Cloud Infrastructure Engineer

Posted 12 Days Ago
Hiring Remotely in Brazil
Remote
Senior level
Software
The Role
Own and evolve multi-account AWS infrastructure and extend governance across Azure and GCP. Design identity, networking, zero-trust access, backup, disaster recovery, security controls, and self-service capabilities. Build reusable Terraform and Terragrunt modules, infrastructure CI/CD automation, and cloud operating standards. Partner with Security and FinOps teams, remediate risks, optimize costs, and use AI coding agents responsibly. Independently lead complex infrastructure projects, review changes, and mentor engineers as a senior individual contributor.
Summary Generated by Built In

Cloud Infrastructure Engineer 


Who We Are

At Platform Science, we’re working to connect everything that moves.

Founded in 2015, Platform Science is an open IoT platform partnering with innovative fleets, application developers, vehicle manufacturers, and equipment providers across the transportation industry. Our technology helps deliver modern solutions to supply chain professionals around the world.

Our employees bring diverse backgrounds, experiences, and perspectives. We believe great ideas can come from anywhere, and we foster a culture built around innovation, collaboration, empathy, resilience, and transparency.

About the Role

Platform Science is looking for a  Cloud Infrastructure Engineer to join our CloudOps team.

CloudOps owns the foundational cloud infrastructure that enables our engineering teams to build, deploy, and operate products at scale. The team manages identity, networking, governance, security guardrails, backup, disaster recovery, and shared cloud services across a multi-account AWS environment spanning hundreds of accounts and multiple business units. We are also extending this operating model across Azure and GCP.

This is a hands-on senior individual contributor role for an engineer who enjoys building foundational infrastructure and solving complex cloud problems. You will own infrastructure and platform capabilities end to end, work primarily through Infrastructure as Code, and create guardrails and self-service capabilities that allow engineering teams to move quickly without sacrificing security or reliability.

The scope is intentionally broad. You may work on cloud identity and permissions, private networking, multi-cloud governance, backup and disaster recovery, security remediation, or developer self-service capabilities.

AI-assisted engineering is also part of how the team operates. We use AI coding agents to accelerate implementation and automation while maintaining rigorous engineering review, security, and production standards.

What You'll Do
  • Implement and maintain components of our multi-account AWS Landing Zone (AWS Organizations, Control Tower, AFT, tagging standards, permission boundaries) within established patterns.
  • Support governance, security controls, observability, and backup capabilities across AWS, and increasingly Azure and GCP, following established standards.
  • Administer cloud identity and access management day-to-day — Okta federation, AWS IAM Identity Center, permission sets, group membership, credential hygiene — applying least-privilege principles within existing frameworks.
  • Configure and maintain cloud networking components: IP address management, VPC configuration, routing, transit connectivity, DNS — following architecture set by senior engineers.
  • Contribute to migrating workloads from public-internet exposure to private/zero-trust networking models under established playbooks.
  • Build and maintain self-service infrastructure workflows (account provisioning, environment provisioning, access requests) using existing frameworks and patterns.
  • Execute backup, restore, and disaster recovery procedures across cloud regions and accounts; help maintain and test DR runbooks.
  • Build and maintain Terraform/Terragrunt modules consumed by other engineering teams, following established module patterns.
  • Maintain CI/CD automation for cloud infrastructure.
  • Investigate and remediate cloud security findings identified by Security teams.
  • Support FinOps initiatives by implementing identified cost optimization opportunities.
  • Maintain documentation, runbooks, and operating procedures for owned systems.
  • Use AI coding agents as part of the engineering workflow, validating output and maintaining ownership of code review, testing, and production outcomes for your work.
Required Experience
  • 5+ years of professional experience in Cloud Infrastructure, DevOps, Site Reliability Engineering, Platform Engineering, Systems Engineering, or a related infrastructure discipline (or equivalent combination of education and experience).
  • 3+ years of hands-on experience with AWS or another major public cloud, with significant AWS experience strongly preferred.
  • 1+ years of Infrastructure as Code experience, preferably using Terraform and/or Terragrunt.
  • Working experience within an AWS multi-account environment (AWS Organizations, Control Tower, or comparable landing-zone architecture).
  • Exposure to at least one additional major cloud platform (Azure or GCP) beyond a single workload.
  • Experience building or maintaining Infrastructure as Code modules used by others.
  • Hands-on experience with cloud identity and access management: SSO, SAML federation, SCIM provisioning, IAM policies/roles, permission boundaries.
  • Solid cloud networking fundamentals: IP address planning, VPC/VNet configuration, routing, DNS, network security.
  • Experience maintaining CI/CD pipelines (GitHub Actions, Jenkins, or similar).
  • Scripting/programming experience with Python, Go, Bash, or similar.
  • Strong Linux fundamentals.
  • Working knowledge of Kubernetes and cloud-native infrastructure.
  • Experience using AI coding agents or AI-assisted development tools (Claude Code, Cursor, Codex, or similar), including validating generated code and identifying operational or security risk.
  • Ability to work independently on well-defined infrastructure tasks and exercise judgment within established guidelines.
  • Strong written and verbal communication skills; able to collaborate across Engineering, Security, and FinOps teams.
  • Advanced English proficiency.
  • Bachelor's degree in Computer Science, Software Engineering, Information Technology, or a related technical field + 5 years of experience; or equivalent combination of education and experience.
  • Must reside in Brazil.
Preferred Qualifications

Experience with one or more of the following is a plus:

  • AWS Control Tower and Account Factory for Terraform (AFT)
  • AWS IPAM, Transit Gateway, or Cloud WAN
  • Exposure to multi-cloud environments (AWS, Azure, and/or GCP)
  • MongoDB Atlas, Elastic Cloud, or similar managed data platforms
  • Wiz, GuardDuty, CrowdStrike, or other cloud security posture/security platforms
  • Zero-trust networking technologies such as Zscaler ZPA
  • Cloudflare WAF and DNS
  • Certificate and PKI lifecycle basics (ACM, cert-manager, Let's Encrypt)
  • Exposure to agentic automation pipelines or AI agent workflows
  • Cloud cost optimization / FinOps fundamentals
  • AWS, Azure, GCP, Terraform, or Kubernetes certifications

Skills Required

  • 5+ years of professional experience in cloud infrastructure, DevOps, site reliability engineering, platform engineering, systems engineering, or a related infrastructure discipline
  • 3+ years of hands-on experience with AWS or another major public cloud; significant AWS experience strongly preferred
  • 1+ years of Infrastructure as Code experience, preferably Terraform and/or Terragrunt
  • Experience operating AWS at organizational scale, including AWS Organizations, multi-account architecture, and Control Tower or comparable landing-zone architecture
  • Production experience with at least one additional major cloud platform, Azure or GCP, beyond managing a single workload
  • Strong experience designing reusable Infrastructure as Code modules and patterns consumed by other engineering teams
  • Hands-on cloud identity and access management experience, including SSO, SAML federation, SCIM provisioning, IAM policies, roles, permission boundaries, and least-privilege models
  • Strong cloud networking fundamentals, including IP address planning, VPC/VNet design, routing, transit architectures, DNS, private connectivity, and network security
  • Experience designing or maintaining CI/CD pipelines using GitHub Actions, Jenkins, or similar technologies
  • Experience scripting or programming with Python, Go, Bash, or similar languages
  • Strong Linux fundamentals
  • Working knowledge of Kubernetes and cloud-native infrastructure
  • Experience using AI coding agents or AI-assisted development tools, such as Claude Code, Cursor, Codex, or similar
  • Ability to independently own complex infrastructure projects from design through production implementation
  • Strong written and verbal communication skills and ability to collaborate across Engineering, Security, FinOps, and other technical teams
  • Advanced English proficiency
  • Bachelor's degree in Computer Science, Software Engineering, Information Technology, or a related technical field
  • Must reside in Brazil
  • Experience with AWS Control Tower and Account Factory for Terraform
  • Experience with AWS IPAM, Transit Gateway, or Cloud WAN
  • Experience with cross-account immutable backup and ransomware protection
  • Experience with MongoDB Atlas, Elastic Cloud, or similar managed data platforms
  • Experience with Wiz, GuardDuty, CrowdStrike, or similar cloud security platforms
  • Experience with zero-trust networking technologies such as Zscaler ZPA
  • Experience with Cloudflare WAF and DNS
  • Experience with certificate and PKI lifecycle management using ACM, Private CA, cert-manager, or Let's Encrypt
  • Experience with agentic automation pipelines or automated remediation workflows
  • Experience with MCP servers or reusable AI agent skills
  • Experience with secure access patterns and permission boundaries for AI-driven automation
  • Knowledge of cloud cost optimization and FinOps
  • Knowledge of SOC 2 or comparable security/compliance frameworks
  • GitHub organization administration experience, including teams, apps, rulesets, and Actions runners
  • AWS, Azure, GCP, Terraform, Kubernetes, or related technical certifications
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: San Diego, CA
180 Employees
Year Founded: 2015

What We Do

Platform Science is an innovative enterprise grade IoT fleet management platform for the transportation and logistics industry. By bringing expertise from 30+ years in telematics together with innovative thinking of IoT-technology experts, Platform Science is the first open platform solution for enterprise fleets to better configure their fleet management solution and meet changing demands of the regulatory landscape, all while preparing for a future of IoT-connected trucks/freight and the digital supply chain.

Similar Jobs

Remote
Brazil
180 Employees

Atmosera Logo Atmosera

Infrastructure Engineer

Cloud • Mobile • Professional Services • Software • Consulting
Remote
10 Locations
80 Employees

Transaction Network Services Logo Transaction Network Services

Infrastructure Engineer

Big Data • Information Technology • Other
In-Office or Remote
4 Locations
1433 Employees
Remote
11 Locations
36 Employees

Similar Companies Hiring

Onshore Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
60 Employees
Revel.io Thumbnail
Aerospace • Hardware • Robotics • Software
US
50 Employees
Blee Thumbnail
Artificial Intelligence • Marketing Tech • Software • Productivity
US
15 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account