The Cloud Infrastructure Engineer is an experienced individual contributor responsible for designing, implementing, and operating secure, scalable, and highly available AWS infrastructure supporting a production-grade, multi-account B2B SaaS platform in the financial services industry.
This role is critical to maintaining platform resilience, security, automation maturity, and operational excellence across production and non-production environments. The engineer operates with moderate autonomy, owning defined areas of the AWS environment while contributing to infrastructure standards, reliability engineering, and security best practices.
Responsibilities
- Design, build, and maintain AWS infrastructure across production and non-production environments
Support application deployments and underlying platform services required for reliable operation
Implement and manage infrastructure using Infrastructure as Code (Terraform)
Configure and maintain AWS services including compute, storage, networking, and managed services
Monitor infrastructure health, availability, and performance; respond to incidents and perform root cause analysis
Partner with application engineering and security teams to support system reliability and scalability
Implement and maintain backup, disaster recovery, and high-availability solutions
Support automation related to infrastructure provisioning and application deployments
Manage IAM roles, permissions, and access controls in alignment with security policies
Contribute to cloud cost monitoring and optimization efforts
Maintain documentation, runbooks, and operational procedures
Participate in on-call or incident response rotations as required
Amazon ECS (Elastic Container Service)
Amazon EC2
Amazon ECR (Elastic Container Registry)
AWS Lambda (event-driven workloads)
Amazon VPC (multi-AZ design, subnet segmentation)
Internet Gateway (IGW)
VPC Peering
Elastic Load Balancing (ALB)
AWS WAF
Amazon Route 53
AWS Data Transfer optimization
Amazon RDS (PostgreSQL) and PSQL
Amazon DocumentDB (MongoDB compatibility)
Amazon ElastiCache (Redis)
Amazon MSK (Managed Streaming for Apache Kafka)
AWS IAM
AWS KMS
AWS Secrets Manager
AWS Config
AWS CloudTrail
Amazon GuardDuty
Amazon Inspector
AWS WAF
Auth0
Amazon CloudWatch (metrics, logs, alarms, events)
CircleCI
BitBucket
Github
Infrastructure as Code (Terraform)
Amazon S3
Amazon S3 Glacier Deep Archive
AWS Transfer Family
Amazon WorkSpaces (administrative environments)
Core AWS & Cloud Technologies
Compute & Containers
Networking & Edge
Databases & Caching
Messaging & Streaming
Security & Compliance
Monitoring & Observability
CI/CD & DevOps
Storage & Data Lifecycle
Managed Platform Services
Skills and Experience
Strong hands-on experience operating production AWS environments in a multi-account architecture.
Deep experience with containerized platforms (ECS) and distributed system design.
Proven experience managing relational and document databases in high-availability configurations.
Strong understanding of secure VPC architecture, ingress/egress control, and network isolation strategies.
Experience operating Kafka-based streaming architectures (MSK).
Expertise implementing infrastructure as code using Terraform.
Experience building and maintaining CI/CD pipelines for containerized workloads.
Strong knowledge of IAM design, encryption practices, and secrets management.
Experience implementing monitoring, alerting, and log aggregation for production systems.
Ability to troubleshoot performance, networking, scaling, and availability issues across distributed systems.
Experience supporting regulated or compliance-sensitive environments (e.g., financial services).
Demonstrated ability to leverage AI-assisted development tools (e.g., Cursor, ChatGPT) to accelerate infrastructure automation, troubleshooting, documentation, and code development while maintaining security and compliance standards.
Strong judgment in the responsible use of AI tools to enhance productivity, improve code quality, and streamline operational workflows within regulated environments.
Strong collaboration, documentation, and communication skills.
Minimum Qualifications
Bachelor’s degree in Computer Science, Engineering, or related field, or equivalent practical experience.
4–6 years of experience in cloud infrastructure, platform engineering, or systems engineering roles.
AWS certification (e.g., AWS Certified Solutions Architect – Associate, SysOps Administrator, or equivalent) preferred.
All StarCompliance employees are expected to commit to a high standard of personal integrity and carry out their responsibilities in an ethical manner
Integrity and Ethics
Skills Required
- Bachelor's degree in Computer Science, Engineering, or a related field, or equivalent practical experience
- 4-6 years of experience in cloud infrastructure, platform engineering, or systems engineering roles
- Hands-on experience operating production AWS environments in a multi-account architecture
- Experience with containerized platforms, particularly Amazon ECS, and distributed system design
- Experience managing relational and document databases in high-availability configurations
- Strong understanding of secure VPC architecture, ingress and egress controls, and network isolation
- Experience operating Kafka-based streaming architectures, preferably Amazon MSK
- Expertise implementing infrastructure as code using Terraform
- Experience building and maintaining CI/CD pipelines for containerized workloads
- Strong knowledge of IAM design, encryption practices, and secrets management
- Experience implementing monitoring, alerting, and log aggregation for production systems
- Ability to troubleshoot performance, networking, scaling, and availability issues across distributed systems
- Experience supporting regulated or compliance-sensitive environments, such as financial services
- Ability to use AI-assisted development tools responsibly for infrastructure automation, troubleshooting, documentation, and code development
- Strong collaboration, documentation, communication, judgment, integrity, and ethical conduct
- AWS certification, such as AWS Certified Solutions Architect Associate or SysOps Administrator
What We Do
StarCompliance is the world's leading provider of compliance software to the global financial industry. Our clients include asset managers, broker-dealers, private equity firms, insurance providers, investment banks, and diversified financial institutions. Our scalable, easy-to-use solutions provide a 360-degree view of employee and business activity to help firms monitor and reduce risk, meet regulatory obligations, gain efficiencies, and drive employee adoption. Our Employee Conflicts of Interest suite provides clients a single place for monitoring and mitigating potential employee conflicts, covering: personal trading activity; insider trading; private investments, gifts and entertainment spending; outside business activities; and political donations. The STAR Mobile app supports personal trading pre-clearance requests and gifts and entertainment spending submissions, and allows compliance officers and employee supervisors to review and approve those requests and submissions on-the-go. Compliance Control Room centralizes all firm deal-related activity—automatically surfacing critical data that might otherwise be missed—and allowing for easier conflict searches, so deals can be cleared faster and with greater confidence.
.png)





