Jobs · Engineering · Ohio

Lead AWS Platform Engineer

UST · Cincinnati, OH · 2 wk ago
Engineering$78k–$117k/yrFull-time

Born digital, UST transforms lives through the power of technology. We walk alongside our clients and partners, embedding innovation and agility into everything they do. We help them create transformative experiences and human-centered solutions for a better world. UST is a mission-driven group of 29,000+ practical problem solvers and creative thinkers in more than 30 countries. Our entrepreneurial teams are empowered to innovate, act nimbly, and create a lasting and sustainable impact for our clients, their customers, and the communities in which we live.

About the Role

UST is searching for a Lead AWS Platform Engineer who will define and implement cloud platform standards, reusable patterns, and best practices.

Responsibilities

  • Design, develop, and maintain enterprise AWS cloud platforms.
  • Lead cloud adoption, migration, and modernization initiatives.
  • Establish highly available, scalable, and resilient cloud architectures.
  • Develop Infrastructure as Code (IaC) solutions using Terraform, CloudFormation, or AWS CDK.
  • Build automated provisioning frameworks for AWS resources.
  • Create reusable infrastructure modules and blueprints.
  • Automate environment creation, configuration management, and deployment processes.
  • Implement CI/CD pipelines supporting infrastructure deployments.
  • Design and implement cloud security controls aligned with enterprise and regulatory requirements.
  • Manage IAM roles, policies, permission boundaries, and least-privilege access models.
  • Implement AWS security services including: AWS Security Hub, GuardDuty, AWS Config, IAM Identity Center (SSO), WAF, Shield, KMS, Secrets Manager.
  • Lead security assessments, vulnerability remediation, and compliance initiatives.
  • Develop cloud governance standards, policies, and guardrails.
  • Design and manage AWS networking architectures across multi-account environments.
  • Implement and support: VPCs, Transit Gateway, VPN, Direct Connect, Route 53, Network Firewall, Security Groups, NACLs, Load Balancers (ALB/NLB).
  • Design hybrid cloud and multi-region connectivity solutions.
  • Troubleshoot complex networking and connectivity issues.
  • Implement observability and monitoring solutions using: CloudWatch, CloudTrail, AWS X-Ray, Prometheus, Grafana.
  • Establish operational excellence practices.
  • Support incident management, root cause analysis, and performance optimization.
  • Provide technical leadership and mentoring to cloud engineers.
  • Partner with Security, Architecture, Infrastructure, and Development teams.
  • Participate in architecture reviews and cloud governance forums.
  • Drive platform engineering best practices across the organization.

Requirements

  • 6 to 7 years of IT infrastructure/platform engineering experience.
  • 5+ years of hands-on AWS engineering experience in enterprise environments.
  • Strong expertise in AWS networking, security, and infrastructure services.
  • Extensive experience with Infrastructure as Code (Terraform preferred).
  • Experience managing multi-account AWS environments using AWS Organizations and Control Tower.
  • Strong scripting and automation skills using Python, Shell, or PowerShell.
  • Experience with container platforms such as EKS and Docker.
  • Hands-on experience implementing cloud security frameworks and controls.

Skills

AWS Services

  • EC2, S3, EBS, EFS
  • VPC, Transit Gateway, Route 53
  • IAM, KMS, Secrets Manager
  • Organizations, Control Tower
  • CloudWatch, CloudTrail
  • Security Hub, GuardDuty, Config
  • ALB, NLB, WAF, Shield
  • EKS, ECS
  • Lambda

Infrastructure & Automation

  • Terraform
  • AWS CloudFormation
  • AWS CDK
  • Ansible
  • GitHub Actions

Networking

  • TCP/IP
  • DNS
  • VPN
  • Direct Connect
  • BGP
  • Routing
  • Firewalls
  • Load Balancing
  • Hybrid Connectivity

Security

  • Identity & Access Management
  • Encryption & Key Management
  • Zero Trust Architecture
  • Security Compliance
  • Vulnerability Management
  • Cloud Security Best Practices

Preferred Certifications

  • AWS Certified DevOps Engineer – Professional
  • HashiCorp Terraform Associate

Pay

Compensation Range: $78,000-$117,000 (Role Location: Hybrid - Ohio)

Benefits

  • Full-time, regular employees accrue a minimum of 10 days of paid vacation per year.
  • 6 days of paid sick leave each year (pro-rated for new hires).
  • 10 paid holidays.
  • Paid bereavement leave and jury duty.
  • Eligibility to participate in the Company’s 401(k) Retirement Plan with employer matching.
  • Medical, dental, and vision insurance for employees and their dependents residing in the US.
  • Company-paid Employee Only benefits: basic life insurance, accidental death and disability insurance, and short- and long-term disability benefits.
  • Option to purchase additional voluntary short-term disability benefits.
  • Participation in a Health Savings Account (HSA) and Flexible Spending Account (FSA) for healthcare, dependent child care, and/or commuting expenses as allowable under IRS guidelines.
  • Part-time employees receive 6 days of paid sick leave each year (pro-rated for new hires) and are eligible to participate in the Company’s 401(k) Retirement Plan with employer matching.
  • Full-time temporary employees receive 6 days of paid sick leave each year (pro-rated for new hires) and are eligible to participate in the Company’s 401(k) program with employer matching, as well as medical, dental, and vision insurance.
  • All US employees who work in a state or locality with more generous paid sick leave benefits will receive the benefit of those sick leave laws.

Similar jobs