AWS Cloud Architect
Location
District Of Columbia + 1 moreAll locations: District Of Columbia | Washington
Posted
65 days ago
Salary
0
Seniority
Mid Level
Job Description
AWS Cloud Architect
Private Label Staff
• Design, implement, and maintain secure, scalable AWS cloud environments • Translate business and technical requirements into effective cloud architecture solutions • Support cloud migration efforts, including planning, data transfer, and workload refactoring • Manage and optimize AWS services (EC2, S3, RDS, IAM, VPC, CloudFormation) • Monitor system performance, ensuring high availability and reliability (targeting 99.999% uptime) • Implement security controls, compliance frameworks, and monitoring solutions • Collaborate with developers and data engineers to integrate applications and cloud services • Automate infrastructure and processes using scripting and Infrastructure as Code (IaC) • Maintain technical documentation, architecture diagrams, and operational procedures • Perform system patching, upgrades, and continuous monitoring • Support disaster recovery planning, testing, and execution • Contribute to Agile development cycles, including planning, troubleshooting, and deployment
Job Requirements
- Ability to obtain and maintain a Public Trust clearance
- 2+ years of experience in cloud engineering, systems administration, or cloud architecture
- Hands-on experience with AWS GovCloud and core AWS services (EC2, S3, RDS, IAM, VPC, CloudFormation, CloudWatch)
- Strong understanding of cloud security principles and compliance frameworks
- Experience with cloud migration and hybrid/multi-cloud environments
- Familiarity with containerization and orchestration (Docker, Kubernetes, ECS, or EKS)
- Proficiency in scripting or automation (Python, Bash, or similar)
Benefits
- Health insurance
- 401(k) matching
- Flexible work hours
- Paid time off
- Remote work options
Related Guides
Related Categories
Related Job Pages
More Cloud Engineer Jobs
• Manage Linux IT infrastructure (on-prem/hosted and cloud environments) • Respond to alerts generated by monitoring and operational tools • Perform remediation within defined SLAs • Collaborate with team members to provide customer service • Document configurations, procedures, and best practices • Participate in client onboarding, delivery, and internal continuous improvement initiatives
About The Opportunity Netrix Global is seeking a Cloud Engineer - Linux Administrator, a technical position within the Managed Services division, responsible for managing Netrix and its customers' Linux IT infrastructure (on-prem/hosted and cloud environments). The Cloud Engineer reports to the Cloud Systems Manager under Managed Services and serves as an escalation point for the Tier 1 Technical/Network Operations Center TOC/NOC, Service Desk, and Systems Team. The ideal candidate will have 5-7 years of hands-on experience and strong skills in administration, management, monitoring, and troubleshooting of Linux environments (on-prem/cloud and physical/virtual) and familiarity with related application and network support. The role is responsible for responding to alerts generated by monitoring and operational tools, assessing events that require investigation, and performing remediation within defined SLAs. In addition to day-to-day operational support, this role contributes to small-scale projects, ongoing tuning and optimization of monitoring and alerting systems, and proactive maintenance activities such as patching and remediation to ensure platform stability, performance, and security. This position requires excellent verbal and written communication skills as the primary point of customer interaction for incidents and service. How You Will Make an Impact - Incident Management & Troubleshooting: Action Incidents and Service Requests tied to the administration, management, and troubleshooting of Linux Servers/Endpoints in production/dev environments and related network and application issues. Includes but not limited to Investigating and resolving Linux OS, application, middleware, and connectivity issues, Troubleshoot boot, performance, storage, filesystem, CPU/memory, and process-related problems, Analyze logs and identify the root cause of incidents, Support troubleshooting of services such as web servers, SMTP relay, DNS resolution, SSL/TLS, scheduled jobs, and agent-based tools, Escalate complex issues when needed, while maintaining ownership through resolution. - Systems Administration: Includes but not limited to Managing users, groups, permissions, sudo access, SSH configuration, Support package management, OS upgrades, kernel updates, and repository administration, Manage services through systemd and troubleshoot failed daemons/services, Perform storage administration including filesystems, mounts, LVM, swap, and disk utilization cleanup, Develop and maintain basic automation using Bash. - Network and Security: Includes but not limited to Validating network connectivity, firewall rules, ports, routing, and name resolution, Support troubleshooting related to SMTP, DNS, proxy, certificates, and secure remote access, Apply Linux security best practices, hardening standards, and vulnerability remediation, Review and maintain access controls, audit logs, and privileged access usage, Configure and validate network settings required for new asset deployments, server onboarding, and migration activities. - Perform routine health checks, updates and upgrades, system validations on Linux environments - Monitor Linux server/endpoint performance, capacity, uptime, and service availability - Provide guidance and serve as an escalation point for TOC/NOC, Service Desk and Systems Teams for both Netrix and customer environments. - Work collaboratively with other team members to provide a high level of customer service and meet departmental KPIs. - Participate in on-call rotations, including weekends and after-hours support. - Document configurations, procedures, and best practices; maintain accurate technical documentation. - Participate in client onboarding, delivery, and internal continuous improvement initiatives. - Follow documented Change and Problem Management processes for Netrix and its customers. - Continually works toward the development of their technical skill set(s) to better serve the Netrix Global organization and its clients. What You Will Bring to The Table Qualifications - Bachelor’s degree in information technology or related field, or equivalent experience. - 5-7 years of hands-on experience in Linux infrastructure support of on-prem/cloud infra, both physical and virtual Required Skills and Experience Essential / Core Skills - Knowledge of Linux workloads in cloud environments and virtualized environments on-premises (VMware) - Strong administration skills in Ubuntu, RHEL, CentOS, Rocky and AlmaLinux distributions and knowledge and hands-on experience with systemd, journald / rsyslog, package managers (yum, dnf, apt), users/groups/permissions, SSH / SCP / SFTP, cron / scheduled jobs, process and service management - Strong troubleshooting methodology and root cause analysis and experience with top / htop, ps / free / vmstat / iostat / sar, df / du / lsblk / blkid / mount, journalctl / dmesg / tail / grep / awk / sed, netstat / ss / curl / wget / dig / nslookup / traceroute / ping / nc / telnet - Basic Networking Fundamentals and understanding of TCP/IP, DNS, SMTP, HTTP/HTTPS, SSL/TLS certificates , firewalld / iptables basics, port and connectivity testing - Web / Middleware / Infrastructure Services - Experience supporting one or more of the following: Apache / Nginx , Postfix / mail relay services, DNS tools and validation, reverse proxies / load balancers, SSL certificate deployment and renewal Supplemental / Good-to-Have Skills - Experience working in a Managed Service Provider (MSP) environment is a plus. Or Familiarity with Enterprise Operations via ticket-driven support environments. - Experience with Tools like LogicMonitor, Zabbix/Nagios, other cloud monitoring platforms or centralized logging tools. - Scripting and Automation Skills - Ability to automate operational tasks and create troubleshooting scripts. Soft Skills - Excellent verbal and written communication skills in English. - Strong problem-solving and analytical thinking skills. - Self-motivated with the ability to prioritize tasks and manage time effectively. - Exceptional customer service and client communication. - Ability to work independently or collaboratively within a team. - Consistent follow-up and attention to detail on open tasks and tickets. - Ability to work remotely with minimal distractions and a reliable internet connection. Shift: 5 days/ Week; Rotational shifts to cover 24*7 support for Netrix customers and available for on-call. The initial shift schedule will be updated for training with the SME / Manager in Argentina/ US business hours. After that, it will be rotated to accommodate 24/7 coverage for Netrix customers based in the US. About Us At Netrix Global, our values are the philosophies and principles that we live by. They support our vision, help us achieve our goals and commit us to a common purpose. We Own Outcomes, Win Together, Make An Impact, Enjoy The Journey, and Respect All! Netrix Global is a mission-driven organization with the goal of providing the people, processes, and technology needed to run and scale modern, data-driven businesses that are always on and always secure. Our breadth of capabilities allows us to provide holistic offerings that solve even today’s most complex business challenges, delivering to you an integrated, optimized, and future-proof solution. We work with clients of all sizes and specialize in solutions for healthcare, manufacturing, government, education, financial services, and legal industries. Netrix is consistently ranked in the CRN VAR500, detailing the country’s top system integrators. At Netrix, we’re driven to solve business problems with innovative technology solutions. We focus on end-users and are committed to client satisfaction. What You Can Expect from Us We offer a competitive compensation package, comprehensive group benefits to meet the needs of you and your family, flexibility, and time off when you need it, and a casual work environment. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or veteran status. As part of this commitment, we will ensure that persons with disabilities are provided reasonable accommodations. If you need reasonable accommodations, please let us know by contacting NetrixHR@Netrixglobal. To learn more about Netrix Global, please go to www.netrixglobal.com
Full Stack Cloud Engineer – AI Security Platform
HiddenLayerFounded in 2022 and headquartered in Austin, Texas, HiddenLayer is a cybersecurity company protecting machine learning models and AI-powered systems by offering a non-invasive secu
• Ship end-to-end platform features (UI → API → cloud services) that customers rely on daily. • Improve performance and reliability of low-latency, distributed services running in Kubernetes. • Increase deployment confidence and velocity through strong automated test coverage and CI/CD. • Deliver integrations that connect HiddenLayer into the broader cloud, AI, and security ecosystems. • Design and implement microservices in Go and/or Python, with clear API contracts and interoperability. • Build and operate cloud-native services on AWS or Azure, deployed as containerized workloads on Kubernetes. • Build and evolve customer-facing product experiences using TypeScript + React. • Own performance: profile, troubleshoot, and optimize p95/p99 latency, throughput, and resource efficiency. • Strengthen delivery: maintain test strategies (unit/integration/e2e) that enable continuous deployment. • Improve operational excellence: logging/metrics/tracing, alerting, on-call readiness, runbooks, and incident follow-ups. • Partner closely with Product, Security, and Engineering peers, communicate early, document decisions, and seek alignment. • Use AI-assisted development tools to accelerate delivery, while applying strong engineering judgment and security hygiene.
🚀 En IRIUM nos preocupamos porque no dejes de perseguir tus sueños. Prepárate para conquistar tus metas, y ten siempre presente disfrutar del camino. Buscamos un/a ARQUITECTO CLOUD para sector energético. 🔍 ¿Qué buscamos?: REQUISITOS - Azure (nivel avanzado): Entra ID, Management Groups, Azure Policy, VNets, Hub-and-Spoke, ExpressRoute, Private Endpoints, Private DNS Zones, Azure Firewall, App Service, AKS, Defender for Cloud, Sentinel, Monitor, Log Analytics. - AWS (nivel medio-alto): Organizations, Control Tower, Landing Zone, IAM Identity Center, VPC, Transit Gateway, EKS, CloudWatch, Config, GuardDuty, Security Hub. - Terraform (obligatorio): Diseño modular, state remoto, workspaces, providers Azure y AWS, pipelines CI/CD para infraestructura. - Networking cloud: Hub-and-spoke, Private DNS, segmentación, Zero Trust, conectividad híbrida. - Migración cloud: Metodologías de assessment (6Rs), herramientas de discovery, planificación de oleadas, gestión de dependencias. - FinOps: Tagging, cost allocation, reserved instances, savings plans, optimización. - Cumplimiento NIS2: Obligaciones para entidades esenciales del sector energético, gestión de incidentes, continuidad, cifrado, cadena de suministro, reporting. - Seguridad cloud avanzada: Sentinel, Defender for Cloud (todos los planes), Security Hub, GuardDuty, compliance automatizado, gestión de vulnerabilidades en contenedores. VALORABLE - Experiencia previa en sector energético o entornos regulados (utilities, telco, banca). - Oracle en contextos de migración cloud (licenciamiento, Exadata, RAC). - Certificaciones: Azure Solutions Architect Expert, AWS Solutions Architect Professional, Terraform Associate o superior. - Kubernetes en producción (AKS/EKS) a escala. - CAF y Well-Architected Framework (Azure/AWS). - TOGAF o frameworks equivalentes. - Auditorías de cumplimiento (ISO 27001, ENS, SOC 2). - NIST CSF 2.0 y su alineación con NIS2. - Diseño de planes DR/BCP en entornos cloud regulados - Inglés: deseable FUNCIONES - Diseño de Landing Zones y arquitectura cloud: - Diseñar y evolucionar la Landing Zone Azure (CAF): Management Groups, suscripciones, RBAC con PIM, Hub-and-Spoke multi-región (WEU + ESC), Azure Firewall Premium, DNS Private Resolver, Bastion. - Definir Landing Zone AWS con Control Tower: OUs, cuentas, SCPs, Transit Gateway, conectividad híbrida. - Diseñar arquitecturas de referencia para Application Landing Zones (App Service, AKS, serverless) con networking privado (Private Endpoints, VNet Integration, Private DNS Zones). - Assessment y estrategia de migración: - - Completar el assessment de aplicaciones cubriendo gaps identificados: dependencias (87% sin datos), sizing real (CPU, RAM, IOPS), versiones de middleware/runtime, modelo de licenciamiento (especialmente Oracle Exadata). - Definir estrategia de migración por aplicación (6Rs), sequencing de oleadas respetando dependencias, y criterios de rollback. - - - Evaluar riesgos de licenciamiento Oracle en cloud. - Gobernanza y modelo operativo cloud: - - Definir modelo de gobierno cloud: Azure Policies / AWS SCPs, tagging strategy, naming conventions, compliance automático. - Establecer estrategia FinOps: etiquetado por BU y país, budget alerts, chargeback. - Definir monitorización centralizada (Log Analytics, Defender for Cloud, Sentinel). - Infrastructure as Code y DevOps: - Diseñar estructura de repositorios Terraform con módulos reutilizables, state remoto y pipelines CI/CD. - Definir estrategia de pipelines (GitFlow, versionado semántico, build once / deploy many) con despliegues multi-entorno (DEV → UAT → PROD). - Cumplimiento NIS2 en arquitectura: - Diseñar monitorización con alertas automatizadas y runbooks de respuesta a incidentes (24h alerta temprana, 72h notificación formal). - Aplicar mínimo privilegio y JIT access (PIM/PAM) para accesos de proveedores. - Incorporar DR documentado y testado con RPO/RTO por criticidad, especialmente para aplicaciones de reporte regulatorio (REE, OMIE). - Cifrado en tránsito (TLS 1.2+) y en reposo obligatorio con CMK para datos críticos. - MFA obligatorio, Zero Trust, segmentación de red y microsegmentación. - Escaneo continuo de vulnerabilidades en infraestructura y contenedores. - Interlocución y reporting: - Referente técnico cloud frente al responsable de arquitectura de Acciona Energía. - Producir entregables de arquitectura (HLD, LLD, Decision Records) con calidad para validación por parte de Acciona. - Participar en gestión del cambio organizacional. ⭐ ¿Qué Ofrecemos? • Lugar de trabajo: REMOTO – IMPRESCINDIBLE RESIDENCIA EN ESPAÑA • Contrato indefinido con IRIUM • Retribución flexible ✌ • Banda salarial: Según valía y experiencia (40-47K) • 23 días de vacaciones 🏕️ • Buen clima laboral 🙍♀️🙍♂️ • Acceso ilimitado a formación tecnológica puntera en modalidad barra libre. 📚 • Club de beneficios para empleados con descuentos directos y miles de ofertas en marcas, hoteles, agencias de viaje, cines, ropa… 💰 ✨Pasarás a formar parte de un gran equipo de personas que estarán siempre dispuestas a ayudarte. IRIUM es una empresa formada por profesionales con inquietudes, dinámicos y resolutivos. Nuestros valores son la responsabilidad y el compromiso con el trabajo bien hecho, este es el espíritu que buscamos en IRIUM, sea cual sea tu edad, si te reconoces ¡esta es tu empresa! Podemos construir juntos el futuro. ¿Hablamos? 🟢🔵🟣
