Staff Cloud Infrastructure Engineer

Job description

Fingerprint empowers developers to stop online fraud at the source.

We work on turning radical new ideas in the fraud detection space into reality. Our products are developer-focused and our clients range from solo developers to publicly traded companies. We are a globally dispersed, 100% remote company with a strong open-source focus. Our flagship open-source project is FingerprintJS (20K stars on GitHub).

We have raised $77M and are backed by Craft Ventures (previously invested in Tesla, Facebook, Airbnb ), Nexus Venture Partners (previously invested in Postman, Apollo.io, MinIO, Druva) and Uncorrelated Ventures (previously invested in Redis, Rollbar & Gradle).

We have noticed a rise in recruiting impersonations across the industry, where scammers attempt to access candidates’ personal and financial information through fake interviews and offers. All Fingerprint recruiting email communications will always come from the @fingerprint.com domain. Any outreach claiming to be from Fingerprint via other sources should be ignored.


We’re looking for a Staff Cloud Infrastructure Engineer to design, build, and operate scalable, secure, and highly available cloud platforms on AWS. You’ll own Infrastructure-as-Code (Terraform), container orchestration (EKS), GitHub-based workflows (Actions + source control), GitOps (Argo/Argo CD), and end-to-end CI/CD strategies with strong observability.

What You’ll Do

  • Architect and deliver AWS infrastructure using Terraform (modular, reusable, versioned IaC) across multiple accounts and environments
  • Design, deploy, and harden EKS clusters (networking, autoscaling, security, ingress, service mesh optional) and standardize app deployment patterns
  • Implement GitOps with Argo/Argo CD (ApplicationSets, sync policies, RBAC, SSO, secrets management, progressive delivery)
  • Build CI/CD pipelines with GitHub Actions (reusable workflows, artifact strategy, rollouts/rollbacks, automated quality gates)
  • Define SLI/SLOs and enable observability with metrics, logs, traces, alerting, and runbooks using best-in-class tools
  • Drive platform reliability and security: patching, upgrades, backups, disaster recovery, IAM least privilege, secrets, and compliance guardrails
  • Optimize performance and cost: autoscaling, right-sizing, spot/on-demand strategies, efficiency dashboards
  • Partner with developers to create golden paths, templates, and documentation that accelerate safe delivery
  • Participate in on-call, lead incident RCAs, and drive improvements through code and process changes

Required Experience

  • 5–8+ years building and operating production cloud infrastructure (preferably AWS)
  • Strong Terraform expertise: modules, workspaces, state management, CI validation (fmt/validate/tflint), policy as code (Sentinel/OPA)
  • GitHub & GitHub Actions: branch protection, environments, reusable workflows, OIDC to AWS, secrets/variables, caching, matrices
  • AWS services: VPC, IAM, EKS, ALB/NLB, EC2/EKS node groups, ECR, RDS/ElastiCache, S3, CloudWatch/CloudTrail, KMS, Secrets Manager
  • EKS & container orchestration: Helm/Kustomize, rollout strategies, cluster autoscaler, networking (CNI/ingress), HPA/PDBs
  • Argo & Argo CD: Applications & ApplicationSets, sync/health checks, drift detection, RBAC, SSO
  • Observability tools: metrics/logs/traces (Prometheus/Grafana, OpenTelemetry, Datadog, New Relic, Honeycomb, CloudWatch, ELK/OpenSearch)
  • CI/CD strategies: trunk-based, quality gates (tests, SAST/DAST, IaC scans), artifact/versioning, environment promotions, canary/blue-green
  • Strong scripting (Bash/Python), configuration tooling (Helm/Kustomize), solid Linux and networking fundamentals
  • Clear communicator with a bias for automation, documentation, and collaborative problem-solving

Nice to Have

  • Service Mesh (Istio/Linkerd), progressive delivery (Argo Rollouts/Flagger)
  • Security tooling (Snyk, Trivy, AWS Security Hub, IAM Access Analyzer)
  • Data plane experience (Kafka/MSK, Redis/ElastiCache, RDS/Aurora operations)
  • Cost management/FinOps exposure for Kubernetes and AWS

We have noticed a rise in recruiting impersonations across the industry, where scammers attempt to access candidates’ personal and financial information through fake interviews and offers. All Fingerprint recruiting email communications will always come from the @fingerprint.com domain. Any outreach claiming to be from Fingerprint via other sources should be ignored.

Offers vary depending on, but not limited to, relevant experience, education, certifications/licenses, skills, training, and market conditions.

Due to regulatory and security reasons, there’s a small number of countries where we cannot have Fingerprint teammates based. Additionally, because Fingerprint is an all-remote company and people can join our workforce from almost any country, we do not sponsor visas. Fingerprint teammates need to be authorized to work from their home location.

We are dedicated to creating an inclusive work environment for everyone. We embrace and celebrate the unique experiences, perspectives and cultural backgrounds that each employee brings to our workplace. Fingerprint strives to foster an environment where our employees feel respected, valued and empowered, and our team members are at the forefront in helping us promote and sustain an inclusive workplace. We highly encourage people from underrepresented groups in tech to apply.

If you are applying as a resident of California, please read our CCPA notice here

If you are applying as a resident of the EU, please read our GDPR notice here

Share this job:
Please let Fingerprint know you found this job on Remote First Jobs 🙏

Benefits of using Remote First Jobs

Discover Hidden Jobs

Unique jobs you won't find on other job boards.

Advanced Filters

Filter by category, benefits, seniority, and more.

Priority Job Alerts

Get timely alerts for new job openings every day.

Manage Your Job Hunt

Save jobs you like and keep a simple list of your applications.

Search remote, work from home, 100% online jobs

We help you connect with top remote-first companies.

Search jobs

Hiring remote talent? Post a job

Frequently Asked Questions

What makes Remote First Jobs different from other job boards?

Unlike other job boards that only show jobs from companies that pay to post, we actively scan over 20,000 companies to find remote positions. This means you get access to thousands more jobs, including ones from companies that don't typically post on traditional job boards. Our platform is dedicated to fully remote positions, focusing on companies that have adopted remote work as their standard practice.

How often are new jobs added?

New jobs are constantly being added as our system checks company websites every day. We process thousands of jobs daily to ensure you have access to the most up-to-date remote job listings. Our algorithms scan over 20,000 different sources daily, adding jobs to the board the moment they appear.

Can I trust the job listings on Remote First Jobs?

Yes! We verify all job listings and companies to ensure they're legitimate. Our system automatically filters out spam, junk, and fake jobs to ensure you only see real remote opportunities.

Can I suggest companies to be added to your search?

Yes! We're always looking to expand our listings and appreciate suggestions from our community. If you know of companies offering remote positions that should be included in our search, please let us know. We actively work to increase our coverage of remote job opportunities.

How do I apply for jobs?

When you find a job you're interested in, simply click the 'Apply Now' button on the job listing. This will take you directly to the company's application page. We kindly ask you to mention that you found the position through Remote First Jobs when applying, as it helps us grow and improve our service 🙏

Apply