- Full-time
- Quick Apply
Role: Database Engineer (Senior)
Location: US (remote)
Duration: 12 Months +
Position Overview
We are seeking a highly skilled Senior Cloud Native Engineer to lead the design, implementation, and migration of our core database infrastructure into a highly secure, scalable AWS environment. In this role, you will be a key architect and executor of our Data Access Control & Trust (DACT) solution, ensuring all migrated data adheres to strict cloud-native security, governance, and compliance frameworks. You will bridge the gap between traditional database administration and cutting-edge cloud engineering, migrating legacy on-premise or EC2-hosted databases to managed AWS native services while building a robust DACT ecosystem.
Key Responsibilities
Database Migration Leadership: End-to-end planning, execution, and optimization of complex database migrations (SQL/NoSQL) from legacy environments to AWS native databases (e.g., Amazon Aurora, RDS, DynamoDB, DocumentDB), DACT Solution Architecture: Design, build, and deploy the technical infrastructure for the Data Access Control & Trust (DACT) solution, focusing on automated data classification, fine-grained access control (ABAC/RBAC), encryption, and continuous compliance.
Infrastructure as Code (laC): Develop and maintain reusable, secure Terraform or AWS CloudFormation templates to provision all database and DACT-related infrastructure.
Zero-Downtime Strategy: Utilize tools like AWS Database Migration Service (DMS) and AWS Schema Conversion Tool (SCT) to execute near-zero-downtime migrations using Change Data Capture (CDC).
Security & Governance Integration: Implement advanced cloud-native security features using AWS IAM, AWS Secrets Manager, AWS KMS, AWS Lake Formation, and AWS Macie to protect data at rest and in transit.
CI/CD Pipeline Engineering: Build and manage automated CI/CD pipelines (GitLab, GitHub Actions, or AWS CodePipeline) for seamless database schema deployments and DACT policy updates.
Performance Optimization: Benchmark, tune, and optimize cloud-native databases for cost, performance, scaling, and high availability across multiple Availability Zones.
Target Skills:
- Networking (Level 300) - AWS VPC, SSM, EC2 and ECS
- Database engines & access models (Level 300) - Aurora PostgreSQL, DynamoDB, DocumentDB (SCRAM/IAM), OpenSearch (fine-grained access control, SAML), RDS Oracle/SQL Server, Redshift.
- Database audit & compliance (Level 300) - Database Activity Streams (sync/async, KMS CMK, Kinesis), CloudTrail data events, AWS Config rules for database configuration compliance. Third party tooling like IBM Guardium or Liquibase is a bonus.
- AWS identity & database authentication (Level 300) - IAM database authentication, Secrets Manager , RDS Proxy.
- Documentation (Level 300) - Migration-path docs and coverage-expansion summaries for Tech Risk review