Full Time
Our client is an AI transformation consultancy delivering enterprise-scale agentic AI solutions across APAC.
The Role
Our client is seeking an experienced Cloud Infrastructure Engineer to design, implement, and secure AWS cloud environments that support large-scale data platforms.
The position will focus on cloud infrastructure provisioning, networking, security, automation, and governance within highly regulated environments.
Key Responsibilities
- Design and provision AWS environments, including VPCs, subnets, security groups, network ACLs, IAM roles, and encryption services.
- Implement and manage AWS Lake Formation infrastructure, data catalogues, permissions, and cross-account resource sharing.
- Build and maintain CI/CD pipelines integrated with SHIP-HATS and enterprise deployment frameworks.
- Configure secure cross-agency connectivity using VPC Peering, AWS Transit Gateway, and AWS PrivateLink.
- Develop monitoring and governance capabilities through Amazon CloudWatch, AWS CloudTrail, and AWS Config.
- Implement role-based access control, tag-based access control, and fine-grained permission frameworks.
- Provision and maintain development, testing, and pre-production environments aligned with the production architecture.
- Apply cloud security best practices, including encryption at rest and in transit, VPC endpoints, and secure access controls.
- Work closely with technical leadership to develop reusable infrastructure patterns and deployment standards.
- Produce architecture documentation, infrastructure diagrams, operational runbooks, and well-maintained code repositories.
- Participate in Agile ceremonies, sprint demonstrations, infrastructure reviews, and technical design discussions.
Required Skills and Experience
- At least five years of experience in Cloud Infrastructure Engineering, Cloud Platform Engineering, or a closely related position.
- Strong expertise in AWS networking, including VPCs, Transit Gateway, PrivateLink, security groups, and IAM.
- Hands-on experience with Terraform, AWS CDK, or AWS CloudFormation.
- Experience developing and managing CI/CD pipelines using GitLab CI, AWS CodePipeline, or similar technologies.
- Strong knowledge of Linux administration and cloud security best practices.
- Experience implementing encryption, governance, compliance, and security controls within enterprise environments.
- Good understanding of Infrastructure as Code, cloud automation, and operational excellence principles.
Desirable Experience
- Hands-on experience with SHIP-HATS is highly preferred.
- Experience implementing AWS Lake Formation cross-account architectures.
- Experience working with Transit Gateway and large-scale, multi-account AWS environments.
- Previous experience supporting government agencies, IMDA, or public-sector cloud programmes.