Bastion - Senior Infrastructure Engineer
Responsibilities
• Take ownership of an infrastructure area: CI/CD pipelines, observability stack, Kubernetes platform, or AWS security/networking • Lead a medium-scope project: implementing a reusable Terraform module, right-sizing service resources, or improving deployment reliability • Strengthen system reliability with better metrics, alerts, autoscaling policies, and failure recovery mechanisms • A delivered infrastructure improvement that enhances reliability, reduces cost, or improves developer velocity • You're a go-to person for your infrastructure domain • Lead a platform-wide initiative: single immutable image pipeline, infrastructure standardization, database performance optimization, or security hardening • Shape infrastructure direction with design docs, RFC proposals, and mentoring engineering teams • Partner with engineering, security, and compliance teams to make pragmatic tradeoffs on reliability, cost, and regulatory requirements • A multi-sprint infrastructure delivery that improves system-wide reliability, security, or developer experience • Clear before/after improvements in deployment speed, cost efficiency, or operational stability • Patterns and tooling that enable engineers to ship faster and safer • SOME PROBLEMS YOU MIGHT WORK ON • Building reusable Terraform modules that standardize service deployment patterns across dev, sandbox, and prod • Implementing single immutable image pipelines with built-in security scanning and promotion workflows • Right-sizing Kubernetes workloads and autoscaling policies to reduce cost while maintaining reliability • Designing and implementing database monitoring and performance optimization strategies • Hardening AWS infrastructure with security best practices: IAM policies, network segmentation, secrets management, and audit logging • Building observability infrastructure that gives engineers fast feedback on system health and performance • Improving CI/CD reliability and speed through better caching, parallelization, and failure handling • OUR TYPICAL STACK • Languages: Go and TypeScript/Node.js; some services in Rust as needed • Infrastructure-as-Code: Terraform • Cloud & Compute: AWS (ECS, EKS, Lambda, EC2), Kubernetes, Docker • CI/CD: GitHub Actions, container registries, automated testing and deployment pipelines • Data: Postgres (RDS), Redis, Kafka, Snowflake • Workflow Management: Temporal • Security: AWS Nitro Enclaves for hardware-backed key isolation, IAM policies, secrets management • Observability: Datadog, Grafana, Sentry, CloudWatch • Incident Management: Incident.io http://Incident.io
Benefits
• Base Salary $200K – $260K • Offers Equity • Actual compensation is unique to each candidate and based on a variety of factors such as skill set, experience, and specific work location. Salary is one part of Bastion’s total compensation and benefits package. • We are proud to present to all employees a generous equity offering and additional benefits including: • Flexible work schedules • Unlimited paid vacation & holidays • Several holistic and balanced life benefits such as: comprehensive health coverage, life insurance, retirement benefits, paid parental leave, tax-advantaged accounts, One Medical, Spring health, and more. • Upload your resume here to autofill key application fields. • Drop your resume here! • Parsing your resume. Autofilling key fields... • or drag and drop here • I can tell when you use AI for this. Give me something real
Apply in one click
Upload My Resume
Drop here or click to browse · Tap to choose · PDF, DOCX, DOC, RTF, TXT