
Senior Cloud Engineer (AWS) (102-08SENG-01)
- Remote
- -, Acre, Brazil
- Technology
Tech stack
Terraform, AWS CDK, CloudFormation, AWS Control Tower, AWS Organizations, IAM Identity Center, VPC, ECS, EKS, Amazon Bedrock, Python, Go, TypeScript, GitHub Actions, GitLab
Job description
This is a Senior Cloud Engineer role building production AWS platforms for North American customers, with delivery spanning Pacific to Eastern time zones. The role is hands-on delivery — Terraform, pipelines, and consoles — with customer contact kept light and mostly asynchronous.
Engineers are expected to work with genuine engineering judgment: standing up multi-account foundations, running CI/CD for infrastructure and applications, executing complex legacy-to-cloud migrations, and increasingly, using AI tooling to move faster while catching bad output before it reaches production.
What you will do
Build and maintain Terraform (primarily) and CDK/CloudFormation modules that are reviewed, tested, versioned, and reusable across engagements.
Implement multi-account environments: Control Tower, Organizations, IAM Identity Center, SCPs, VPC and hybrid networking, DNS, certificate management, centralized logging and guardrails.
Design and implement CI/CD for both application and infrastructure delivery, including automated testing, policy checks, and safe rollback.
Migrate, deploy, and tune ECS and EKS workloads: cluster configuration, autoscaling, ingress, secrets, service mesh where warranted, and the observability to know what is actually happening.
Execute complex, large-scale migrations of VMware, on-premises, and legacy estates into AWS: discovery tooling, dependency mapping, cutover runbooks, and post-migration validation.
Use agentic coding tools for IaC authoring, refactoring, test generation, log and assessment analysis, and documentation — with the judgment to catch bad output before it merges.
Implement AI workload foundations on Amazon Bedrock and related services: retrieval pipelines, agent orchestration, guardrails, and the IAM and network posture around them.
Remediate Well-Architected assessments and security findings, tighten IAM, and take real cost out of customer environments.
Troubleshoot production issues in the environments you build, write the runbooks, and hand over to customers cleanly.
Job requirements
8+ years in Cloud or infrastructure engineering, with at least 5 years hands-on in AWS.
Terraform at a professional standard — modules, state management, workspaces, drift, upgrades, and the discipline to keep it reviewable.
Production experience across compute, networking, identity, storage, and observability, including VPC design, IAM boundaries, SCPs, DNS, TLS, tagging and cost allocation.
Strong networking and security experience, ideally within Enterprise environments.
Real ECS and/or EKS experience in production, plus serverless patterns where they fit.
Strong scripting and development ability in Python, Go, or TypeScript — building and debugging, not just reading.
CI/CD as a core skill: GitHub Actions, GitLab CI, CodePipeline, or similar.
Deep Linux fundamentals and genuine troubleshooting ability — following a problem from symptom to root cause without guessing.
Security-by-default instincts and experience shipping into environments with strict governance and compliance obligations.
Active use of AI coding assistants and agentic tools in daily work, with the ability to speak specifically about where they help, where they fail, and how output is verified before reaching a customer environment.
Working understanding of the GenAI application stack: model trade-offs, context design, retrieval, tool use, evaluation, and observability.
Familiarity with Amazon Bedrock or comparable managed model platforms.
- Brazil
or
All done!
Your application has been successfully submitted!
You've already applied for this job
We appreciate your interest in this position. Unfortunately, you have already applied for this job.
