Sr. Cloud Engineer- Infrastructure
Indexed description
Key Responsibilities
- Design and deploy AWS foundational environments using Control Tower and Landing Zone Accelerator (LZA).
- Define and implement multi-account strategy — AWS Organizations, OU structure, account vending, SCPs, and centralized logging and security tooling.
- Implement IAM and Identity Center, guardrails, and security baselines across the account structure.
- Lead discovery and assessment of on-premises estates — application dependency mapping, right-sizing analysis, and migration wave planning.
- Determine and execute the appropriate migration strategy per workload — rehost (lift-and-shift) and replatform — balancing speed, risk, and long-term operating cost.
- Perform lift-and-shift replication of on-premises and VMware-based virtual machines into EC2, including image conversion and OS/driver remediation.
- Replatform workloads onto managed AWS services — migrating self-managed databases to RDS, load balancers to ALB/NLB, and static content delivery to CloudFront.
- Apply agentic and automated migration tooling, including AWS Transform, to accelerate VMware discovery, network conversion, and wave execution at scale.
- Design and build hybrid connectivity — Direct Connect, Site-to-Site VPN, Transit Gateway, DNS, and Active Directory integration.
- Provision and configure VPC networking, compute, storage, and database services using Terraform and AWS CDK.
- Automate operational and migration workflows using Lambda and Step Functions.
- Execute storage and database migrations (DMS, DataSync, Storage Gateway, Snow Family) and validate data integrity.
- Develop and maintain pipeline automation for infrastructure and application deployments.
- Configure logging, metrics, tracing, and alerting — apply SRE practices to migrated workloads.
- Produce cost-and-capacity reports with FinOps tooling; drive post-migration cost optimization.
- Produce well-structured design documents, migration runbooks, diagrams, and hand-over guides.
- AWS Control Tower — Automated landing zone setup and account governance.
- Landing Zone Accelerator (LZA) — Deployable foundational architecture for regulated and complex environments.
- AWS Organizations / Identity Center — Multi-account structure, OUs, SCPs, and centralized identity.
- AWS Transform — Agentic AI-driven acceleration of VMware migration workflows.
- AWS Migration Hub — Centralized tracking of migration progress.
- AWS Application Migration Service (MGN) — Lift-and-shift replication of VMs to EC2.
- VM Import/Export — Converting VM images.
- AWS Application Discovery Service — Inventory and dependency mapping of source environments.
- AWS Database Migration Service (DMS) — Homogeneous and heterogeneous database migration.
- AWS DataSync / Storage Gateway / Snow Family — Bulk and hybrid data transfer.
- EC2, EBS, S3, EFS/FSx — Compute and storage for migrated workloads.
- RDS / Aurora — Managed relational databases for replatformed workloads.
- ALB / NLB / Route 53 — Application and network load balancing, DNS, and traffic management.
- CloudFront — Content delivery and edge caching.
- Lambda / Step Functions — Serverless automation and workflow orchestration.
- CloudWatch / CloudTrail / Systems Manager — Observability, audit, and fleet operations.
- 6-10 years experience designing and operating infrastructure, with deep hands-on AWS experience.
- Bachelor's degree in Computer Science, or similar.
- Hands-on experience building AWS foundational environments — Control Tower, Landing Zone Accelerator, AWS Organizations, and multi-account architecture.
- Demonstrated experience with cloud migrations; large-scale, multi-wave migrations a strong plus.
- Practical experience executing rehost and replatform migrations, and the judgment to recommend the right approach per workload.
- VMware background a plus (vSphere/vCenter, ESXi, virtual machine administration).
- Hands-on experience with AWS Migration Hub, AWS Application Migration Service (MGN), and VM Import/Export.
- Hands-on experience with core AWS services including EC2, S3, RDS, ALB/NLB, CloudFront, Lambda, and Step Functions.
- Strong AWS networking fundamentals — VPC design, routing, Transit Gateway, Direct Connect/VPN, and DNS.
- Experience with Infrastructure as Code (IaC) — Terraform and AWS CDK — and at least one scripting language (Python, Bash, or PowerShell).
- Solid Linux and/or Windows Server administration background.
- Experience building CI/CD pipelines and integrating DevSecOps controls.
- Familiarity with monitoring/observability stacks and incident-management processes.
- Strong troubleshooting, documentation, and customer-facing communication skills.
- Working knowledge of container runtime fundamentals and application modernization patterns.
- Knowledge of compliance frameworks (SOC 2, HIPAA, PCI) and security hardening.
- Experience or strong working knowledge of AWS Transform for VMware is a significant plus.
Why You'll Love It Here
- Our Product is Our People: We live by this. We invest in people who invest in themselves. Your growth is our growth.
- True Servant Leadership: Our CTO leads with a "force multiplier" philosophy. Management is here to empower you and clear roadblocks, not to micromanage. We won't ask you to do anything we're not willing to do ourselves.
- Flat Organization, Real Impact: Your voice and designs will directly shape our technical roadmap and our clients' success. You'll work on the latest tech to solve real problems.
- A "Learn-from-it" Culture: We're moving fast and building new things. We believe mistakes are learning opportunities, not failures.
Megazone Cloud is an Equal Opportunity Employer and participates in E-Verify to confirm the employment eligibility of all new hires.
Compensation Range: $145K - $165K
Create a free Caio profile to unlock more results and save your role and location preferences.
Unlock free search