Who are we?
Smarsh empowers its customers to manage risk and unleash intelligence in their digital communications. Our community of over 6,500 organizations in regulated industries relies on Smarsh daily to help spot compliance, legal, or reputational risks across more than 80 communication channels before those risks become regulatory fines or headlines.
We are seeking a Senior Platform Engineer (IC4) with strong expertise in AWS cloud networking, hybrid connectivity, and regulated cloud environments. This role focuses on designing, automating, and operating secure, scalable network infrastructure across multiple AWS environments while supporting FedRAMP compliance requirements.
You will partner with Platform, Security, and CI/CD teams to deliver highly available, auditable, and automated cloud networking solutions.
You’ll help build and secure cloud infrastructure in highly regulated environments, working on mission‑critical platforms with a strong focus on automation, reliability, and security.
Network Architecture & Cloud Design
- Design and implement secure, scalable AWS network architectures.
- Architect hybrid cloud connectivity solutions between on‑premises and AWS.
- Design high‑availability and disaster recovery network architectures.
- Define multi‑tenant isolation, routing boundaries, and segmentation strategies.
- Create and maintain network and architecture diagrams.
Infrastructure Automation & Orchestration
- Develop and maintain Terraform‑based infrastructure for AWS networking resources.
- Orchestrate and automate end‑to‑end infrastructure provisioning across multiple environments.
- Design and maintain reusable, environment‑aware Terraform modules.
- Implement promotion workflows for infrastructure changes across environments.
- Ensure consistency, traceability, and auditability of infrastructure changes.
- Identify and remediate configuration drift across environments.
Security, Compliance & FedRAMP Support
- Support network designs aligned with FedRAMP and NIST 800‑53 requirements.
- Implement and review network security controls including NACLs and Security Groups.
- Partner with Security and GRC teams to support audits and compliance activities.
- Assist in investigating and resolving security incidents involving network systems.
- Maintain documentation required for regulated environments.
Performance, Monitoring & Reliability
- Optimize AWS network performance, resiliency, and availability.
- Design and implement network monitoring and alerting using DataDog, Prometheus, and AWS‑native tools.
- Participate in troubleshooting and root cause analysis of complex network issues.
- Participate in on‑call rotation and operational support.
Collaboration & Technical Leadership
- Act as a networking subject matter expert across Platform and Infrastructure teams.
- Contribute to architecture reviews, standards, and best practices.
- Mentor junior engineers and provide technical guidance.
- Maintain runbooks, SOPs, and operational documentation.
Qualifications
- Bachelor’s or Master’s degree in Computer Science, Engineering, or related field (or equivalent experience).
- 8+ years of experience in cloud or platform engineering, with a strong focus on AWS networking.
- Knowledge of supporting FedRAMP‑compliant environments, including familiarity with compliance controls, audit processes, and security documentation.
- Advanced understanding of AWS networking services (VPCs, subnets, routing, Transit Gateway, Route 53, Direct Connect, VPNs).
- Extensive experience with Terraform and Infrastructure as Code.
- Proven experience orchestrating and automating infrastructure provisioning across multiple environments (dev, staging, production).
- Experience integrating infrastructure provisioning into CI/CD pipelines.
- Proficiency in Python, Go, or Java.
- Strong Linux and networking fundamentals.
- Excellent system design, troubleshooting, and problem‑solving skills.
Preferred Qualifications
- Hands‑on experience operating or delivering FedRAMP Moderate or High environments.
- AWS Advanced Networking – Specialty certification.
- Experience with Kubernetes and service mesh networking (Istio, Envoy).
- Familiarity with zero‑trust networking models.
- Experience supporting multi‑account AWS organizations or hybrid‑cloud environments.
Benefits & Perks
- Medical, dental, and vision insurance plus a flexible spending account.
- Stock options.
- “Take‑what‑you‑need” time‑off policy and flexible work arrangements.
- 4% 401(K) match, fully vested on day one.
- Sabbatical program – eligible after six years of service.
- Employee recognition program for peer nominations.
Smarsh is an equal‑opportunity and affirmative‑action employer. Qualified applicants will receive consideration without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran. Reasonable accommodations may be made to enable individuals with disabilities to perform essential functions.