Quantum Sky Engineering LLC Logo

Quantum Sky Engineering LLC

AWS Cloud Architect

Posted 2 Days Ago
Remote
Hiring Remotely in US
180K-215K Annually
Senior level
Remote
Hiring Remotely in US
180K-215K Annually
Senior level
Leads the design and implementation of secure, compliant AWS environments, including GovCloud, multi-account landing zones, networking, containers, infrastructure as code, CI/CD, and hybrid connectivity. Translates an existing GCP platform into AWS while maintaining security-control parity and supporting FedRAMP, NIST, CMMC, and ATO requirements. The role also troubleshoots complex infrastructure issues, develops technical documentation, supports continuous monitoring and remediation, and mentors engineers while collaborating with customers and cross-functional teams.
The summary above was generated by AI
Description

Quantum Sky seeking an AWS Cloud Architect to lead the expansion of our existing Google Cloud (GCP) platform into AWS. This role will take the platform’s proven Google Cloud architecture, security controls, and compliance posture and deliver an equivalent, production-ready AWS offering.The ideal candidate combines deep hands-on AWS engineering expertise with experience implementing cloud environments subject to federal cybersecurity and compliance requirements such as FedRAMP, FISMA, DoD Risk Management Framework (RMF), NIST SP 800-53, or comparable regulated security frameworks.This role requires strong knowledge of AWS cloud security, containers, Infrastructure as Code, automation, DevSecOps, and hybrid infrastructure. Candidates must be capable of translating business requirements into secure, compliant, and production-ready cloud architectures.


Responsibilities:

  • Design and implement secure, scalable, and highly available solutions on Amazon Web Services (AWS), including AWS GovCloud (US), that meet security and compliance requirements including FedRAMP, NIST 800-53, CMMC, CIS Benchmarks, and Zero Trust principles.
  • Lead the expansion of our GCP-based platform into AWS, translating its existing architecture, landing zone, and security controls into equivalent AWS services and design patterns.
  • Map GCP services and NIST SP 800-53 control implementations to their AWS equivalents, maintaining feature and control parity across both clouds and documenting control inheritance and evidence for ATO.
  • Refactor and extend the platform’s Terraform modules and CI/CD pipelines to support AWS deployments alongside the existing GCP implementation.
  • Lead technical discovery sessions and develop solution architectures aligned with customer requirements.
  • Design secure networking architectures using Amazon VPC, AWS Transit Gateway, security groups and network ACLs, AWS Network Firewall, Route 53, Elastic Load Balancing, NAT Gateways, VPC endpoints and AWS PrivateLink, and hybrid connectivity via AWS Direct Connect and Site-to-Site VPN.
  • Deploy and operate services such as Amazon EC2, Amazon EKS, Amazon ECS, Amazon S3, Amazon RDS, AWS Secrets Manager, AWS KMS, Amazon CloudWatch, AWS CloudTrail, AWS Config, AWS Security Hub, Amazon GuardDuty, and related AWS services.
  • Implement cloud security controls including least-privilege IAM, network segmentation, encryption and key management, centralized logging, monitoring, vulnerability management, and secure configuration.
  • Build and support containerized platforms using Amazon EKS and Amazon ECS.
  • Develop Infrastructure as Code (IaC) using Terraform or similar automation frameworks.
  • Design and implement CI/CD pipelines supporting infrastructure and application deployments.
  • Automate infrastructure provisioning, configuration management, and operational tasks.
  • Develop technical documentation, architecture diagrams, and implementation guides.
  • Troubleshoot complex infrastructure, networking, security, and application issues.
  • Support security assessment, Authorization to Operate (ATO), continuous monitoring, and POA&M remediation activities, including collection and maintenance of technical evidence.
  • Provide technical leadership and mentor junior engineers.
  • Collaborate with customers, project managers, and engineering teams throughout project lifecycles.
Qualifications

Required:

  • Bachelor’s degree in Computer Science, Information Systems, Engineering, or equivalent experience.
  • 7+ years of experience designing and implementing enterprise IT infrastructure.
  • 4+ years of hands-on AWS architecture experience.
  • Strong knowledge of AWS architecture, including IAM roles and policies, AWS Organizations, Service Control Policies, and AWS Control Tower multi-account strategy, Amazon VPC and Transit Gateway, network security, EC2, EKS, S3, CloudWatch and CloudTrail, AWS KMS, and Secrets Manager.
  • Proven hands-on experience developing and customizing AWS landing zone templates using AWS Control Tower, Landing Zone Accelerator (LZA) on AWS, Account Factory for Terraform (AFT), or Customizations for Control Tower (CfCT), including multi-account structure, SCP guardrails, centralized logging and security services, and network baselines for regulated workloads.
  • Strong hands-on experience with Terraform or comparable Infrastructure as Code technologies.
  • Experience implementing CI/CD pipelines using GitHub Actions, GitLab CI, Jenkins, AWS CodeBuild, and AWS CodePipeline.
  • Strong Linux administration and troubleshooting skills.
  • Experience with scripting and automation using Python, Bash, or similar technologies.
  • Hands-on experience supporting systems governed by FedRAMP, FISMA, DoD RMF, NIST SP 800-53, or comparable federal cybersecurity frameworks.
  • Hands-on experience with containers and orchestration, including Docker, Amazon EKS, and Amazon ECS, and container security best practices.
  • Understanding of security control implementation, assessment evidence, continuous monitoring, vulnerability management, and remediation processes.
  • Strong understanding of cloud security concepts, including IAM, network segmentation, encryption, key management, logging, monitoring, vulnerability management, and secure configuration.
  • Ability to produce clear technical documentation and communicate effectively with engineering, security, compliance, and customer stakeholders.

Desired:

  • Working knowledge of Google Cloud Platform (GCP), including GKE, Shared VPC, Cloud IAM, Cloud KMS, and Security Command Center, sufficient to understand the existing GCP platform and translate it to AWS.
  • Advanced Kubernetes experience, including Red Hat OpenShift, container networking (CNI), service mesh technologies (e.g., Istio), and policy enforcement (e.g., OPA Gatekeeper, Kyverno).
  • Multi-cloud implementation experience across AWS and GCP (and/or Azure), including:
    • Identity and access: federated SSO and centralized identity (e.g., Okta, Entra ID, AWS IAM Identity Center), workload identity federation, and consistent least-privilege models across clouds.
    • Networking: cross-cloud connectivity (VPN, interconnect/Direct Connect), IP address management, DNS, and segmentation in hybrid and multi-cloud topologies.
    • Security tooling: cloud security posture management (CSPM), centralized logging and SIEM integration (e.g., Splunk, Sentinel), and vulnerability and compliance scanning across cloud providers.
  • AWS Certified Solutions Architect – Professional
  • AWS Certified Security – Specialty
  • Certified Kubernetes Administrator (CKA)
  • HashiCorp Terraform Associate
  • Security certifications such as CISSP, CCSP, or Security+
About Quantum Sky

Compensation:

  • Compensation is unique to each candidate and relative to the skills and experience they bring to the position. The salary range for this position is typically between $180,000-$215,000. This does not guarantee a specific salary as compensation is based upon multiple factors such as education, experience, certifications, and other requirements, and may fall outside of the above-stated range.

Benefits:

  • Highlights of our benefits include Health/Dental/Vision, 401(k) match, Paid Time Off, STD/LTD/Life Insurance, Referral Bonuses, professional development reimbursement, and parental leave.

The world the mission operates in is going post-quantum, contested, and machine-speed. Quantum Sky engineers the advantage across cyber, networks, software, and quantum because the mission demands dominance, not parity. We don't follow the map. We draw it. 


At Quantum Sky, we believe that success starts with our people. We foster a collaborative, innovative, and mission-driven environment where every team member plays a critical role in shaping the future of technology. Are you ready to join #TeamQuantumSky? 


Quantum Sky Engineering LLC is an Equal Opportunity Employer; all qualified applicants will receive consideration for employment without regard to race, color, religion, sex, [sexual orientation, gender identity,] national origin, disability, status as a protected veteran, or any characteristic protected by applicable law.

Similar Jobs

12 Days Ago
Remote
United States
160K-180K Annually
Senior level
160K-180K Annually
Senior level
Information Technology • Natural Language Processing • Software
Designs, implements, and manages secure, scalable AWS environments for enterprise and SaaS applications across commercial and GovCloud regions. Responsibilities include infrastructure as code, CI/CD, identity and access management, monitoring, databases, tenant provisioning, compliance, backup and disaster recovery, and troubleshooting. The architect collaborates with technical and business stakeholders to define requirements, resolve issues, and improve cloud reliability, performance, security, and cost efficiency.
Top Skills: Amazon SesAmazon SnsApi GatewayApi ManagementApplication Load BalancerAtoAWSAws GovcloudAws Step FunctionsCdkCi/CdCloudFormationCloudfrontCloudwatchCognitoDockerDynamoDBEcsFedrampGitGuarddutyIamJunitLambdaMySQLNode.jsNoSQLOpenapiOpentelemetryRdsRedisSecrets ManagerSecurity HubSwaggerX-Ray
One Month Ago
In-Office or Remote
Senior level
Senior level
Information Technology • Business Intelligence • Consulting
Lead pre-sales technical discovery and serve as the primary architectural authority for enterprise AWS AI/ML, data, and cloud modernization initiatives. Design Bedrock and SageMaker solutions, migration strategies, and modern data platforms; develop AWS cost models, SOWs, proposals, and funding inputs; evaluate risks and compliance requirements; and coordinate technical handoffs with delivery teams. The role partners with account executives, AWS field teams, customers, and internal engineers without carrying a sales quota.
Top Skills: Amazon AuroraAmazon BedrockAmazon DynamodbAmazon RdsAmazon RedshiftAmazon SagemakerAWSAws GlueAws Pricing CalculatorRetrieval-Augmented Generation (Rag)
2 Months Ago
Remote
United States
150K-200K Annually
Senior level
150K-200K Annually
Senior level
Information Technology • Security
Builds and operates Myriad360's AWS managed service offering: incident and service-desk operations, monitoring/observability, automation, runbooks, FinOps reporting, disaster recovery, and AWS MSP Program certification and audit readiness. Hands-on role with a path to lead the managed services team.
Top Skills: Ai/Ml PlatformsAiopsAWSAws Msp ProgramAws SupportFinopsGoogle Cloud PlatformAzure

What you need to know about the Charlotte Tech Scene

Ranked among the hottest tech cities in 2024 by CompTIA, Charlotte is quickly cementing its place as a major U.S. tech hub. Home to more than 90,000 tech workers, the city’s ecosystem is primed for continued growth, fueled by billions in annual funding from heavyweights like Microsoft and RevTech Labs, which has created thousands of fintech jobs and made the city a go-to for tech pros looking for their next big opportunity.

Key Facts About Charlotte Tech

  • Number of Tech Workers: 90,859; 6.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Lowe’s, Bank of America, TIAA, Microsoft, Honeywell
  • Key Industries: Fintech, artificial intelligence, cybersecurity, cloud computing, e-commerce
  • Funding Landscape: $3.1 billion in venture capital funding in 2024 (CED)
  • Notable Investors: Microsoft, Google, Falfurrias Management Partners, RevTech Labs Foundation
  • Research Centers and Universities: University of North Carolina at Charlotte, Northeastern University, North Carolina Research Campus

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account