Full Job Description
Job Summary
We are seeking an experienced Lead AWS DevOps Engineer or Lead AWS DevSecOps Engineer to architect and lead enterprise-scale DevOps and DevSecOps solutions. The role will focus on AWS cloud architecture, CI/CD platforms, Infrastructure as Code, security automation, observability, and enterprise DevSecOps transformation. The ideal candidate will have strong Guidewire Cloud Platform experience, insurance industry knowledge, and proven experience leading large-scale DevSecOps initiatives.
Key Responsibilities
• Architect enterprise-scale CI/CD pipelines using GitLab CI/CD and cloud-native pipelines.
• Define reference architectures for DevOps and DevSecOps across microservices, APIs, UI, and backend services.
• Drive shift-left security, quality, and compliance across the software development lifecycle.
• Architect AWS solutions across EKS, ECS, Fargate, EC2, Lambda, compute, storage, networking, IAM, and security services.
• Develop cloud solutions with hybrid and multi-cloud considerations.
• Lead Infrastructure as Code strategy using Terraform, CloudFormation, and configuration management tools.
• Standardize environment provisioning, drift detection, policy enforcement, and self-service capabilities for development teams.
• Embed SAST, DAST, SCA, container scanning, and secrets detection into CI/CD pipelines.
• Align DevSecOps controls with NIST, SOC 2, ISO 27001, PCI, HIPAA, NYDFS, and enterprise compliance requirements.
• Partner with Information Security, Risk, and Compliance teams to automate security and policy enforcement.
• Architect enterprise observability solutions using Datadog, CloudWatch, and ELK.
• Enable logging, metrics, tracing, RUM, and alerting across applications and platforms.
• Drive SRE practices including SLIs, SLOs, and error budgets.
• Act as a technical authority and mentor for DevOps and DevSecOps teams.
• Lead proofs of concept, technical workshops, and client architecture sessions.
• Create reusable architecture artifacts, templates, accelerators, and engineering best practices.
• Support Guidewire Cloud Platform CI/CD capabilities, including Quality Gates, BYOT, BYOGIT, and BYOCICD.
Required Qualifications
• 15+ years of overall IT experience.
• 6+ years of experience in AWS Cloud DevOps or AWS DevSecOps architecture roles.
• 3+ years of experience in a lead or architect role.
• Experience in DevOps/DevSecOps engineering and enterprise transformation programs.
• Hands-on experience with Guidewire Cloud Platform CI/CD, including Quality Gates, BYOT, BYOGIT, and BYOCICD.
• Insurance industry or Guidewire suite implementation experience, including PolicyCenter, ClaimCenter, or BillingCenter.
• Proven experience delivering large-scale enterprise CI/CD platforms.
• Strong experience with AWS as the primary cloud platform.
• Strong expertise with enterprise CI/CD platforms such as GitLab CI/CD, Jenkins, GitHub Actions, TeamCity, or Azure DevOps.
• Experience with GitLab and Bitbucket for source control.
• Strong Infrastructure as Code experience with Terraform.
• Hands-on experience with Kubernetes, EKS, OpenShift, Helm, and Docker.
• Experience with security tools such as SonarQube, Checkmarx, Veracode, Snyk, Trivy, or similar technologies.
• Strong understanding of shift-left testing, automation frameworks, and cloud security guardrails.
• Experience with observability and monitoring tools including Datadog, Splunk, ELK, CloudWatch, Prometheus, or Grafana.
• Proficiency with Java and/or .NET.
• Strong understanding of AWS cloud foundations, including compute, storage, networking, IAM, and security.
• Strong architecture, system design, leadership, mentoring, and cross-team collaboration skills.
• Excellent executive-level, technical, and vendor-facing communication skills.
Preferred Qualifications
• AWS Certified Solutions Architect, preferably at the Professional level.
• Cloud Security or DevSecOps certifications.
• Experience with CloudFormation and configuration management tools.
• Experience with hybrid and multi-cloud architecture.
• Experience leading enterprise DevSecOps transformation programs.
• Experience implementing automated security, quality, compliance, and policy controls across the SDLC.