Description and Requirements
Cloud Engineer - AWS (Windows & Linux)
Role Overview
We are seeking a Level 2 Cloud Engineer to support and operate Windows and Linux workloads hosted on AWS, within a secure, multi‑account cloud environment covering UAT and Production.
This role focuses on day‑to‑day operational support, validation, troubleshooting, and remediation for OS‑level and cloud services, supporting AWS infrastructure initiatives involving secure ingress/egress, network firewalls, load balancers, and controlled connectivity. The engineer will work closely with cloud, network, and security teams in a regulated enterprise environment.
Key Responsibilities
1. Windows & Linux OS Support (L2)
- Provide Level 2 operational support for:
- Windows Server (2016 / 2019 / 2022)
- Linux distributions (RHEL, Amazon Linux, Ubuntu)
- Perform OS‑level troubleshooting, service restarts, performance checks, and log analysis.
- Support core platform services:
- Windows: AD, DNS, GPO, WSUS
- Linux: systemd services, cron, filesystem, package management (yum/apt)
- Handle incidents, problems, and service requests via ITSM tools.
2. AWS Cloud Operations Support
- Support workloads running on core AWS services:
- EC2, EBS, S3
- AWS Systems Manager (SSM) - Run Command, Patch Manager, Session Manager
- Amazon CloudWatch - logs, metrics, alarms
- Assist with:
- Instance provisioning and validation
- Start/stop, resize, snapshot, and recovery activities
- Support UAT and PROD operational readiness and BAU handover.
3. Network, Ingress & Egress Support (Mandatory)
- Support AWS environments with:
- Internet and Intranet-based ingress and egress traffic flows
- VPCs, subnets, route tables, and security groups
- Integration with web security and traffic management services such as AWS WAF
- Work with network and security teams to:
- Validate end-to-end connectivity paths for Windows and Linux servers
- Design and support Layer 4 and Layer 7 load balancing using AWS Network Load Balancer and AWS Application Load Balancer
- Implement and manage API exposure and routing using Amazon API Gateway
- Configure and support forward and reverse proxy solutions (e.g., NGINX)
- Troubleshoot connectivity, DNS resolution, proxy routing, and firewall-related issues
- Support secure ingress and egress architecture by:
- Implementing reverse proxy, forward proxy, and web application firewall (WAF) patterns
- Ensuring secure access control, SSL/TLS termination, and traffic inspection
- Perform post-implementation testing and verification from the OS and network perspective to ensure end-to-end connectivity and application accessibility
4. Security, Hardening & Compliance Support
- Support and remediate findings related to:
- CIS hardening benchmarks (Windows & Linux)
- Vulnerability scans and compliance checks
- Assist with:
- IAM role usage and least‑privilege access at instance level
- Endpoint protection / monitoring agents (EDR/XDR)
- Participate in audits, evidence collection, and compliance activities.
5. Patch Management & Automation
- Perform OS patching for:
- Windows (WSUS / SCCM / SSM Patch Manager)
- Linux (yum / apt / SSM Patch Manager)
- Support automation and remediation using:
- PowerShell (Windows)
- Shell scripting (bash) (Linux)
- AWS CLI
- Participate in scheduled maintenance windows and on‑call rotations.
6. Documentation & Operational Readiness
- Create and maintain:
- Runbooks
- SOPs
- Knowledge articles
- Support operational handover from project build to steady‑state support.
Required Skills & Experience
Core Experience
- 5+ years of hands‑on OS support experience across Windows and/or Linux.
- 2+ years supporting workloads on AWS.
- Experience operating in enterprise or regulated environments.
Technical Skills (Must‑Have)
- Windows Server administration (2016/2019/2022).
- Linux administration (RHEL / Amazon Linux / Ubuntu).
- AWS operational experience with:
- EC2, EBS, S3
- IAM (roles and instance profiles - operational usage)
- Systems Manager (SSM)
- CloudWatch
- Understanding of:
- VPC fundamentals
- Security groups and basic routing
- Load balancer integrations (NLB awareness)
- Scripting skills:
- PowerShell (Windows)
- Bash / Shell scripting (Linux)
Preferred Skills & Certifications
- AWS Certified SysOps Administrator - Associate
- AWS Certified Solutions Architect - Associate
- Microsoft Windows Server or Hybrid Administrator certification
- Linux certifications (RHCSA or equivalent)
- ITIL Foundation (v3/v4)
Soft Skills
- Strong troubleshooting and incident triage capability.
- Clear communicator able to work with cloud, network, and security teams.
- Process‑driven and comfortable working with runbooks and controls.
- Proactive, ownership mindset with willingness to upskill.


