Summary
✨ AI‑Generated
An AWS DevOps Engineer is sought to support cloud infrastructure, CI/CD pipelines, and containerized application deployments across development, testing, staging, and production environments. The role includes managing AWS services through Terraform, maintaining GitLab pipelines, supporting release workflows, managing container images, and contributing to networking, security, and production operations. Experience with payment-related compliance environments is valuable.
Highlights
AWS DevOps opportunity focused on cloud infrastructure, CI/CD, containerized deployments, and production support across multiple environments. The role provides exposure to secure payment-related infrastructure, infrastructure as code, release automation, vulnerability management, and cloud networking.
Description
Paysign is seeking an AWS DevOps Engineer to support and maintain cloud infrastructure, CI/CD pipelines, and containerized application deployments across multiple AWS environments including Cardholder Data Environment (CDE) accounts subject to PCI-DSS requirements.
This role works across the same core DevOps domains as the senior team, contributing to release management, cloud services, networking, security operations, and production support while building depth and expertise in each area.
Key Responsibility Areas
Release Management / CI/CD / GitLab
Build, maintain, and troubleshoot GitLab CI/CD pipelines for application builds, testing, and deploymentsSupport deployment automation and environment promotion workflows across development, test, staging, and production including CDE environmentsManage container image builds in ECR including vulnerability scanning and lifecycle policies
AWS Services / EC2 / ECS / Lambda via Terraform
Maintain and extend AWS infrastructure across multiple accounts using Terraform, including CDE-designated accountsSupport ECS Fargate/EC2 services including deployments, task definition updates, scaling configurations, and troubleshootingAssist with Lambda function deployments and serverless service managementManage day-to-day operations of S3, CloudFront, Route 53, Secrets Manager, and other AWS services
Network Infrastructure / VPC / Security Groups / Routing
Maintain VPC configurations, subnet management, and security group rules across environments with awareness of CDE segmentation boundariesTroubleshoot network connectivity issues including cross-account routing, DNS resolution, and load balancer configurations
SecOps / Firewall / WAF / IAM / Policy
Assist with IAM role and policy management, access reviews, and permission configurations across CDE and non-CDE accountsSupport WAF rule management and security group auditingAssist with SOC 2 and PCI-DSS compliance tasks including evidence collection, documentation, and access reviewsFollow CDE change management procedures for all infrastructure modifications
Production Support / On-Call / Datadog / CloudWatch
Monitor system health using Datadog and CloudWatch; respond to alerts and investigate issues across CDE and non-CDE environmentsParticipate in on-call rotation and incident response for production environments with documented incident handling per CDE proceduresMaintain runbooks, operational documentation, and post-incident reports
Required Qualifications
3+ years of experience in DevOps, cloud engineering, or systems administration2+ years of hands-on AWS experience (ECS, EC2, RDS, S3, IAM, VPC)Experience with Infrastructure as Code tools (Terraform preferred)Experience with CI/CD tools (GitLab CI, Jenkins, GitHub Actions, or similar)Working knowledge of Docker and container orchestrationSolid Linux command-line and scripting skills (Bash)Understanding of networking fundamentals (DNS, load balancing, security groups, VPNs)
Preferred Qualifications
AWS certifications (Cloud Practitioner, Solutions Architect Associate, or similar)Experience working in PCI-DSS or other regulated environmentsExperience with GitLab CI/CD specificallyFamiliarity with Datadog, CloudWatch, or equivalent monitoring platformsExperience in fintech, healthcare, or payment processing industriesPython scripting experienceExposure to WAF, IAM policy design, or security operations