Description
About Crystal PM
Every day, over 10,000 eye care professionals log into Crystal's software before they see their first patient.
We're the operating system behind independent eyecare — the EHR, practice management, billing, scheduling, and payments platform that keeps these practices running smoothly.
With new leadership, fresh growth capital from top-tier software and search fund investors, and a clear runway to $35mm+ in ARR, Crystal is at an inflection point.
We're not a startup – we're a market leader focused on long-term value creation.
That means building the team, the product, and the go-to-market engine to execute on our ambitious goals.
We're assembling a team that matches the opportunity.
If that sounds like your kind of challenge, we'd like to hear from you.
About This Role
The DevOps Engineer will own and evolve Crystal's cloud infrastructure, the backbone that keeps over 10,000 eyecare professionals online and operational every day.
This is a high-ownership, hands-on role sitting at the intersection of infrastructure reliability, developer productivity, and operational excellence.
You'll work closely with the engineering team while independently driving the maturity of our AWS environment, CI/CD pipelines, containerization strategy, and observability platform.
This isn't a maintenance role.
We have a decent foundation and need someone to scale it.
You’ll bring engineering rigor, automation, and modern DevOps practices to a platform that's growing fast.
Design, build, and maintain AWS infrastructure with a focus on reliability, security, and cost efficiencyOwn and modernize CI/CD pipelines to accelerate safe, frequent software delivery across all product linesLead containerization efforts and drive Kubernetes or ECS adoption to improve deployment consistency and scalabilityImplement and maintain Infrastructure as Code (IaC) using Terraform across all environmentsBuild comprehensive monitoring, alerting, and observability systems; own incident response for infrastructure eventsEstablish cloud cost management practices — baseline spend, identify optimization opportunities, and implement savingsMaintain a HIPAA-aware security posture including access controls, encryption standards, audit logging, and vulnerability managementManage virtual desktop infrastructure (AWS WorkSpaces, AppStream, or equivalent) for internal teams and contractors, including provisioning, imaging, and access controlSupport hybrid and multi-cloud infrastructure, including hands-on Azure work alongside our primary AWS environmentPartner closely with software engineers to embed DevOps practices into the development lifecycleDocument infrastructure architecture, runbooks, and operational procedures to support team resilience
Key Responsibilities
Owns Cloud Infrastructure & DevOps Excellence
A high-ownership individual who takes full accountability for infrastructure uptime, performance, and securityA builder mentality: can assess the current state, design a better target state, and execute the transition without waiting to be directedComfortable operating as the sole infrastructure owner while collaborating fluidly with a software engineering teamProven experience designing and managing AWS infrastructure at scale, with hands-on Terraform IaC proficiency4+ years of DevOps or infrastructure engineering experience with direct ownership of production environmentsTrack record of building or modernizing CI/CD pipelines that measurably improved deployment frequency, reliability, or developer experienceExperience containerizing applications and managing workloads in Kubernetes or ECSStrong scripting ability in Bash and/or Python to automate operational workflowsExperience implementing monitoring and observability platforms with on-call incident response processes to match
Qualifications
Required
4+ years of DevOps or infrastructure engineering experience with production AWS ownershipDeep AWS expertise — EC2, RDS, ECS/EKS, S3, IAM, VPC, Route 53, CloudWatch, and related servicesStrong Terraform proficiency; ability to design, write, and maintain IaC from scratchCI/CD pipeline experience (GitHub Actions, CircleCI, Jenkins, or similar tools)Container and orchestration experience — Docker required; Kubernetes or ECS strongly preferredScripting proficiency in Bash and/or Python for automation and toolingExperience with monitoring and observability tooling and ownership of incident response processesStrong operational mindset with comfort around runbooks, change management, and on-call ownership
Preferred
Hands-on Azure experience Familiarity with HIPAA compliance requirements in healthcare SaaS environmentsExperience with cloud cost management tooling (AWS Cost Explorer, Infracost, or similar)Security tooling experience (AWS Security Hub, GuardDuty, Snyk, or equivalent)Background supporting a rapidly growing SaaS company through a platform scaling inflection pointComfortable coordinating directly with external managed service providers and migration/implementation partners