AWS Platform Engineer, hybrid in Prague
Prague - Czech Republic
Job Summary
We are looking for an experienced AWS Platform Engineer to support the implementation of a multi-cloud strategy within a regulated financial environment. The role focuses on AWS platform enablement Infrastructure as Code cloud governance automation and operational excellence. The ideal candidate combines strong AWS expertise with hands-on Terraform and GitHub experience and is comfortable contributing to platform design security and continuous improvement initiatives.
Start Date: ASAP
Location: Prague (Hybrid 2 days onsite per week)
Language: English Czech is an advantage
Contract Type: B2B
Responsibilities
- Support AWS platform enablement initiatives using Terraform Infrastructure as Code (IaC) and GitOps principles.
- Design develop and maintain reusable Terraform modules.
- Design and optimize operational processes related to AWS services.
- Collaborate closely with the team responsible for AWS Landing Zone design and governance.
- Develop and maintain GitHub workflows automation and CI/CD processes.
- Deploy configure and operate AWS cloud services in accordance with enterprise and regulatory standards.
- Implement monitoring security controls and governance across AWS environments.
- Support cloud infrastructure automation and platform standardization.
- Utilize AI-assisted development tools where appropriate.
- Participate in technical design discussions and contribute to platform improvements.
Requirements
- Strong hands-on experience with AWS cloud services in enterprise environments.
- Experience operating and monitoring AWS services using native AWS tools.
- Strong Terraform experience including:
- Development of reusable and parameterized Terraform modules
- Infrastructure as Code implementation and testing
- Experience with GitHub:
- GitHub Actions
- Workflows and GitOps principles
- Release Please
- Conventional Commits
- Semantic Versioning
- Pre-commit hooks
- TFLint tfdocs and similar tooling
- Strong AWS networking knowledge:
- VPC Endpoints
- AWS service integration patterns
- DNS-related impacts and troubleshooting
- Experience implementing encryption and security controls using BYOK/CMK for data at rest.
- Experience managing AWS organizations and governance through Service Control Policies (SCPs).
- Deep understanding of AWS IAM:
- Users groups roles and policies
- IAM policy JSON syntax
- Permission evaluation logic (Allow/Deny)
- Managed inline identity-based and resource-based policies
- IAM Conditions (IP restrictions MFA tags etc.)
- Permission Boundaries
- Cross-account access using Trust Policies and STS AssumeRole
- Strong analytical and problem-solving skills.
- Ability to work independently and proactively contribute to platform improvements and architectural discussions.
Nice to Have
- AWS certifications (Associate or Professional level).
- Experience with AWS Landing Zone design and implementation.
- Experience working in regulated industries such as banking insurance or financial services.
- Experience with AI-assisted development tools and practices.
- Understanding of multi-cloud environments and cloud governance frameworks.