Stax Inc
As a Cloud Engineer, you'll help design, automate, and optimize cloud infrastructure supporting our products and internal systems. You'll work alongside talented engineers across Security, Quality Assurance, and Application teams to keep our systems fast,
reliable, and secure.
Our tech stack includes:
Governance: Control Tower (70+ AWS Accounts), Identity Center + OIDC, SCPs
Hosting Services: ECS on Fargate, EC2, Lambda
Storage: S3, RDS, Aurora, DynamoDB
Data Visualization & Processing: Athena, Glue, Kinesis, QuickSight
Security Tooling: Security Hub, GuardDuty, Inspector, Splunk
Networking: AWS Transit Gateway (Hub and Spoke Network), Palo Alto CN NGFWs, AWS WAF
Infrastructure as Code: CDK (TypeScript), Terraform
CI/CD: GitHub Actions, Bitbucket Pipelines
What You'll Do
Design, build, and maintain AWS infrastructure with scalability, reliability, and cost efficiency in mind
Develop and maintain Infrastructure as Code (IaC) using CDK and Terraform
Partner with Product and Application teams to support cloud-native architectures and deployments
Monitor and optimize system performance, uptime, and cost
Strengthen our cloud security posture and automate compliance where possible
Troubleshoot and resolve issues across complex distributed environments
Collaborate closely with QA, Security, and Application teams to streamline cloud workflows
Requirements
35 years of experience managing and engineering solutions in AWS
Strong understanding of core AWS services (ECS, EC2, Lambda, RDS, S3, IAM, etc.) Hands-on experience with Terraform or AWS CDK
High level of proficiency in scripting or programming (Python, TypeScript, Bash, etc.)
Solid understanding of networking concepts and cloud security best practices
Experience with CI/CD tooling such as GitHub Actions or Bitbucket Pipelines
Nice-to-Haves
AWS Certifications (Solutions Architect, SysOps, or DevOps Engineer)
Experience with observability tooling (CloudWatch, Datadog, Splunk, OpenTelemetry)
Knowledge of security principles such as Zero Trust Architecture (ZTA) and Principle of Least Privilege (PoLP)
Familiarity with encryption strategies for data at rest and in transit (e.g., KMS, TLS, customer-managed keys, envelope encryption)
Awareness of compliance frameworks (PCI-DSS, SOC 2, HIPAA) and how they affect data platform design
recblid r4gmw2p7oy54kinvhcrjgwy3hej4n9
recblid r4gmw2p7oy54kinvhcrjgwy3hej4n9