AWS GovCloud

Caduceus

Bayamón (PR)

On-site

USD 150,000 - 210,000

Full time

13 hours ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

Caduceus is seeking a Senior AWS Cloud Platform & DevSecOps Engineer to design, build, secure, and operate a robust cloud platform for a mission-critical enterprise app hosted on AWS GovCloud.

The role requires deep expertise in AWS architecture, containerized workloads, IaC, cloud security, CI/CD, and regulatory compliance to ensure security, availability, and scalable operations across development, staging, and production environments.

Qualifications

  • 7+ years of experience in Cloud Infrastructure, DevOps, Platform Engineering, or Site Reliability Engineering.
  • Extensive hands-on experience with Amazon Web Services (AWS).
  • Strong experience with AWS GovCloud or highly regulated cloud environments.
  • Expertise in Docker and containerized application deployments.
  • Experience operating Amazon ECS and/or Amazon EKS (Kubernetes) in production.
  • Strong knowledge of Infrastructure as Code using Terraform or CloudFormation.
  • Experience building secure CI/CD pipelines.
  • Strong Linux administration and shell scripting skills.
  • Experience managing PostgreSQL databases in production environments.
  • Strong understanding of networking, DNS, IAM, VPCs, Load Balancers, SSL/TLS, and cloud security.

Responsibilities

  • Design, implement, and manage highly available, fault-tolerant AWS infrastructure.
  • Architect scalable cloud environments using AWS best practices.
  • Build and maintain Infrastructure as Code (IaC) with Terraform or CloudFormation.
  • Design secure VPC architectures, networking, routing, load balancing, and Auto Scaling.
  • Ensure production environments are resilient, disaster recovery ready.
  • Own and administer AWS GovCloud environments.
  • Design secure CI/CD pipelines and automate deploys.
  • Promote IaC and GitOps best practices.
  • Implement secure cloud architecture aligned with GovCloud guidelines.
  • Maintain environment consistency across development, staging, and production.

Skills

AWS
Docker
ECS/EKS
Terraform
CloudFormation
CI/CD
Linux
PostgreSQL
Networking
IAM
VPC

Tools

CloudWatch
Amazon ECR
KMS/Secrets Manager

Job description

Position Summary

We are seeking an experienced Senior AWS Cloud Platform & DevSecOps Engineer to design, build, secure, and operate a highly available, scalable, and resilient cloud platform for a mission-critical enterprise application hosted on AWS GovCloud.

The ideal candidate will have deep expertise in AWS cloud architecture, containerized workloads, Infrastructure as Code (IaC), cloud security, DevSecOps, production operations, and regulatory compliance. This role will be responsible for ensuring the platform meets stringent security, availability, and operational requirements while supporting continuous application delivery and long-term scalability.

Key Responsibilities
  • Design, implement, and manage highly available, fault-tolerant AWS infrastructure.
  • Architect scalable cloud environments using AWS best practices.
  • Build and maintain Infrastructure as Code (IaC) Terraform or CloudFormation.
  • Design secure VPC architectures, networking, routing, load balancing, and Auto Scaling.
  • Ensure production environments are resilient, repeatable, and disaster recovery ready.
  • Own and administer AWS GovCloud environments.
  • Manage cloud infrastructure lifecycle, upgrades, and operational readiness.
  • Implement secure cloud architecture aligned with AWS GovCloud best practices.
  • Maintain environment consistency across development, staging, and production.
  • Design, deploy, and manage containerized applications using Docker.
  • Operate production workloads on Amazon ECS or Amazon EKS (Kubernetes).
  • Optimize container performance, security, and resource utilization.
  • Implement rolling deployments, blue/green deployments, canary releases, and zero-downtime deployments.
  • Maintain container image security, vulnerability scanning, and image lifecycle management.
DevSecOps & CI/CD
  • Design and maintain secure CI/CD pipelines.
  • Automate application build, testing, deployment, and rollback processes.
  • Manage Docker image repositories using Amazon ECR.
  • Integrate automated security scanning into deployment pipelines.
  • Promote Infrastructure as Code and GitOps best practices.
Security, Compliance & Governance
  • Design and implement security-first cloud architectures.
  • Support Authorization to Operate (ATO) processes and maintain security documentation required for government environments.
  • Implement and maintain Zero Trust Architecture principles across infrastructure and applications.
  • Ensure compliance with NIST 800-53, FedRAMP, CIS Benchmarks, and applicable government security frameworks.
  • Implement least-privilege IAM policies, role-based access control (RBAC), and secure identity management.
  • Manage AWS KMS, Secrets Manager, encryption at rest and in transit, certificate lifecycle, and secure key management.
  • Conduct infrastructure security assessments, vulnerability remediation, and security hardening.
  • Collaborate with security auditors and compliance teams during assessments and certification activities.
Database Administration & Performance
  • Manage PostgreSQL environments hosted on Amazon RDS.
  • Optimize database performance, indexing, connection pooling, and query execution.
  • Design backup, recovery, replication, and disaster recovery strategies.
  • Monitor database health and ensure high availability.
Monitoring, Observability & Incident Management
  • Design centralized logging, monitoring, and observability solutions.
  • Configure CloudWatch dashboards, alarms, metrics, and log aggregation.
  • Implement application performance monitoring (APM) and distributed tracing.
  • Establish operational runbooks, incident response procedures, and root cause analysis processes.
  • Monitor platform health, capacity, and reliability.
Scalability & Reliability Engineering
  • Design infrastructure capable of supporting high transaction volumes and 24×7 availability.
  • Implement Auto Scaling, Load Balancers, health checks, and self-healing infrastructure.
  • Improve platform resilience through redundancy and fault-tolerant architecture.
  • Conduct performance testing, load testing, and capacity planning.
  • Continuously optimize infrastructure for reliability, scalability, and cost efficiency.
Operational Excellence
  • Define infrastructure standards, deployment procedures, and operational best practices.
  • Maintain architecture documentation and disaster recovery documentation.
  • Establish backup validation and recovery testing procedures.
  • Ensure production environments meet defined Service Level Objectives (SLOs) and Service Level Agreements (SLAs).
  • Drive automation to reduce manual operational effort and improve deployment consistency.
Required Qualifications
  • 7+ years of experience in Cloud Infrastructure, DevOps, Platform Engineering, or Site Reliability Engineering.
  • Extensive hands-on experience with Amazon Web Services (AWS).
  • Strong experience with AWS GovCloud or highly regulated cloud environments.
  • Expertise in Docker and containerized application deployments.
  • Experience operating Amazon ECS and/or Amazon EKS (Kubernetes) in production.
  • Strong knowledge of Infrastructure as Code using Terraform or CloudFormation.
  • Experience building secure CI/CD pipelines.
  • Strong Linux administration and shell scripting skills.
  • Experience managing PostgreSQL databases in production environments.
  • Strong understanding of networking, DNS, IAM, VPCs, Load Balancers, SSL/TLS, and cloud security.
  • Experience implementing monitoring, logging, observability, and incident response processes.
Preferred Qualifications
  • Experience supporting Authorization to Operate (ATO) initiatives.
  • Experience implementing Zero Trust Architecture.
  • Strong knowledge of NIST 800-53 security controls.
  • Experience with FedRAMP Moderate or High environments.
  • Experience implementing Security Information and Event Management (SIEM) solutions.
  • Familiarity with OpenTelemetry, Prometheus, Grafana, ELK/OpenSearch, or similar observability platforms.
  • Experience with disaster recovery planning and business continuity.
  • Knowledge of cost optimization and cloud governance.
Preferred Certifications
  • AWS Certified Solutions Architect – Professional
  • AWS Certified Security – Specialty
  • Certified Kubernetes Security Specialist (CKS) (preferred)
  • CompTIA Security+ or equivalent cybersecurity certification (preferred)
Technical Environment
  • React
  • Java
  • Spring Boot
  • AWS GovCloud
  • Docker
  • Amazon ECR
  • Terraform / CloudFormation
  • CloudWatch
  • AWS IAM
  • AWS KMS
  • AWS Secrets Manager
  • Amazon VPC
  • Application Load Balancer
  • Auto Scaling
  • Git-based CI/CD
Success Metrics

The successful candidate will:

  • Deliver a secure, highly available, scalable, and resilient AWS platform.
  • Maintain compliance with applicable government security standards and ATO requirements.
  • Implement Zero Trust security principles across infrastructure and application environments.
  • Achieve reliable, repeatable, and automated deployments with minimal operational overhead.
  • Maintain high production uptime, strong observability, and rapid incident response.
  • Continuously improve platform performance, security, scalability, and operational excellence through automation and best practices.
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior AWS GovCloud Engineer
Senior AWS GovCloud Engineer

ANAUTICS INC • Oklahoma City (OK)

On-site
USD 100,000 - 130,000
Cloud Architect
Cloud Architect

R Systems • Sacramento (CA)

On-site
USD 140,000 - 190,000
Cloud/Network Infrastructure Engineer, Senior
Cloud/Network Infrastructure Engineer, Senior

ecsfederal • Virginia (MN)

Hybrid
USD 123,000 - 184,000
Cloud Subject Matter Expert / Cloud Security Architect
Cloud Subject Matter Expert / Cloud Security Architect

Intellect Solutions LLC • Rockville (MD), Northern (KY)

On-site
USD 150,000 - 210,000
Security clearance assistance
Cloud Engineer
Cloud Engineer

Gotham Technology Group • United States

On-site
USD 120,000 - 160,000
DevOps Engineer II
DevOps Engineer II

RiskForce • Northern (KY)

On-site
USD 110,000 - 160,000
ME00631-Senior DevSecOps Engineer Lead (Hybrid)
ME00631-Senior DevSecOps Engineer Lead (Hybrid)

Momentum Engineering, Inc. • Washington

Hybrid
USD 140,000 - 200,000
11 paid holidays
3 weeks PTO
Group medical plan
+4
Cloud Engineer (Mid)
Cloud Engineer (Mid)

Method, Inc. • Quantico (VA)

On-site
USD 100,000 - 130,000
Devops Engineer
Devops Engineer

Evlos Technology LLC • San Antonio (TX)

On-site
USD 140,000 - 190,000
Sr. DevSecOps Engineer
Sr. DevSecOps Engineer

The Phoenix Group • Arlington (VA)

On-site
USD 120,000 - 190,000