L

Senior Platform Engineer (DevOps/SRE)

lisk • Poland
Remote
Apply
AI Summary

Own and evolve the cloud infrastructure for Lisk's financial platform, ensuring security, reliability, and compliance as we scale. Drive infrastructure as code, CI/CD, observability, and cost optimization across AWS environments. Requires 5+ years of hands-on AWS platform engineering in a fintech context with strong security instincts.

Key Highlights
5+ years DevOps/SRE experience with production AWS environments
FinTech or regulated environment compliance (SOC 2, ISO 27001, PCI-DSS)
Terraform/OpenTofu expertise for multi-environment IaC
Strong security instincts with least-privilege and secrets management
CI/CD fluency with GitHub Actions and OIDC keyless authentication
Production operations maturity including observability, alerting, and incident response
Key Responsibilities
Work as part of a tight-knit platform team, sharing on-call and reviewing infrastructure changes
Drive the platform roadmap prioritizing security, reliability, and observability improvements
Own Infrastructure as Code extending and hardening Terraform/OpenTofu codebase across multiple isolated environments
Lead security initiatives including least-privilege access, secrets management, network segmentation, and audit logging
Build safe delivery pipelines with keyless, short-lived cloud credentials for CI/CD
Make the platform observable by owning metrics, logs, traces, dashboards, and actionable alerting
Plan for failure with backups, restore drills, disaster recovery, and tested incident response
Control cost by keeping AWS spend visible and efficient without compromising reliability or security
Review infrastructure PRs, write runbooks, and pair with product engineers to raise operational standards
Technical Skills Required
AWS Terraform GitHub Actions Security Observability
Benefits & Perks
Flexible work schedule
25 days off per year
Nice to Have
Web3/crypto infrastructure experience
Threat modeling or security audit leadership
Database operations depth (Postgres tuning, zero-downtime migrations)
Kubernetes or service mesh experience
Cost-optimization wins
Network architecture at scale (multi-account, Transit Gateway, VPC peering, private egress design)

Job Description


About us

Lisk is building a new kind of financial platform for businesses - one that brings the best of crypto infrastructure into an experience that feels modern, simple, and built for how teams actually operate. We're replacing fragmented corporate financial tooling with a single workspace across web and mobile.


Your mission

Help own and evolve the cloud infrastructure behind Lisk's financial platform as we scale. You'll join our platform team to keep money-handling systems secure, reliable, and changed only through reviewed, auditable, repeatable processes. 


As we grow, so do the demands on our infrastructure, and you'll help raise the bar continuously and set the standard for how we run production at a fintech level: least-privilege by default, everything as code, nothing done by hand in the console.


What you’ll be doing

  • Work as part of a tight-knit platform team. Partner closely with fellow engineers, sharing on-call, reviewing each other's infrastructure changes, and jointly owning the platform roadmap to add depth and resilience to a critical function.
  • Drive the platform roadmap. As the product and team scale, you'll help prioritize and ship infrastructure improvements across security, reliability, and observability, putting new capabilities in place ahead of demand.
  • Own our Infrastructure as Code. Extend and harden the Terraform/OpenTofu codebase that manages our AWS infrastructure across multiple isolated environments.
  • Run production at a fintech bar. Operate and improve highly available services on AWS with meaningful SLOs, alerting, and on-call discipline.
  • Lead on security. Drive least-privilege access, secrets management, network segmentation, encryption in transit and at rest, and audit logging. Treat every access grant as a reviewed change.
  • Build safe delivery pipelines. Maintain and improve CI/CD with keyless, short-lived cloud credentials so engineers ship quickly without ever handling long-lived secrets.
  • Make the platform observable. Own metrics, logs, traces, dashboards, and actionable alerting; reduce noise and mean time to detect.
  • Plan for failure. Backups, restore drills, disaster recovery, and incident response, all tested rather than assumed.
  • Control cost. Keep AWS spend visible and efficient without compromising reliability or security.
  • Raise the team's bar. Review infrastructure PRs, write runbooks, and pair with product engineers so good operational practice is the default, not an afterthought.


What we’re looking for

  • 5+ years in DevOps / SRE / SysOps / Platform Engineering, with significant ownership of production AWS environments.
  • Experience in FinTech, payments, banking, or another regulated/high-trust environment (SOC 2, ISO 27001, PCI-DSS, or similar compliance exposure).
  • Deep, hands-on AWS. Real depth across IAM, compute, networking, managed databases, storage, secrets, and observability, not just "I've used the console."
  • Expert in Infrastructure as Code, specifically Terraform or OpenTofu, covering modules, remote state, drift management, and managing multiple isolated environments from one codebase.
  • Strong security instincts. You design least-privilege by default, think in blast radius, and have managed secrets and credentials for systems that matter. You can explain why a permission exists.
  • CI/CD fluency, ideally GitHub Actions, including OIDC / keyless cloud authentication.
  • Production operations maturity. Observability, alerting, incident response, backups, and disaster recovery, all as lived experience.
  • A bias for shipping. You deliver, you don't just advise, bringing a track record of actually shipping hardening, migration, and reliability work, not only designing it.
  • Self-sufficient in a lean team. Comfortable owning large areas independently on a small platform team, without needing a big platform org around you to be effective.
  • Remote-first working style. Clear written communication, self-direction, and comfort owning outcomes across time zones
  • Ability to work within European business hours.


Bonus superpowers

  • Web3 / crypto infrastructure experience running nodes, managing keys and HSMs, and securing systems that touch on-chain assets.
  • Threat modeling, security audits, or formal incident-response leadership.
  • Database operations depth (Postgres tuning, zero-downtime migrations).
  • Kubernetes, service mesh, or large-scale container orchestration.
  • Cost-optimization wins you can point to.
  • Network architecture at scale: multi-account/Transit Gateway or VPC peering, private egress design, or hardening east-west traffic between services.
  • Exposure to a second cloud (GCP/Azure) or genuine multi-cloud networking, useful as a signal of provider-agnostic IaC and network design, even though our stack is AWS-first today.


How we work

We're a remote-first team spread across the world, and as such, this is a fully-remote role. While there are no strict geographic restrictions for candidates, you will be expected to cover the European time zone and travel to events as needed.


Working across time zones pushes us to communicate clearly, keep context open, and move quickly without unnecessary friction. We trust people to take ownership, make decisions, and deliver outcomes while staying aligned through a mix of real-time teamwork and async communication.


Perks & benefits

  • Flexible work schedule so you can balance life and work on your terms
  • 25 days off per year


Join us

You'll be building at the frontier of business finance. That means no playbooks, no best practices, no old ways of doing things. You'll own your craft from the ground up and help define how businesses interact with money. If you want massive upside and the chance to help create a category that reshapes global finance, this is the place to be.


Similar Jobs

Explore other opportunities that match your interests

Kubernetes Platform Engineer

Devops
•
2d ago
Visa Sponsorship Relocation Remote
Job Type Full-time
Experience Level Mid-Senior level

infolet

Poland
Visa Sponsorship Relocation Remote
Job Type Full-time
Experience Level Mid-Senior level

Miratech

Poland
Visa Sponsorship Relocation Remote
Job Type Full-time
Experience Level Mid-Senior level

Miratech

Poland

Subscribe our newsletter

New Things Will Always Update Regularly