Description
Job Summary:
We are seeking an autonomous AWS Specialist to evolve and maintain our cloud infrastructure, with a focus on security, availability, performance, and automation.
Key Highlights:
1. Autonomous work on AWS infrastructure evolution and maintenance
2. Focus on security, availability, performance, and automation
3. Technical leadership in production improvements
About the Position
We are looking for an **AWS Specialist** to work with **autonomy**, helping evolve and maintain our cloud infrastructure, focusing on **security, availability, performance, and automation**. You will be responsible for designing solutions, standardizing practices (IaC, CI/CD, monitoring), supporting the development team, and leading the technical execution of production improvements.
Responsibilities
* Design, implement, and maintain AWS architectures focused on **high availability, resilience, and cost-efficiency**.
* Define and implement **Infrastructure as Code (IaC)** standards (Terraform and/or CloudFormation), including environments (dev/stage/prod).
* Implement and enhance **CI/CD pipelines** (e.g., CodePipeline/CodeBuild/CodeDeploy, GitHub Actions or equivalent), using secure deployment strategies (blue/green, rolling, canary where applicable).
* Work with **containers** (Docker) and orchestration/execution (ECS/Fargate and/or EKS), as needed.
* Operate and optimize services such as **EC2, ALB/NLB, Auto Scaling, VPC, Route 53, S3, CloudFront, RDS/Aurora, ECR, IAM, KMS, CloudWatch**.
* Enhance **security practices**: IAM least privilege, VPC segmentation, WAF, hardening, secrets management (SSM Parameter Store/Secrets Manager), auditing, and audit trails.
* Establish **observability**: metrics, logs, alarms, dashboards, and troubleshooting (CloudWatch, X-Ray/OpenTelemetry where applicable).
* Support production incidents and troubleshooting (root cause analysis, action plans, and prevention).
* Collaborate with engineering teams to define deployment standards, environment variables, secret management, and performance.
* Document architecture, runbooks, and operational standards to ensure team scalability.
Required Qualifications
* Solid experience with **AWS in production environments** (architecture and operations).
* Proficiency in **IAM (policies, roles, boundaries), VPC (subnets, routing, SG/NACL), ALB/CloudFront/S3**, and security strategy.
* Practical experience with **CI/CD** and automated deployments.
* Hands-on experience with **Terraform** (modules, state, workspaces, validation pipelines).
* Advanced knowledge of **Linux**, networking, and troubleshooting (DNS, TLS, HTTP, performance).
* Experience with **security best practices** and compliance (e.g., LGPD/GDPR as context).
* Autonomy to lead end-to-end technical initiatives with minimal supervision.
Nice-to-Have Qualifications
* Experience with **ECS/Fargate** and/or **EKS/Kubernetes**.
* Experience with **WAF/Shield**, managed rules, tuning, and mitigation of false positives.
* Experience with **RDS tuning**, backup/restore, replication, and DR strategies.
* Experience with **OpenTelemetry**, X-Ray, ELK/OpenSearch.
* Experience with **FinOps** (costs, budgets, savings plans/reserved instances, rightsizing).
* Certifications: **AWS Solutions Architect (Associate/Professional)**, **DevOps Engineer**, **Security Specialty**.
Behavioral Profile
* Organization and clear communication (documentation and technical alignment).
* Proactivity in identifying risks and anticipating issues.
* Ability to negotiate trade-offs (cost vs. performance vs. security vs. speed).
Employment Type and Work Model
* Employment: **CLT**
* Work Model: **On-site**
* Location: **Curitiba**
* Working Hours: **Business hours**
Job Type: Full-time CLT
Compensation: Starting at R$4.191,10 per month
Benefits:
* Health insurance
* Dental insurance
* Meal allowance
* Transportation allowance