Senior AWS Platform Engineer (LZA & Networking)

Location:
London
Job Type:
Contract
Industry:
Cloud & Infrastructure
Job reference:
BBBH431253_1768911375
Posted:
about 11 hours ago

Senior AWS Platform Engineer (LZA Networking Specialism)

Location: London, UK Remote working

£550 per day Inside IR35

Active Home Office SC Clearance required

Contract until End of March, with an additional 6 months

About the role

We are seeking a highly skilled Platform Engineer with deep expertise in AWS Landing Zone Accelerator (LZA) and network architecture. This role will focus on designing, implementing, and maintaining secure, scalable, and compliant cloud environments that form the foundation of our enterprise platform strategy. Leveraging your expertise in cloud technologies and best practices, you will work closely with tenants to architect, implement, and optimise solutions. You will collaborate with cross-functional teams to drive innovation and deliver exceptional value to our customers.

Important

  • You must have SC
  • Join HO on site office days (once in 2 months, either Ruskin Square (Croydon), 2 Marsham Street (Whitehall) or Soapworks (Manchester)

Requirements

About you

You'll be passionate about new technology and automation, and experienced in being part of an Engineering Team and Agile and DevOps best practices. You'll also be able to talk to us about your:

  • Knowledge of continuous integration and deployment practices
  • Ability to collaborate with people of all levels of technical ability
  • Understanding of industry best practices
  • Team player
  • Pro active

Responsibilities

AWS Landing Zone Design & Implementation: -

  • Deploy and configure AWS Landing Zone Accelerator to establish multi-account governance and security baselines.
  • Implement organizational policies, guardrails, and compliance controls using AWS Control Tower and LZA.
  • Automate account provisioning and configuration for consistent cloud adoption.

Networking Architecture: -

  • Design and manage AWS networking solutions, including VPCs, Transit Gateways, PrivateLink, and hybrid connectivity.
  • Implement secure and resilient network topologies for multi-region and multi-account environments.
  • Optimize network performance and cost while ensuring compliance with security standards.

Automation & Infrastructure as Code: -

  • Develop and maintain Infrastructure as Code (IaC) using Terraform or AWS CDK for Landing Zone and networking components.
  • Automate deployment pipelines for platform services and configurations.
  • Integrate networking and governance controls into CI/CD workflows.

Security & Compliance: -

  • Apply AWS security best practices for identity, access management, and network segmentation.
  • Ensure compliance with organizational and regulatory requirements (e.g., ISO, NIST, CIS benchmarks).
  • Implement monitoring and alerting for network and governance health.

Collaboration & Enablement: -

  • Partner with cloud engineering and security teams to embed Landing Zone and networking best practices.
  • Provide documentation and training for platform usage and governance.
  • Act as a subject matter expert for AWS networking and Landing Zone architecture.

Skills

  • Platform Engineering: Proficiency in designing and implementing scalable, resilient, and secure cloud platforms.
  • Cloud Organisation Management: Strong hands-on experience with AWS Landing Zone Accelerator and AWS Control Tower.
  • Networking: Expertise in AWS networking services (VPC, Transit Gateway, Direct Connect, PrivateLink).
  • Automation: Experience with infrastructure-as-code (IaC) practices, automation tools (e.g., Terraform, Ansible) and scripting languages (e.g. Python, Ruby).
  • Container Orchestration: Knowledge of container orchestration platforms (e.g., Kubernetes) and their managed counterparts (e.g., EKS, AKS, GKE).
  • Public Cloud Expertise: Understanding of cloud services, architecture, and best practices in one or more major public cloud providers (AWS, Azure, GCP).
  • DevOps Practices: Strong experience with GitHub CI/CD pipelines, version control systems, and containerisation technologies (e.g., Docker).

Experience

  • Project Leadership: Demonstrated experience delivering cloud migration, optimisation, or transformation projects.
  • Client-Facing Experience: Proven track record of engaging with clients, understanding their requirements, and delivering solutions that exceed expectations.
  • Team Collaboration: Ability to work effectively in cross-functional teams, communicate technical concepts to non-technical stakeholders, and drive consensus.
  • Continuous Learning: Commitment to staying abreast of industry trends, participating in professional development activities, and obtaining relevant certifications.

Qualifications

Certification in relevant cloud technologies (AWS, Azure, GCP) at an associate level is highly desirable, e.g.:

  • AWS Certified: Solutions Architect Associate
  • AWS Certified: Solutions Architect Professional

Certification in Kubernetes administration is desirable:

  • Certified Kubernetes Administrator (CKA)
  • Certified Kubernetes Security Specialist (CKSS)
Back to Search Results