Skip to content
← Back to job listings

Senior Platform Engineer - AWS

Smarsh · Bangalore, India

Software DevelopmentSenior LevelExternal listingfull-timeabout 13 hours ago

About The Role

Who are we?

Smarsh empowers its customers to manage risk and unleash intelligence in their digital communications. Our growing community of over 6500 organizations in regulated industries counts on Smarsh every day to help them spot compliance, legal or reputational risks in 80+ communication channels before those risks become regulatory fines or headlines. Relentless innovation has fueled our journey to consistent leadership recognition from analysts like Gartner and Forrester, and our sustained, aggressive growth has landed Smarsh in the annual Inc. 5000 list of fastest-growing American companies since 2008.

About the Role

We're seeking an experienced Platform Engineer to design, build, and operate secure, scalable hybrid cloud network infrastructure on AWS. You'll work across platform, security, and infrastructure teams to deliver highly available cloud connectivity solutions, focusing on automation, reliability, and operational excellence.

Required Qualifications

  • -
  • Bachelor's in Computer Science/Engineering or equivalent professional experience
  • -
  • 6-8 years in platform engineering, SRE, or cloud engineering with strong AWS networking focus
  • -
  • AWS Advanced Networking – Specialty Certification or equivalent hands-on expertise with VPCs, subnets, Transit Gateways, Route 53, Direct Connect, and VPNs
  • -
  • Strong system design and troubleshooting skills
  • -
  • Hands-on experience architecting hybrid on-premises ↔ AWS connectivity
  • -
  • Hands-on firewall operations experience (AWS Network Firewall, NACLs, Security Groups, WAF in production environments)

Core Responsibilities

Platform Architecture (40%)

-

Design and implement secure, scalable AWS network architectures (VPCs, subnets, routing, multi-tenant isolation)

-

Architect hybrid connectivity solutions using Direct Connect, VPNs, Transit Gateways

-

Design and implement firewall strategies: Network ACLs, Security Groups, AWS Network Firewall, and WAF rules aligned with security best practices

-

Advanced understanding of NACLs, Security Groups, WAF, and AWS Network Firewall

-

Implement Route 53, DHCP, AWS PrivateLink , and DNS/IPAM solutions

-

Design high-availability and disaster recovery network architectures

-

Create and maintain network architecture diagrams and SOPs

-

Collaborate with Infosec team to design network architectures that align with threat models and security controls

-

Participate in security incident response involving network systems

Infrastructure Automation (40%)

-

Develop and maintain Terraform modules for AWS infrastructure with security guardrails embedded (e.g., encryption at rest/transit, least-privilege IAM policies, NACLs, Security Groups)

-

Partner with Infosec to establish and enforce Terraform coding standards and security controls

-

Build environment aware Terraform modules for reusability

-

Implement GitOps workflows and promote infrastructure changes across dev/staging/prod

-

Automate firewall rule provisioning and updates; implement drift detection for security controls

-

Automate operational tasks using Python and shell scripting

-

Manage backup and recovery procedures

-

Implement CI/CD integration for infrastructure deployments

Operations & Observability (20%)

-

Audit, maintain, and troubleshoot firewall rules and security controls (NACLs, Security Groups, Network Firewall, WAF) including rule optimization, change management, incident response, and compliance reviews

-

Design and implement monitoring/alerting using DataDog , Prometheus and AWS CloudWatch

-

Analyze VPC Flow Logs and AWS networking metrics for performance optimization

-

Lead troubleshooting of complex network and platform issues

-

Participate in on-call rotation

-

Maintain runbooks and operational documentation

Mandatory Skills

-

AWS Networking & Firewall Operations : VPC, peering, subnets, Transit Gateways, Route 53, Direct Connect, VPNs, NACLs, Security Groups, AWS Network Firewall, WAF , AWS PrivateLink, IPAM

-

Firewall Rule Management : Writing, debugging, and maintaining network ACLs and Security Groups at scale; understanding of stateful vs. stateless filtering AWS Services: EC2, RDS, ECS/EKS, Lambda, IAM, CloudFormation, S3

-

Infrastructure as Code: Terraform (primary); CloudFormation exposure

-

Programming: Python + Bash/Shell scripting

-

Linux fundamentals and networking (TCP/IP, routing, DNS)

-

On-call operational support

Preferred Qualifications

  • -
  • AWS Advanced Networking – Specialty Certification
  • -
  • Kubernetes / service mesh networking experience (Istio, Envoy)
  • -
  • Multi-account AWS organization management
  • -
  • CI/CD platform experience (GitLab CI, GitHub Actions, Jenkins)
  • -
  • Monitoring/observability tools: Prometheus, ELK stack
  • -
  • Compliance frameworks: SOC 2, ISO 2700

This is an external listing. JobSpring does not represent or verify the employer. Report this listing