Job Summary:
We are looking for a Lead Cloud Platform Engineer to design, build, and operate the AWS hosting environments that power equivant’s court SaaS products. You will lead a small team of cloud engineers responsible for the availability, scalability, and security of our hosted services, and for automating the deployment of new customer tenants and environments. You will work closely with R&D, Security, Compliance, and Technical Services teams to meet deployment, performance, availability, and scalability goals, and to support compliance with the AICPA Trust Services Criteria for SOC 2 and the CJIS Security Policy.Job Description:
Responsibilities
- Lead a small team of cloud engineers building and maintaining AWS hosting environments for equivant’s SaaS products; set technical direction, mentor team members, and prioritize team workload
- Design, implement, and optimize AWS infrastructure to meet deployment, availability, performance, scalability, and cost goals
- Automate the deployment of customer environments using infrastructure as code
- Manage core AWS services including compute, DB, storage, networking, IAM, and security
- Oversee security, asset inventory, and lifecycle management for cloud resources
- Own AWS Config and organizational guardrails (Service Control Policies, Control Tower where applicable) to enforce baseline security and compliance across the AWS organization
- Design and maintain cloud backup and disaster recovery capabilities to meet defined recovery time objectives (RTO) and recovery point objectives (RPO); lead DR planning and testing
- Partner with R&D on architecture, performance, and troubleshooting to ensure the hosting environment evolves with the product and applications run well in a cloud-hosted environment
- Build CI/CD pipelines and DevOps practices for web servers and web applications, including establishing capability where it’s not yet in place, in partnership with R&D to reduce manual deployment and enable faster, lower-risk releases
- Implement monitoring, logging, alerting, and SIEM integration (CloudWatch and related tools) for hosted environments
- Coordinate with ITSM processes (Jira) for change management, incident response, and request fulfillment
- Support compliance with the CJIS Security Policy, AICPA Trust Services Criteria for SOC 2, and other regulatory requirements; maintain technical documentation for cloud architecture, runbooks, and operational procedures
- Participate in on-call rotations and support after-hours incident response as needed
Qualifications
- 3-5 years of experience in cloud engineering, systems administration, or related roles, including 2+ years leading or mentoring engineers
- Relevant AWS certification (e.g., AWS Certified Solutions Architect, AWS Certified CloudOps Engineer, or AWS Certified DevOps Engineer)
- Strong hands-on experience with AWS core services (EC2, RDS, S3, VPC/networking, IAM) and multi-account AWS environments
- Experience with infrastructure as code (Terraform preferred; CloudFormation or similar)
- Ability to understand application architecture and collaborate effectively with R&D to improve how applications run in a cloud-hosted environment
- Familiarity with security, asset, and lifecycle management for cloud resources
- Familiarity with ITSM platforms such as Jira
- Competency with scripting (Python, PowerShell, Bash, etc.)
- Experience building or expanding DevOps practices and CI/CD tooling, including in environments where these practices were not already established
- Ability to work independently and collaboratively across cross-functional teams (R&D, Security, Compliance, Technical Services)
- Detail-oriented with strong problem-solving abilities and excellent documentation and communication skills, written and verbal, for technical and non-technical audiences
- The selected candidate must be able to complete vetting required by the FBI CJIS Security Policy and any applicable state or agency requirements, including fingerprint-based background investigation
- Possible travel (approximately 5%)
- May provide after-hours support for incidents
Preferences
- Experience with CI/CD tools
- Hands-on experience with monitoring/logging tools
- Experience operating multi-tenant SaaS products at scale
- Familiarity with the Criminal Justice Information Services (CJIS) Security Policy
- Solid understanding of the AICPA Trust Services Criteria for SOC 2
- Proficiency in system administration (Linux/Windows, IIS, Active Directory)
- Experience with SQL Server or other RDBMS on AWS RDS
- Knowledge of network security principles and firewalls
Worker Type:
Regular