Quick Summary
AWS Infrastructure Design & Operations Design, deploy, and maintain AWS infrastructure: VPC, Subnets, Route Tables, Security Groups, IAM, EC2, EBS, S3, ELB/ALB/NLB, Route53.
AWS & Networking Strong AWS experience: VPC, Subnets, Route Tables, Security Groups, IAM, EC2, EBS, S3, ELB/ALB/NLB, Route53. Good understanding of AWS networking: public/private subnets, NAT Gateway,
At NOVACARD, we’re redefining how people use credit. We are the first interest-free and no-annual-fee credit card in Mexico, designed to simplify personal finances and give users complete control - all from a mobile app. With NOVACARD, users can access up to $200,000 MXN in credit, only pay when they use it, and manage everything digitally in under 5 minutes. Our mission is to empower people to make smarter financial decisions by offering flexibility, transparency, and the freedom they need to reach their goals. Simple finances, big goals.
About the Role
~1 min readDesign, deploy, and maintain AWS infrastructure: VPC, Subnets, Route Tables, Security Groups, IAM, EC2, EBS, S3, ELB/ALB/NLB, Route53.
Configure AWS networking: public/private subnets, NAT Gateway, Internet Gateway, VPC Peering / Transit Gateway, VPN, routing.
Ensure HA, backup/restore, disaster recovery, and production infrastructure principles.
Create and maintain AWS infrastructure as code using Terraform.
Build and operate Kubernetes on AWS (EKS).
Work with core Kubernetes objects: Deployment, StatefulSet, DaemonSet, Service, Ingress, ConfigMap, Secret, Job/CronJob, PVC/PV, Namespace, ServiceAccount.
Use Helm for application management.
Configure Ingress Controller, Load Balancer, and TLS/certificates.
Understand Kubernetes storage and ensure stateful applications run reliably.
Work with Docker: image builds, registry, container troubleshooting.
Build CI/CD processes, preferably with GitLab CI.
Automate deployment of applications and dependent services.
Integrate infrastructure changes into pipelines and maintain reproducible environments.
Set up monitoring with Prometheus + Grafana: metrics and alerts.
Organize centralized log collection and analysis: Loki/ELK/OpenSearch.
Diagnose network and system issues in Linux.
Ensure production stability, respond to incidents, and eliminate root causes.
Manage secrets: AWS Secrets Manager / Vault/OpenBao / External Secrets.
Configure RBAC/IAM and follow the principle of least privilege.
Ensure secure service-to-service communication and infrastructure access.
Support PostgreSQL, Redis, RabbitMQ/Kafka at the infrastructure and application integration level.
Ensure backup/restore and fault tolerance for stateful services.
Help teams deploy and maintain dependent services in Kubernetes.
Requirements
~1 min readStrong AWS experience: VPC, Subnets, Route Tables, Security Groups, IAM, EC2, EBS, S3, ELB/ALB/NLB, Route53.
Good understanding of AWS networking: public/private subnets, NAT Gateway, Internet Gateway, VPC Peering / Transit Gateway, VPN, routing.
Hands-on experience building and operating Kubernetes on AWS (EKS).
Understanding of core Kubernetes objects: Deployment, StatefulSet, DaemonSet, Service, Ingress, ConfigMap, Secret, Job/CronJob, PVC/PV, Namespace, ServiceAccount.
Experience with Helm.
Experience configuring Ingress Controller, Load Balancer, and TLS/certificates.
Experience with Docker: image builds, registry, container troubleshooting.
Understanding of Kubernetes storage and stateful application operation.
Terraform — creating and maintaining AWS infrastructure as code.
Experience building CI/CD, preferably GitLab CI.
Experience with PostgreSQL, Redis, RabbitMQ/Kafka at the infrastructure and application integration level.
Understanding of HA, backup/restore, disaster recovery, and production infrastructure principles.
Monitoring: Prometheus + Grafana, configuring metrics and alerts.
Centralized log collection and analysis: Loki/ELK/OpenSearch.
Secrets management: AWS Secrets Manager / Vault/OpenBao / External Secrets.
Linux administration and confident diagnosis of network and system issues.
Experience configuring RBAC/IAM and following the principle of least privilege.
The engineer must be able to design an AWS network from scratch → set up EKS → deploy an application and dependent services → configure ingress/DNS/TLS → CI/CD → monitoring/logging → backup → hand over a production-ready infrastructure for operation.
Nice to Have
~1 min readExperience migrating lending systems or fintech products.
Experience building CI/CD with GitLab CI.
Hands-on experience with Vault/OpenBao, External Secrets.
Experience with Kafka and stateful services in Kubernetes.
What We Offer
~1 min readLocation & Eligibility
Listing Details
- First seen
- September 25, 2026
- Last seen
- September 29, 2026
Posting Health
- Days active
- 3
- Repost count
- 0
- Trust Level
- 56%
- Scored at
- September 29, 2026
Signal breakdown
Browse Similar Jobs
Stay ahead of the market
Get the latest job openings, salary trends, and hiring insights delivered to your inbox every week.
No spam. Unsubscribe at any time.