Senior Infrastructure Engineer
Department: Group IT & Security
Employment Type: Full Time
Location: USA, East Coast (Home based)
Reporting To: Aaron Lee
Description
About us
We are a pioneering technology company, and our vision is of a future where a trusted and collaborative research ecosystem drives progress for all. We believe in better, open, collaborative and inclusive research. In creating the next generation of tools and working in partnership with the community we tackle some of the biggest challenges to research. In order to achieve our vision, we need innovative, inspiring and dynamic people to join our team. Want to join us?
Your new role
As a Senior Infrastructure Engineer, you will be part of our global Group IT and Security team. You will be responsible for the design, implementation, and maintenance of a secure cloud infrastructure for our Digital Science Suite for US Federal customers...
This role partners with several areas of Digital Science and adds value through delivering and operating a robust secure hosting environment operating within a compliance framework which meets our ever evolving customer compliance requirements. You will be primarily responsible for the delivery and maintenance of compliant infrastructure specific to large, US (Federal) customers with enhanced security and privacy requirements.
This role (due to Federal requirements) can only be satisfied by a “US citizen, US national, or US person” and additional checks may be required.
What you’ll be doing
- Work as part of a newly-formed, dedicated Infrastructure Engineering team responsible for building and maintaining a multi-tenant AWS GovCloud environment.
- Designing robust, scalable, secure, and high-performance infrastructure solutions, leveraging FedRAMP Moderate and DoD CC SRG IL4 compliant AWS services.
- Overseeing the maintenance, monitoring, and troubleshooting of existing infrastructure to ensure stability and optimal performance.
- Developing and implementing automation scripts and tools (e.g., Python, Bash, Terraform) to streamline infrastructure management and deployments.
- Developing and implementing multi-tenant and multi-region CI/CD pipelines in AWS CodePipeline.
- Implementing and maintaining security best practices and compliance standards.
- Handling complex technical issues and providing expert-level troubleshooting.
- Managing infrastructure-related projects, coordinating with globally located teams, and ensuring timely completion.
- Creating and maintaining comprehensive documentation of infrastructure designs, configurations, and procedures.
- Providing guidance and mentorship to Infrastructure team members.
- Contributing to the planning and forecasting of future infrastructure needs and technology roadmaps.
- Planning, implementing, and testing disaster recovery and business continuity plans.
- Advanced troubleshooting for workloads running at scale in AWS EKS.
- Identifying and mitigating risks, utilising governance, risk and compliance tooling to map to DS policies and procedures while operating the environment(s) under the role
- Implementing policies and procedures in order to align with DS policies while satisfying the needs of additional frameworks including FedRAMP and DoD IL4
- Participating in audit and assessments in advance of the external audits required
What you’ll bring to the role
- Expertise in implementing and managing infrastructure to support our Security Operations team (e.g. SIEM, DAST).
- You have relevant work experience with AWS services (e.g. EKS, ECS, S3, RDS, VPC, Transit Gateway, Direct Connect, Route53) alongside network and information security.
- You have relevant work experience with application containers and container orchestration technologies (e.g. kubernetes, docker).
- You have used infrastructure as code tools (e.g. terraform and/or cloudformation).
- You have database infrastructure experience with PostgreSQL, Apache Solr and Redshift.
- You have experience setting up and maintaining continuous integration and continuous deployment (CI/CD) pipelines at scale and in Production.
- You have operated within a highly regulated/secure compliance environment such as FedRAMP (to at least ‘moderate’ level) or DoD IL4.
- You’re highly organised and have the ability to work on intricate details without losing the big picture.
- You’ll be a good communicator and comfortable communicating with people at all organisational levels and contributing to conversations around recommendations for improvements.
- You have a collaborative approach to how you work and ensure all groups are communicated with and understand your process and approach.
- You’re a self learner and have an inquisitive mind.
- You’re resourceful and solutions focussed, making practical considerations for all groups involved.
- You’re a natural problem solver and have strong analytical skills.
- Bachelor degree in Computer Science or a related field, and/or equivalent Cloud Infrastructure related certifications (such as AWS/GCP Certifications).
Preferred Qualifications
- Minimum 5 years of relevant experience (or equivalent skills and knowledge) designing and implementing secure cloud solutions in AWS GovCloud.
- Extensive experience implementing and managing infrastructure for Enterprise Security Tooling (e.g. SIEM, DAST, Vulnerability Management).
- US Citizen with the ability to obtain a US Public Trust security clearance.
- AWS/GCP certifications are a plus.
- Security focused certifications are a plus.
- Ability to work in a 100% remote environment and global team.
Living our Values
We invest in, nurture and support innovative businesses and technologies that make all parts of the research process more open, efficient and effective.
The talent we secure is fundamental to us achieving our vision and our growth plans. The values we live by are:
We are brave in the pursuit of better
We are collaborative and inclusive
We are always open-minded
We are from and for the community
We're an equal opportunity employer. All applicants will be considered for employment without attention to race, colour, religion, sex, sexual orientation, gender identity, national origin, veteran or disability status