make sound decisions under pressure.
- Experience mentoring engineers and influencing technical culture.