About the RoleThe Sr Cloud Infrastructure Engineer owns the design, delivery, and operation of secure, reliable cloud infrastructure supporting Happen Bank's applications and technology platforms. You will balance strategic platform modernization with hands-on production support, improving how we manage AWS, Kubernetes, networking, observability, delivery pipelines, resiliency, and infrastructure security at scale. This role is central to advancing the Cloud Infrastructure roadmap while reducing operational toil and strengthening our security and compliance posture.
What You'll Do- Design, build, and evolve multi-account AWS infrastructure using automation and infrastructure as code, with a focus on security, reliability, scalability, and maintainability
- Own production infrastructure changes from design through implementation, validation, documentation, and operational support
- Build and operate Kubernetes and EKS platforms, including cluster lifecycle management, container image security, runtime controls, observability, and workload onboarding
- Modernize network architecture and connectivity using VPCs, Transit Gateway, PrivateLink, VPC endpoints, Route 53, network firewalls, and secure egress controls
- Strengthen AWS identity and organization governance through account provisioning, IAM roles, permission boundaries, service control policies, access-key hygiene, and secrets rotation
- Improve production visibility and stability through Grafana, Prometheus, distributed tracing, logging improvements, proactive monitoring, incident response, and root-cause analysis
- Advance CI/CD and software supply-chain practices, including GitHub Actions, OIDC, secure runners, artifact management, package controls, and the retirement of legacy delivery tooling
- Improve resiliency, compliance, and operational efficiency through backup and recovery controls, vulnerability remediation, Terraform drift management, audit evidence, and responsible AI-assisted automation
About You- 4+ years of experience designing, building, and operating production cloud infrastructure, with deep hands-on expertise in AWS; bachelor's degree or higher, or equivalent combination of education and work experience
- Extensive experience owning complex, multi-account AWS environments and are comfortable moving between platform engineering, architecture, production operations, and hands-on troubleshooting
- You bring deep knowledge of AWS networking, identity, security, compute, storage, databases, organizations, and governance, and understand how these services work together in large-scale production environments
- You have designed and operated infrastructure using Terraform or comparable infrastructure-as-code tools and have improved reusable modules, deployment standards, testing practices, and drift controls
- You have meaningful production experience with Kubernetes or EKS, including cluster lifecycle management, upgrades, workload delivery, container security, observability, and runtime controls
- You are a trusted technical escalation point who can diagnose complex infrastructure issues across networking, DNS, IAM, Kubernetes, CI/CD, security controls, and application delivery
- Strong track record of owning production changes from design through implementation, validation, documentation, incident support, and long-term operational maintenance
- You balance strong technical opinions with sound judgment, humility, and openness to feedback, and you can explain infrastructure decisions and tradeoffs to both technical and non-technical partners
- Hands-on experience using AI tools to accelerate infrastructure work, improve output quality, and reduce operational toil, and you help colleagues apply them responsibly while maintaining appropriate security, validation, and human oversight
Nice to have- Experience supporting infrastructure in a regulated financial-services environment
- Experience with PCI DSS, CIS controls, security audits, evidence collection, or remediation programs
- Experience migrating workloads or connectivity from data centers to AWS
- Experience with managed file transfer, SFTP, secure partner integrations, or high-volume data-processing platforms
- Experience with GitHub Actions, Jenkins, Argo CD, JFrog Artifactory, Splunk, Grafana, Prometheus, Tempo, Wiz, or CrowdStrike
- Proficiency with Python, Bash, or another language used to automate infrastructure and operational workflows
- AWS certification or equivalent demonstrated cloud expertise
Work Location San Francisco
The above locations are eligible offices for this role. The locations have been determined to foster in-person collaboration with this role's team or the related business lines. We utilize a hybrid work model, and our teams are in-office Tuesdays, Wednesdays, and Thursdays. In-person attendance is essential for this role's success, and remote placement will not be considered. Happen Bank offers relocation, based on actual job level.
Time Zone Requirements Local hours (PT)
While the position will primarily work local hours, Happen Bank is headquartered in Pacific Time and our ideal candidate will be flexible working across time zones when necessary.
Travel Requirements As needed travel to Happen Bank offices and/or other locations, as needed.
Compensation The target base salary range for this position is 175,000-207,000. The base salary of the role will be determined by job-related knowledge, experience, education, skills, and location. Base salary is just one part of Happen Bank's Total Rewards package. You may also be eligible for long-term awards (equity) and an annual bonus (which is based on company performance, employee performance and eligible earnings).
We're creating new financial services solutions for our members based on fairness, simplicity, and heart, and we treat our employees the same way. We offer a competitive benefits package that includes medical, dental and vision plans for employees and their families, 401(k) match, health and wellness programs, flexible time off policies for salaried employees, up to 16 weeks paid parental leave and more.
#LI-Hybrid
#LI-BC1