Job description
Overview
Shift4 (NYSE: FOUR) is boldly redefining commerce by simplifying complex payments ecosystems across the world. As the leader in commerce-enabling technology, Shift4 powers billions of transactions annually for hundreds of thousands of businesses in virtually every industry. For more information, visit www.shift4.com.
Shift4 is a leader in commerce-enabling technology, growing rapidly and boldly challenging the status quo of payment ecosystems across the globe. We power billions of transactions annually for hundreds of thousands of businesses in virtually every industry.
We made it from scratch, driven by the ambitious challenges and opportunities they brought. We made it with the support of the exceptional team, being the driving force behind our aspiring mission to simplify complex payment ecosystems.
As a company, we do not sit idly, but we’re doing big things and making bold moves! Every day at Shift4 is an exciting ride! It can’t be any different when you partner with companies like Time Magazine, Burger King, Wendy’s, Best Western, Wyndham Hotels & Resorts, Hilton and Budget - to name but a few.
Our approach:
- Leveraging AWS capabilities instead of reinventing the wheel
- Prioritizing automation over repetitive manual tasks
- Building self-healing IT infrastructures
- Systematic scalability and security assessments
- Security-by-design across all layers of infrastructure
- Proactive threat detection and incident response processes
Over 60 AWS services implemented, including:
- IaC & Automation: CloudFormation/CDK,Python, Ansible, Packer, Jenkinsfile, Chaos Toolkit
- Databases: Aurora, DMS, Redshift, RDS, DynamoDB, ElastiCache
- Data Streaming: Kinesis (Streams, Firehose, Analytics)
- Monitoring & Observability: OpenSearch (OKK Stack), DataDog, PagerDuty, CloudWatch
- Security & Compliance: wiz.io, CloudTrail, GuardDuty, SecurityHub, Wazuh, AWS Config
- Compute & Containers: ELB/ALB/GLB, AutoScaling, EC2, ECS, Fargate
- Serverless: API Gateway/Lambda, Aurora Serverless
Responsibilities:
- Working as DevSecOps/AWS Engineer for an online card payment system that processes millions of transactions daily for 1000+ merchants across 160 currencies, achieving 99.995% uptime
- Designing, implementing, and securing AWS cloud architectures
- Developing, configuring, and maintaining infrastructure as code (IaC) based on CloudFormation/CDK with security best practices embedded
- Designing and implementing secure CI/CD pipelines with integrated vulnerability scanning and compliance checks
- Performing continuous threat modeling, vulnerability assessments, and implementing mitigation strategies
- Consulting on, planning, and ensuring the ongoing security and PCI DSS compliance of new and existing projects
- Conducting detailed postmortem analysis, implementing security-oriented countermeasures, and proactive improvement actions
- Preparing the organization for successful PCI compliance audits through robust security controls and evidence management
Required Experience and Skills:
- At least 6 years of hands-on DevOps or DevSecOps experience (level dependent on project team’s autonomy)
- Minimum of 4 years experience specifically designing, implementing, and maintaining secure AWS infrastructure solutions
- Broad knowledge of AWS services with the ability to identify and implement secure, optimal solutions
- Solid understanding of security principles and best practices, including infrastructure hardening, incident response, IAM, and network security
- Long-term commitment—we build a bold team ready to grow, tackle challenges, and celebrate milestones together
- Willingness to take accountability and ownership of security and operational outcomes
- Excellent problem-solving skills, particularly in proactively identifying and addressing security risks and operational issues early
- Strong communication, documentation, and collaboration skills, particularly around security topics
- Fluency in Polish and English, with experience working with teams both from Poland and internationally.
Nice to have:
- Familiarity with PCI DSS standards and compliance practices
- AWS Security Specialty Certification or similar cybersecurity certifications
What We Offer:
- Remote work with flexible hours (B2B contract)
- Modern office in the center of Wrocław if needed
- Independent position with effective onboarding process and opportunity for mastering new skills and gaining knowledge of the international fintech security standards
- Cooperation with a team of highly trained specialists familiarized with technology and innovative products
- In the long-term perspective, participating in the DevOps/cloud engineering team extension
- Unlimited career potential in disruptive fintech environment where traditional finance meets the new technology
We are an Equal Opportunity Employer and do not discriminate against any employee or applicant for employment because of race, color, sex, age, national origin, religion, sexual orientation, gender identity and/or expression, status as a veteran, and basis of disability or any other federal, state or local protected class.