Über diese Senior Cloud Engineer (AWS & Azure) Stelle bei Keyloop
Role Summary
We are looking for a Senior Cloud Engineer to design, build, automate, and operate secure and scalable infrastructure across AWS and Azure. You will own Infrastructure as Code (Terraform and CloudFormation), CI/CD pipelines in GitHub Actions, and the reliability, security, and recoverability of our cloud estate.
Key Responsibilities
- Design and maintain reusable Terraform modules for both AWS and Azure, with remote state (S3 backend with locking for AWS).
- Manage AWS Route 53: public and private hosted zones.
- Deploy, configure, and operate Azure App Services: App Service Plans, deployment slots, scaling rules, custom domains, and TLS certificates.
- Build and maintain GitHub Actions workflows for infrastructure and application deployment (plan/apply, linting, security scanning, approvals).
- Implement secure authentication from GitHub Actions to AWS.
- Automate operational tasks using Bash, Python, AWS CLI/SDK, or Azure CLI/PowerShell.
- Design and implement AWS Backup plans, vaults, retention policies, and cross-region/cross-account copies for EC2, EBS, RDS, and other resources.
- Configure CloudWatch metrics, logs, dashboards, and alarms using Lambda functions.
Required Skills and Experience
- 6+ years in cloud/DevOps/infrastructure engineering, with 4+ years of hands-on AWS and 2+ years of Azure experience.
- Strong hands-on experience with Terraform (modules, state management, providers, workspaces) on AWS and Azure.
- Proficiency in AWS CloudFormation (YAML/JSON, nested stacks, StackSets, change sets).
- Solid experience building pipelines with GitHub Actions (reusable workflows, secrets, environments, OIDC).
- Deep understanding of EC2, Security Groups, IAM, S3, CloudWatch, and AWS Backup.
- Hands-on experience with AWS Route 53 (hosted zones, routing policies, health checks, failover).
- Hands-on experience with Azure App Services and Azure Load Balancer (Layer 4 / NLB-equivalent).
- Good grasp of networking fundamentals (VPC/VNet, routing, DNS, load balancing).
- Scripting skills in Bash and/or Python.
Preferred / Nice to Have
- Multi-account/subscription setups using AWS Organizations, Control Tower, and Azure Management Groups.
- Familiarity with containers (ECS/EKS/AKS) and Docker.
- Cost management and FinOps practices.
- Experience with Systems Manager (SSM), AWS Config, GuardDuty, Security Hub, and CloudTrail.