FREE ACCESS
5,000–10,000 jobs/day
See all jobs on Scoutfield
Search thousands of fresh jobs every day.
Discover
- Fresh listings
- Fast filters
- No subscription required
Create a free account and start exploring right away.

Senior Platform Engineer
CloudMargin. Design, build and maintain AWS infrastructure as code using Terraform and Terragrunt across a multi-account estate and approximately 70 service repositories .
Core Competencies
Role fitCore Competencies
Use this summary to align your resume positioning with the role.
Demonstrates expertise in AWS infrastructure management, including Terraform and CI/CD tooling, while ensuring compliance with security frameworks such as ISO 27001. Proficient in operating production workloads and managing vulnerabilities in a multi-account AWS environment.
Highest-signal resume keywords
AWS Infrastructure ManagementTerraform ExpertiseCI/CD Implementation with GitHub ActionsVulnerability Management and RemediationISO 27001 Compliance
ATS Keywords
Tailor your resumeApplicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills
AWS ECSAWS FargateAWS LambdaTerraformPythonBashAnsibleDatadogCI/CDFinOps
Soft Skills
Excellent CommunicationTeam CollaborationIncident Response
Tools & Technologies
GitHub ActionsAWS CodeBuildAWS CodeDeployDatadogAWS Transfer Family
Industry Keywords
Platform EngineeringDevOpsSREInfrastructureSecurity Frameworks
Tech Stack
Tools & technologiesAnsibleApacheAWSBootstrapDNSEC2FirewallsJavaScriptLinuxMySQLNGINXNode.jsPythonRedisSQLSwiftTerraform
About the role
Key responsibilities & impact- Design, build and maintain AWS infrastructure as code using Terraform and Terragrunt across a multi-account estate and approximately 70 service repositories
- Contribute to the AWS multi-account programme, including Organizations, IAM Identity Center, Service and Resource Control Policies, account bootstrap and baselines
- Build and maintain shared CI/CD and release tooling using GitHub Actions, AWS CodeBuild, CodeDeploy, semantic-release and policy-as-code checks
- Operate containerised and serverless production workloads on ECS Fargate and Lambda
- Own Datadog monitoring, logging and alerting; design actionable alerts and control observability costs
- Participate in the weekly support rota and Datadog On-Call; respond to incidents and produce root cause analyses
- Operate security tooling and drive vulnerability findings through remediation
- Manage AWS WAF, CloudFront, firewalls, client IP whitelisting and certificate lifecycles
- Support ISO 27001, DORA and SWIFT compliance, annual penetration testing and disaster recovery exercises
- Operate and upgrade Aurora MySQL, RDS Proxy, DocumentDB, Redis and Amazon MQ
- Deliver client-facing infrastructure onboarding, including SFTP, AWS Transfer Family, key management, tenant and sandbox provisioning
- Manage secrets, identity and access across AWS and related systems
- Contribute to FinOps, including cost analysis, budgets, guardrails, rightsizing and backup lifecycle management
- Automate manual runbook work through self-service tooling
- Modernise and safely decommission legacy systems
- Document work in runbooks, ADRs and threat models
- Work within Agile practices, two-week sprints and backlog refinement
- Share knowledge and support less experienced engineers across the distributed team
Requirements
What you’ll need- At least 5 years of practical experience in Platform Engineering, DevOps, SRE or Infrastructure roles, or equivalent
- Minimum 3 years of hands-on experience designing and running production workloads on AWS
- At least 2 years managing production environments on AWS ECS, Fargate and serverless Lambda
- Demonstrable experience writing and maintaining production Terraform at scale
- Experience with or willingness to work with Terragrunt or an equivalent multi-account orchestration layer
- Experience of AWS multi-account architecture, including AWS Organizations, IAM Identity Center, Service Control Policies and account baselining
- Experience of production on-call and incident response in a customer-facing environment
- Hands-on vulnerability management and remediation experience
- Experience working within a recognised security or regulatory framework such as ISO 27001, SOC 2 or DORA
- Comfortable reading and debugging Node.js services
- Ability to write production-quality Python and Bash
- Financial institution or regulated SaaS experience is highly desirable
- Depth across AWS services including ECS/Fargate, Lambda, EC2, RDS/Aurora MySQL, DocumentDB, Redis, Amazon MQ, S3, EFS, ELB/ALB, Route 53, API Gateway, CloudFront, WAF, ACM, Secrets Manager, SSM Parameter Store, KMS, AWS Backup, ECR, CodeBuild, AWS Transfer Family, Organizations and IAM Identity Center
- Expertise in Terraform, including module design, remote state and workspace strategy
- Skilled with Ansible
- Proficiency implementing CI/CD with GitHub Actions and AWS CodeBuild/CodeDeploy
- Familiarity with Datadog observability, metrics, logs, APM, database monitoring and on-call scheduling
- Experience with security tooling such as Wazuh, Prowler, Trivy, Checkov or equivalents
- Deep understanding of networking and system architecture, including VPCs, peering, endpoints, DNS, TLS, certificates, zero-trust access and firewalls
- Linux administration on Ubuntu; CentOS experience is useful
- Knowledge of Nginx and Apache
- Proficiency with Python, Bash, HCL, YAML and SQL
- Understanding of microservice and event-driven architecture, SQS, SNS, EventBridge, RESTful APIs and SPAs
- Understanding of FinOps practices
- Experience with Confluence and Jira
- Knowledge and application of Agile principles
- Ability to work during production incidents and planned weekend change windows
- Excellent written and verbal communication across time zones and functions
Benefits
Comp & perks- Remote work in Romania
- Supportive distributed team environment
- Opportunities to work with senior leadership and cross-functional teams
- Exposure to advanced AWS, SaaS, FinTech, security, compliance and FinOps practices
- Knowledge sharing and support for professional development
- Two-week Agile sprints and collaborative engineering practices