Назад
Company hidden
21 час назад

Senior DevOps Engineer (Cloud Network Foundation)

Формат работы
remote (только Brazil)
Тип работы
fulltime
Грейд
senior
Английский
c1
Страна
Brazil
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Senior DevOps Engineer (Cloud Network Foundation) (AWS networking and Terraform): Building and operating a multi-account AWS network foundation with an accent on Transit Gateway routing, centralized inspection, hybrid connectivity, IPAM, and infrastructure automation. Focus on diagnosing routing asymmetry, proving firewall paths and log delivery, designing resilient GRE/BGP connections, and maintaining client-inheritable multi-account Terraform pipelines.

Location: Remote, Brazil

Company

CI&T delivers technology transformation, AI deployment, application modernization, data and AI, martech, and business strategy solutions for large enterprises.

What you will do

  • Own a multi-account AWS network foundation end to end, including Transit Gateway, hub-and-spoke VPCs, centralized inspection, egress, ingress, shared services, and workload tiers.
  • Define, implement, and test routing through AWS Network Firewall, including stateful rule groups, default-deny controls, domain allowlisting, and managed threat signatures.
  • Design Transit Gateway Connect over GRE with BGP, dual peers, agreed ASNs, and hybrid connectivity to a client SD-WAN environment through a third-party vendor.
  • Manage AWS IPAM, delegated administration, account-mapped pool hierarchies, and RAM shares across spoke accounts.
  • Build and maintain multi-account Terraform with separated state by phase, GitHub OIDC deployment, drift detection, static validation, and client-inheritable pipelines.
  • Manage governance-account log delivery, resource policies, KMS key policies, service-linked roles, testing, and documentation of architectural decisions and deviations.

Requirements

  • Hands-on experience building, breaking, and fixing hub-and-spoke AWS networks with centralized inspection.
  • Strong knowledge of Transit Gateway association and propagation, appliance mode, VPC design, Network Firewall, NAT, egress control, PrivateLink, and Route 53 Resolver.
  • Experience with AWS Organizations, Control Tower, OUs, SCPs, delegated administrators, RAM, and inheriting an existing landing zone.
  • Practical experience with Terraform module design, multi-account and multi-phase state layouts, and identifying resource renames or destructive changes in plans.
  • Experience with site-to-site VPN or Direct Connect, GRE, BGP peering, route advertisement, and ASN allocation.
  • Advanced or fluent English required; clear and precise written communication is essential.

Nice to have

  • AWS Advanced Networking Specialty certification or equivalent experience.
  • Experience with Cisco, Fortinet, or Palo Alto SD-WAN platforms on AWS and Transit Gateway Connect.
  • Exposure to manufacturing or industrial environments.
  • Familiarity with AWS Account Factory for Terraform.
  • Working fluency in Portuguese and English for client and team communication.

Culture & Benefits

  • Remote home-office work in Brazil.
  • Collaboration across more than 25 countries.
  • AI is integrated into daily work and innovation practices.
  • Benefits are provided through CI&T's Brazil employment program.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →