Infrastructure Engineer
SalvatechAbout Us
Salvatech connects Colombian talent with international companies looking for skilled professionals. We help organizations build efficient remote teams while enabling professionals to access global opportunities, providing full support throughout hiring, onboarding, employment management, and local assistance. We combine technology, proximity, and human talent to create partnerships that drive growth and productivity on both sides.
Join a dedicated engineering POD delivering a funded security-remediation program for a leading US healthcare payments and revenue-cycle software company. This is the scale seat: you'll take the remediation patterns designed by the POD's senior SRE and apply them broadly and consistently across the client's AWS accounts, environments, and on-premises servers, wherever a given finding appears. The work spans a hybrid estate (AWS + on-prem) and a Java/.NET application landscape, high-volume, execution-focused, and tied to the client's release cycles and audit requirements.
Responsibilities
Salvatech connects Colombian talent with international companies looking for skilled professionals. We help organizations build efficient remote teams while enabling professionals to access global opportunities, providing full support throughout hiring, onboarding, employment management, and local assistance. We combine technology, proximity, and human talent to create partnerships that drive growth and productivity on both sides.
- Location: Colombia (100% Remote)
- Employment Type: Full-time | Indefinite Contract
- Work Schedule: Full-time / Monday to Friday | 8:00 AM – 5:00 PM (ET)
- Work Environment: Collaborative environment with Colombian and international teams
- Language: Professional English
- Industry: Healthcare Technology / Payments
- Salary: Negotiable
- Technology Environment: AWS + On-Premises
Join a dedicated engineering POD delivering a funded security-remediation program for a leading US healthcare payments and revenue-cycle software company. This is the scale seat: you'll take the remediation patterns designed by the POD's senior SRE and apply them broadly and consistently across the client's AWS accounts, environments, and on-premises servers, wherever a given finding appears. The work spans a hybrid estate (AWS + on-prem) and a Java/.NET application landscape, high-volume, execution-focused, and tied to the client's release cycles and audit requirements.
Responsibilities
- Apply infrastructure remediation patterns IAM, network segmentation, encryption, and configuration hardening, across all affected AWS accounts, environments, and on-premises servers.
- Remediate at scale using the Infrastructure-as-Code modules and standards the senior SRE defines (Terraform / CloudFormation).
- Keep patch currency and remediate configuration drift across the hybrid estate.
- Execute changes through established deployment paths; verify results and roll back when needed.
- Capture and organize remediation evidence for audit and compliance review.
- Triage and track assigned findings; report status and blockers clearly.
- Escalate findings that don't fit the established pattern to the senior SRE and the shared Lead Engineer
- 3–5 years hands-on infrastructure, cloud, or systems engineering.
- Solid working AWS knowledge, IAM, VPC and networking basics, EC2 / S3, and encryption (KMS).
- Hands-on Infrastructure-as-Code (Terraform and/or CloudFormation) — applying and adapting existing modules.
- Comfortable across both AWS and on-premises systems (Linux and/or Windows Server).
- Scripting for automation (Python and/or Bash / PowerShell).
- Patch management and configuration hardening experience.
- Working understanding of common security remediation actions, least-privilege, encryption, hardening.
- Advanced English level (spoken and written).
- Experience remediating from vulnerability scanners and cloud posture (CSPM) output, triaging findings and applying fixes consistently across the estate.
- Comfortable working in a regulated environment handling sensitive data (PHI / payment data) under formal change control, and able to pass client security onboarding.
- Healthcare or other regulated-industry delivery experience (HIPAA, HITRUST, PCI DSS, SOC 2).
- On-premises datacenter / Windows Server operations (on-prem is in scope).
- Configuration management (Ansible, Chef, or Puppet).
- AWS Associate certification (SysOps Administrator or Solutions Architect Associate).
- ITSM / ticketing familiarity (Jira, ServiceNow).