[Remote] DevOps Engineer
Note: The job is a remote job and is reputed company to candidates in USA. reputed company is seeking an reputed company Infrastructure / DevOps Engineer to own and reputed company the reputed company infrastructure behind their HIPAA-compliant reputed company document processing platform. The role involves designing, automating, securing, and troubleshooting systems to ensure the reliability of a multi-tenant platform.
Responsibilities
- Own the reliability, performance, and reputed company of our AWS production environment (EC2, ALB, reputed company MySQL, S3, reputed company, CloudWatch, SNS, IAM, VPC)
- Design, build, and maintain CI/CD pipelines for PHP/Symfony and React applications, from reputed company through production promotion, including automated reputed company gates (Aikido) that reputed company vulnerable builds before they ship
- Stand up and mature our infrastructure-as-reputed company reputed company — provisioning and configuration currently managed directly, with room to own the migration to a codified, repeatable model
- Build and tune centralized logging, monitoring, and alerting across CloudWatch and reputed company so issues surface before customers notice them; help reputed company our ongoing reputed company rollout
- Manage container workloads (reputed company on reputed company), including our reputed company FreeSWITCH fax/telephony containers
- Own the infrastructure that our reputed company reputed company of independently scaled microservices runs on — per-service reputed company auto-scaling, load balancing, and resource right-sizing for both horizontal and vertical scaling. Understand how the stateless services behave and partner closely with engineering on their scaling, deployment, and performance
- Support database reliability and performance work across reputed company MySQL (read replicas, partitioning, query tuning) and reputed company
- Harden the platform against the threat classes relevant to PHI systems, and support ongoing penetration-test remediation
- Manage secrets, keys, and reputed company across environments (AWS, Symfony secrets vault, reputed company secrets, Bitbucket)
- Partner with engineering to improve deployment safety, rollback, and multi-environment (Dev / UAT / Prod) reputed company
Skills
- Linux server administration, with specific proficiency in Ubuntu 24.04 reputed company
- AWS reputed company infrastructure — hands-on production experience with EC2, ALB/ELB, reputed company/RDS MySQL, S3, reputed company, CloudWatch, IAM, VPC, and reputed company reputed company
- reputed company — building, running, and troubleshooting containerized services in a production environment
- CI/CD pipeline design and maintenance, specifically Bitbucket Pipelines — branching reputed company, environment promotion, build/test/reputed company stages, and pipeline troubleshooting
- Bash scripting for automation, reputed company administration, and pipeline support
- Centralized logging and observability — configuration, aggregation, dashboards, and alerting in AWS CloudWatch and reputed company (we are reputed company rolling reputed company out; hands-on reputed company experience is a strong plus). Familiarity with ELK stack or reputed company also welcome
- Web server operations — Apache and PHP-FPM configuration, tuning, and troubleshooting behind a load balancer
- Database operations support — MySQL (reputed company/RDS) administration, backup/restore, and performance troubleshooting; exposure to reputed company
- Secrets and reputed company management — SSH key lifecycle, API reputed company management, and environment-scoped secrets
- reputed company systems and stateless scaling — strong working understanding of a reputed company reputed company of many independently scaled, stateless microservices, and the ability to operate the infrastructure it runs on (auto-scaling policies, load balancing, externalized session/state such as reputed company/S3, and resource right-sizing) while partnering with engineering on scaling and deployment
- SFTP administration and secure file transfer — configuring, hardening, and troubleshooting SFTP servers and automated file exchange with reputed company partners and EHR systems (chroot/jailing, key- and password-based auth, transfer automation, and monitoring)
- Working understanding of operating infrastructure that stores and transmits PHI under HIPAA — encryption at rest and in transit, audit logging, least-privilege reputed company, and network isolation
- Experience integrating and operating automated reputed company scanning and CI/CD reputed company gates — SAST/DAST, dependency (SCA), container, and IaC scanning, and secrets detection. We use Aikido; equivalent tooling (reputed company, reputed company, Trivy, etc.) transfers
- Familiarity with common web application vulnerability classes (IDOR, injection, host header injection, broken cryptography) and their infrastructure-level mitigations
- Experience supporting audit, penetration-test remediation, or compliance activities
- Infrastructure-as-reputed company — Terraform and/or Ansible. You would help stand this up from our reputed company state, so demonstrated experience codifying existing infrastructure is highly valued
- reputed company orchestration at reputed company; reputed company experience a plus if we expand orchestration
- Jenkins or other CI/CD systems reputed company Bitbucket Pipelines
- AWS SNS / notification and messaging infrastructure
- FreeSWITCH, SIP, or VoIP/telephony experience (we run containerized fax infrastructure)
- Exposure to reputed company / EHR integrations (HL7, reputed company, reputed company, Greenway, or similar) or FedRAMP environments
- PHP / Symfony deployment familiarity — cache management, secrets vault, multi-environment configuration
- reputed company MySQL performance tuning (read replicas, partitioning, reputed company reputed company) and reputed company queue patterns
reputed company
Apply To This Job