14 days ago
Base Salary
$80k - $100k/yr
Responsibilities
- Design, build, and maintain scalable and secure infrastructure on AWS.
- Develop reusable Terraform modules and manage Infrastructure as Code provisioning and state.
- Build and maintain automated CI/CD pipelines for infrastructure and application deployments.
- Implement Infrastructure as Code governance, validation, testing, deployment controls, and Policy as Code using Sentinel and/or Open Policy Agent.
- Define and enforce AWS security guardrails and integrate security and compliance checks into CI/CD pipelines.
- Implement preventive and detective cloud security controls covering IAM, encryption, network security, logging, monitoring, tagging, data protection, and public-resource exposure.
- Map cloud controls to NIST, CIS, and AWS security frameworks and automate compliance monitoring and remediation.
- Implement and manage AWS security services including IAM, KMS, CloudTrail, Config, GuardDuty, Security Hub, CloudWatch, and AWS Organizations.
- Support multi-account AWS environments and enterprise landing-zone architectures.
- Troubleshoot infrastructure, deployment, security, and pipeline issues and participate in architecture reviews.
- Work with security teams to translate requirements into automated technical controls and improve DevSecOps practices.
Requirements
- Bachelor's degree in Computer Engineering, Computer Science, or Information Technology, or a master's degree in Computer Science.
- Strong hands-on experience with AWS and Terraform, including Terraform Enterprise or HCP Terraform, reusable modules, and Terraform state management.
- Experience building CI/CD pipelines with GitHub Actions and/or Jenkins and using Git-based development workflows.
- Experience implementing Policy as Code with HashiCorp Sentinel and/or Open Policy Agent.
- Understanding of DevSecOps, shift-left security, AWS IAM, networking, encryption, logging, monitoring, and cloud security.
- Experience implementing security controls in automated deployment pipelines and familiarity with NIST, CIS, and cloud security control frameworks.
- Scripting experience with Python, Bash, or PowerShell.
- Understanding of containers and cloud-native deployment practices, including Kubernetes/EKS and Docker.
- Experience with AWS Organizations, Control Tower, Config Rules, Service Control Policies, Security Hub, GuardDuty, and HashiCorp Vault.
- Experience working in regulated enterprise environments and designing enterprise cloud landing zones.
- Preferred or listed certifications include Certified Kubernetes Administrator and HashiCorp Certified Terraform Associate.
- English proficiency at C2 level is required.
Benefits
- Hybrid work arrangement with a regular day shift in the United States.
- Hands-on experience, mentorship, and learning opportunities.
- Opportunity to work on AI-powered transformation and enterprise technology challenges.
- Values-driven, inclusive culture with career development opportunities.
- Los Angeles, California-based candidates are not eligible for this role.
About Genpact
Genpact is a global professional services and technology firm that runs and transforms mission-critical operations for large enterprises through consulting, managed services, and AI- and analytics-driven platforms. It serves industries such as banking, insurance, healthcare, and manufacturing/supply chain, modernizing finance, risk, customer service, and back-office processes. Headquartered in New York and listed on the NYSE (G), Genpact originated within GE before becoming an independent public company.
