Job Description:
Key Responsibilities
• Design and deploy AWS infrastructure: VPCs, subnets, security groups, Route Tables, Transit Gateways, and VPN/Direct Connect.
• Configure and manage AWS VPC Interface Endpoints, ALB/NLB, and PrivateLink services for secure cross-cloud connectivity.
• Manage AWS compute services: EC2, EKS, ECS, Lambda, and Auto Scaling Groups.
• Implement and maintain AWS IAM roles, policies, permission boundaries, and SCPs in multi-account environments.
• Configure VPC Flow Logs, CloudTrail, CloudWatch, and AWS Security Hub for observability and compliance.
• Build and manage IaC deployments using Terraform, AWS CloudFormation, or CDK.
• Support cross-cloud connectivity between AWS and Azure (e.g., AMQP via Event Hub, S3 cross-account logging).
• Develop and maintain CI/CD pipelines for AWS workloads.
• Troubleshoot VPC routing, ENI-level connectivity, and security group/NACL issues.
• Maintain technical documentation, runbooks, and architecture diagrams.
Required Qualifications
• Hands-on AWS experience in production environments.
• Strong knowledge of AWS Networking: VPC, subnets, TGW, Direct Connect, Route 53, ALB/NLB.
• Experience with AWS IAM, SCPs, and multi-account Organizations.
• Proficiency in IaC: Terraform, CloudFormation, or AWS CDK.
• Familiarity with AWS security services: GuardDuty, Security Hub, Inspector, Macie.
• AWS Certified Solutions Architect Associate or Professional preferred.
• Scripting proficiency in Python, Bash, or PowerShell.
• Experience with VPC Flow Log analysis and ENI-level troubleshooting.
Nice to Have
• AWS Certified DevOps Engineer or Advanced Networking Specialty.
• Experience with AWS-to-Azure hybrid connectivity scenarios.
Salary Range - CA$ 90,000 - CA$ 120,000 Per Year
TCS does not use artificial intelligence tools for candidate screening or evaluation. This post is for a current vacancy. The hiring process includes an initial screening, followed by a technical evaluation and managerial discussion.