About the job
Orion Innovation is a distinguished, award-winning global business and technology services firm dedicated to driving transformative business solutions and product development. Our expertise lies in digital strategy, experience design, and engineering, allowing us to deliver unparalleled agility, scale, and maturity. We collaborate with a diverse array of clients across various sectors, including financial services, telecommunications, media, consumer products, automotive, industrial automation, professional sports and entertainment, life sciences, eCommerce, and education.
Role: Senior DevOps/Infrastructure Engineer
Type: Remote working EST hours
Must be eligible for Secret Security Clearance
Job Overview
We are on the lookout for a Senior Infrastructure Engineer with expertise in Security Design to spearhead the advancement of our cloud-native infrastructure. You will be tasked with architecting, building, and maintaining robust AWS infrastructure, ensuring that security is integrated as a foundational element of our design. This role bridges the gap between systems engineering and cyber defense, creating resilient platforms that are 'secure by design.'
Key Responsibilities
- Lead the design and implementation of secure AWS infrastructure, ensuring VPC patterns, peering, and transit gateways adhere to stringent security segmentation.
- Architect and manage production-grade EKS clusters utilizing Docker and Kubernetes, implementing advanced security controls such as OPA/Gatekeeper and workload identity.
- Create and sustain secure automation pipelines using GitHub Actions, ensuring security checks are seamlessly integrated into the deployment process.
- Develop and maintain central identity and access systems utilizing Keycloak, integrating OIDC/OAuth and LDAP across the organization.
- Produce modular, reusable Terraform templates and YAML configurations that incorporate automated compliance checks and security best practices.
- Oversee and secure Postgres DB instances, including encryption strategies and secret management workflows (AWS KMS) to ensure zero-trust data handling.
- Develop custom Python-based tools to automate infrastructure audits, remediation of drift, and security response workflows.
