
Cloud & Infrastructure Engineer
NEWITY
Job description
Job Type
Full-time
Description
About Us:
NEWITY is America's source for small business capital. Weโre building a continuous loan-monitoring platform that automates covenant tracking, collateral monitoring, financial-statement collection, exception handling, and borrower engagement across SBA and commercial loan portfolios. Achieving our vision requires more than ambition. It demands resilience, collaboration, accountability, professionalism, and a relentless drive to improve. Our culture moves fast, fosters excellence, and rewards those who lean in. Itโs not for everyone, but if youโre energized by challenge, motivated by impact, and ready to grow alongside teammates who share your commitment, thereโs no better place to build your career.
Job Summary:
The Cloud and Infrastructure Engineer is responsible for the design, operation, security, and continuous improvement of the cloud infrastructure supporting NEWITY's applications, databases, and partner integrations โ a multi-account AWS environment with a substantial serverless and event-driven footprint, plus a small set of supporting Azure services. This role maintains and hardens those environments, contributes to automation, reliability, scalability, and performance, and enables efficient software delivery through modern DevOps practices.
This is a hybrid role spanning DevOps, Cloud Operations, and Site Reliability Engineering. The same person builds the infrastructure and the pipelines that deploy to it, runs and secures that environment day to day, and owns its reliability โ service health, observability, incident response, and reducing the operational toil that comes with all three.
Security is the first responsibility of this role, ahead of scalability and flexibility. As a financial services company, NEWITY holds sensitive borrower and business data, and we expect this engineer to set and hold the standard for how that infrastructure is secured โ including when that means pushing back.
This role works directly with Product Engineering day to day but reports to the SVP, Head of Security & Infrastructure. That separation is deliberate: it preserves the independence this role needs to enforce security and infrastructure standards without being subject to feature-delivery pressure
Requirements
Qualifications
-
Bachelor's degree in Computer Science, Information Technology, Engineering, or a related field, or equivalent professional experience
-
Bachelor's degree in Computer Science, Information Technology, Engineering, or a related field, or equivalent professional experience
-
4 - 7 years of experience in Cloud Infrastructure, DevOps, Platform Engineering, or Site Reliability Engineering (SRE)
-
Experience designing, deploying, and supporting AWS cloud environments in production
-
Strong expertise across AWS โ compute and serverless, storage, managed databases, networking, edge/CDN and DNS, API management, and event-driven messaging.
-
Experience with Infrastructure as Code tools such as Terraform or AWS CloudFormation
-
Proven experience building and maintaining CI/CD pipelines using GitHub Actions, Azure DevOps, Jenkins, GitLab CI, or similar platforms
-
Strong cloud security fundamentals: least-privilege access design, secrets management, and network and public-exposure hardening
-
Proficiency implementing and maintaining secure cloud environments, preferably within regulated industries
-
Experience with monitoring, logging, alerting, and threat-detection tooling
-
Site reliability fundamentals: service health and availability monitoring, capacity and performance management, and systematically reducing operational toil through automation
-
Scripting and automation ability in at least one general-purpose language
-
Solid understanding of networking, security, identity management, and cloud architecture best practices
-
Experience operating within a change-controlled, audited environment (SOC 2 or comparable)
-
Comfortable partnering daily with a separate product engineering organization while remaining independent of it, including raising and holding security or reliability objections
-
Excellent problem-solving, communication, and cross-functional collaboration skills
-
Experience with containerization and orchestration technologies a plus
-
Azure experience (secrets/key management, RBAC, security posture tooling) a plus
-
Exposure to Jack Henry or IBM i / AS400 environments a plus โ we run on a hosted platform with limited back-end access, but have had real success interfacing directly with the i Series to work around platform limitations
-
AWS certification (e.g., Solutions Architect Associate, SysOps Administrator Associate, or Security Specialty) a plus
Description & Responsibilities
-
Support implementation and ongoing management of scalable, secure, and highly available AWS cloud infrastructure supporting business-critical applications and services.
-
Own the implementation and ongoing management of secure, scalable, and highly available AWS cloud infrastructure supporting business-critical applications and services
-
Own the security posture of that infrastructure โ identify, prioritize, and remediate infrastructure security findings, and maintain the access, network, and data-protection controls that keep the environment defensible
-
Administer and harden identity and access within AWS: least-privilege policy design, role and permission-set hygiene, and credential lifecycle management
-
Own secrets management posture โ secure storage, rotation, and safe runtime access patterns for application workloads
-
Design, implement, and maintain Infrastructure as Code solutions using tools such as Terraform or AWS CloudFormation
-
Build and optimize CI/CD pipelines to enable automated, reliable, and secure software deployments
-
Contribute to cloud architecture, infrastructure standards, and operational best practices supporting performance, reliability, security, and cost efficiency
-
Manage containerized and cloud-native environments
-
Own and expand remote-access infrastructure (AWS Client VPN)
-
Administer a small set of supporting Azure services, including secrets/key management and role assignments
-
Maintain monitoring, logging, alerting, and observability solutions (CloudWatch, GuardDuty, and similar) to identify and resolve issues
-
Own service reliability and availability โ define and track service health objectives, manage capacity and performance, and drive down operational toil through automation
-
Participate in incident response, root cause analysis, and recovery planning efforts
-
Support the infrastructure underpinning NEWITY's external partner integrations โ banking, credit, identity verification, tax, and lending-marketplace data providers โ including credential storage, network paths, and exposure controls
-
Partner with Product Engineering to support application performance, scalability, and regulatory requirements, while remaining organizationally independent of that team
-
Support NEWITY's SOC 2 Type II compliance program through infrastructure evidence and control maintenance, and help extend that work as additional compliance frameworks come into scope over time
-
Drive cloud cost optimization initiatives and recommend improvements
-
Promote DevOps best practices, automation, and a culture of continuous improvement
-
Research and recommend emerging technologies to support infrastructure strategy
Benefits
-
Base Rate: $110,000 - $150,000 Per Year + Performance Bonus, (Commensurate with Experience)
-
Comprehensive Health, Dental, and Vision Insurance
-
Retirement Plan with a Company Contribution of 3% of Total Salary
-
Paid Time Off and Holidays
-
Professional Development Opportunities
NEWITY is an Equal Opportunity Employer and consider applicants for all positions without regard to race, color, religion or belief, sex, age, national origin, citizenship status, marital status, military/veteran status, genetic information, sexual orientation, gender identity, physical or mental disability or any other characteristic protected by applicable laws.