{"schemaVersion":"jobsearcher.job.v1","id":"deffc2afac331831ff3d993f","url":"https://jobsearcher.com/jobs/deffc2afac331831ff3d993f","canonicalUrl":"https://jobsearcher.com/jobs/deffc2afac331831ff3d993f","title":"Cloud/Network Infrastructure Engineer, Senior","description":"ECS is seeking a Cloud/Network Infrastructure Engineer, Senior to work remotely.\n\nEverforth ECS is seeking a Senior Infrastructure Engineer (AWS / Terraform / EKS) to join the Infrastructure & Cloud Team supporting the CDM Data Service federal programs under DHS CISA. This role focuses on designing, building, and operating secure, repeatable AWS environments within a FedRAMP and ATO-governed context. The engineer will work in an environment where all deployments are infrastructure-as-code, peer-reviewed, and fully auditable. The successful candidate will combine hands-on AWS engineering depth with a strong sense of operational discipline, automation, and compliance awareness. This is not just EKS/Terraform build work; it is operational ownership across commercial and GovCloud AWS accounts for connectivity, routing, DNS, F5/load balancing, EKS, Terraform, security remediation, migrations, and stakeholder coordination.\n\nWe are seeking dynamic, energetic, and engaging team members who love challenges! The ideal candidate will be able to align to the following duties:\n\nTroubleshoot and support enterprise load-balancing and ingress patterns, including F5 or equivalent technologies, DNS, TLS/certificate paths, routing, and endpoint reachability.\nCoordinate directly with application teams, Security, stakeholders, network owners, and program leadership to resolve connectivity, access, migraiton, and production readiness issues.\nDesign, build, and maintain Infrastructure-as-Code using Terraform (modules, S3/DynamoDB remote state, OPA/tfsec policy integration).\nProvision, upgrade, and manage EKS clusters, including namespaces, Helm-based add-ons (cert-manager, ESO, Confluent Operator), and IAM roles for service accounts.\nDesign, configure, and troubleshoot AWS VPC networking, including routing, TGWs, DNS, DHCP, endpoints, NACLs, and security groups.\nImplement and secure microservices on EKS with proper connectivity to AWS services (S3, ECR, Secrets Manager, IAM).\nAutomate infrastructure deployments using GitHub Actions (or self-hosted runners), cross-account IAM role assumptions, and CI/CD policy gates.\nCollaborate with security and applications teams to enforce least-privilege IAM, automate compliance evidence collection, and support RMF/ATO documentation.\nDiagnose and resolve complex issues spanning containers, Kubernetes networking, and AWS layers (VPC – Zscaler - C-TIPS - SaaS endpoints).\nSupport observability, logging, and monitoring through integration with Elastic, ScienceLogic, or AppDynamics to meet SLA and audit requirements.\nMentor and guide junior engineers through knowledge sharing, paired engineering, and process standardization.\nEvaluate and improve infrastructure design for policy compliance, resiliency, and performance tuning.\nDevelop and maintain SOPs and playbooks that align with program governance.\nSupport legacy-to-CAWS migration activities, including RabbitMQ/app-server connectivity, environment cutover support, dependency discovery, and validation of network paths across lower and production environments.\nQuickly build working knowledge of inherited environments, document tribal knowledge, create diagrams/runbooks, and transfer operational context to primary and backup owners.\nOperate within a formal change-control, evidence, and audit expectations, including CR support, implementation evidence, rollback planning, and post-change validation.\n\nSalary: $123,000 - $184,000\n\nGeneral Description of Benefits\n\nRequirements:\nMust be a US citizen with the ability to obtain Public Trust Suitability.\nBachelor's degree or 8 years of relevant experience.\n6+ years designing, implementing, securing, and maintaining AWS Cloud infrastructure (CAWS, GovCloud, or equivalent).\n5 + years troubleshooting hybrid/cloud network connectivity, including VPC routing, TGW, DNS, DHCP, TLS/certificates, security groups, NACLs, endpoints, and load balancers.\n5+ years of experience with Terraform (advanced modules, state management, policy enforcement).\n5+ years' Experience with Kubernetes networking, ingress, CoreDNS, service exposure, node/security group behavior, and connectivity between EKS workloads and AWS/external services.\n5+ years of infrastructure experience related to network security\nStrong networking foundation: TCP/IP, DNS, DHCP, TLS, routing, subnetting, NACLs, and endpoint connectivity.\nProficient scripting/automation using Python or Bash, YAML/JSON templating, and Git-based workflows.\nExperience in security compliance environments (FedRAMP, FISMA, NIST 800-53) and supporting ATO documentation.\nDemonstrated ability to collaborate cross-functionally with Security, DevSecOps, and CI/CD teams to maintain compliant, auditable infrastructure.\nStrong communication skills with the ability to interface effectively with stakeholders from engineers to senior management.\n\nReq Benefits:\nBenefits - Everforth ECS","company":"Everforth Ecs","rawCompany":"everforth ecs","city":"Myrtle Point","state":"OR","isRemote":false,"isActive":false,"createdAt":"2026-09-28T11:30:02.312Z","occupations":[{"code":"15-1299.08","title":"Computer Systems Engineers/Architects","slug":"computer-systems-engineers-architects"},{"code":"15-1244.00","title":"Network and Computer Systems Administrators","slug":"network-and-computer-systems-administrators"},{"code":"15-1241.00","title":"Computer Network Architects","slug":"computer-network-architects"}],"industries":[{"code":"541512","title":"Computer Systems Design Services","slug":"computer-systems-design-services"},{"code":"518210","title":"Computing Infrastructure Providers, Data Processing, Web Hosting, and Related Services","slug":"computing-infrastructure-providers-data-processing-web-hosting-and-related-services"},{"code":"541513","title":"Computer Facilities Management Services","slug":"computer-facilities-management-services"}],"jobPosting":{"@context":"https://schema.org","@type":"JobPosting","title":"Cloud/Network Infrastructure Engineer, Senior","description":"ECS is seeking a Cloud/Network Infrastructure Engineer, Senior to work remotely.\n\nEverforth ECS is seeking a Senior Infrastructure Engineer (AWS / Terraform / EKS) to join the Infrastructure & Cloud Team supporting the CDM Data Service federal programs under DHS CISA. This role focuses on designing, building, and operating secure, repeatable AWS environments within a FedRAMP and ATO-governed context. The engineer will work in an environment where all deployments are infrastructure-as-code, peer-reviewed, and fully auditable. The successful candidate will combine hands-on AWS engineering depth with a strong sense of operational discipline, automation, and compliance awareness. This is not just EKS/Terraform build work; it is operational ownership across commercial and GovCloud AWS accounts for connectivity, routing, DNS, F5/load balancing, EKS, Terraform, security remediation, migrations, and stakeholder coordination.\n\nWe are seeking dynamic, energetic, and engaging team members who love challenges! The ideal candidate will be able to align to the following duties:\n\nTroubleshoot and support enterprise load-balancing and ingress patterns, including F5 or equivalent technologies, DNS, TLS/certificate paths, routing, and endpoint reachability.\nCoordinate directly with application teams, Security, stakeholders, network owners, and program leadership to resolve connectivity, access, migraiton, and production readiness issues.\nDesign, build, and maintain Infrastructure-as-Code using Terraform (modules, S3/DynamoDB remote state, OPA/tfsec policy integration).\nProvision, upgrade, and manage EKS clusters, including namespaces, Helm-based add-ons (cert-manager, ESO, Confluent Operator), and IAM roles for service accounts.\nDesign, configure, and troubleshoot AWS VPC networking, including routing, TGWs, DNS, DHCP, endpoints, NACLs, and security groups.\nImplement and secure microservices on EKS with proper connectivity to AWS services (S3, ECR, Secrets Manager, IAM).\nAutomate infrastructure deployments using GitHub Actions (or self-hosted runners), cross-account IAM role assumptions, and CI/CD policy gates.\nCollaborate with security and applications teams to enforce least-privilege IAM, automate compliance evidence collection, and support RMF/ATO documentation.\nDiagnose and resolve complex issues spanning containers, Kubernetes networking, and AWS layers (VPC – Zscaler - C-TIPS - SaaS endpoints).\nSupport observability, logging, and monitoring through integration with Elastic, ScienceLogic, or AppDynamics to meet SLA and audit requirements.\nMentor and guide junior engineers through knowledge sharing, paired engineering, and process standardization.\nEvaluate and improve infrastructure design for policy compliance, resiliency, and performance tuning.\nDevelop and maintain SOPs and playbooks that align with program governance.\nSupport legacy-to-CAWS migration activities, including RabbitMQ/app-server connectivity, environment cutover support, dependency discovery, and validation of network paths across lower and production environments.\nQuickly build working knowledge of inherited environments, document tribal knowledge, create diagrams/runbooks, and transfer operational context to primary and backup owners.\nOperate within a formal change-control, evidence, and audit expectations, including CR support, implementation evidence, rollback planning, and post-change validation.\n\nSalary: $123,000 - $184,000\n\nGeneral Description of Benefits\n\nRequirements:\nMust be a US citizen with the ability to obtain Public Trust Suitability.\nBachelor's degree or 8 years of relevant experience.\n6+ years designing, implementing, securing, and maintaining AWS Cloud infrastructure (CAWS, GovCloud, or equivalent).\n5 + years troubleshooting hybrid/cloud network connectivity, including VPC routing, TGW, DNS, DHCP, TLS/certificates, security groups, NACLs, endpoints, and load balancers.\n5+ years of experience with Terraform (advanced modules, state management, policy enforcement).\n5+ years' Experience with Kubernetes networking, ingress, CoreDNS, service exposure, node/security group behavior, and connectivity between EKS workloads and AWS/external services.\n5+ years of infrastructure experience related to network security\nStrong networking foundation: TCP/IP, DNS, DHCP, TLS, routing, subnetting, NACLs, and endpoint connectivity.\nProficient scripting/automation using Python or Bash, YAML/JSON templating, and Git-based workflows.\nExperience in security compliance environments (FedRAMP, FISMA, NIST 800-53) and supporting ATO documentation.\nDemonstrated ability to collaborate cross-functionally with Security, DevSecOps, and CI/CD teams to maintain compliant, auditable infrastructure.\nStrong communication skills with the ability to interface effectively with stakeholders from engineers to senior management.\n\nReq Benefits:\nBenefits - Everforth ECS","datePosted":"2026-09-28T11:30:02.312Z","dateModified":"2026-09-28T11:30:02.312Z","hiringOrganization":{"@type":"Organization","name":"Everforth Ecs","sameAs":"https://jobsearcher.com"},"jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"Myrtle Point","addressRegion":"OR","addressCountry":"US"}},"identifier":{"@type":"PropertyValue","name":"JobSearcher","value":"deffc2afac331831ff3d993f"},"url":"https://jobsearcher.com/jobs/deffc2afac331831ff3d993f"}}