Senior SRE / Platform Engineer
SalvatechAbout Us
Salvatech connects Colombian talent with international companies looking for skilled professionals. We help organizations build efficient remote teams while enabling professionals to access global opportunities, providing full support throughout hiring, onboarding, employment management, and local assistance. We combine technology, proximity, and human talent to create partnerships that drive growth and productivity on both sides.
We are looking for a Senior SRE / Platform Engineer to join a dedicated engineering POD supporting a funded security-remediation program for a leading US healthcare payments and revenue-cycle software company. This role focuses on designing and establishing reusable infrastructure and platform remediation patterns across a hybrid AWS and on-premises environment. You will act as the infrastructure design authority within the POD, defining how security and compliance findings should be properly remediated and how those solutions can be safely replicated across the environment.
You will provide technical direction to infrastructure and application engineers, establish Infrastructure-as-Code standards, oversee safe production deployments, and partner directly with US-based technical stakeholders. This is a technical leadership role, focused on architecture, standards, remediation design, code review, and maintaining a high technical quality bar.
Responsibilities
Salvatech connects Colombian talent with international companies looking for skilled professionals. We help organizations build efficient remote teams while enabling professionals to access global opportunities, providing full support throughout hiring, onboarding, employment management, and local assistance. We combine technology, proximity, and human talent to create partnerships that drive growth and productivity on both sides.
- Location: Colombia (100% Remote)
- Employment Type: Full-time | Indefinite Contract
- Work Schedule: Full-time / Monday to Friday | 8:00 AM – 5:00 PM (ET)
- Work Environment: Collaborative environment with Colombian and international teams
- Language: Professional English
- Industry: Healthcare Technology / Payments
- Salary: Negotiable
- Technology Environment: AWS + On-Premises
We are looking for a Senior SRE / Platform Engineer to join a dedicated engineering POD supporting a funded security-remediation program for a leading US healthcare payments and revenue-cycle software company. This role focuses on designing and establishing reusable infrastructure and platform remediation patterns across a hybrid AWS and on-premises environment. You will act as the infrastructure design authority within the POD, defining how security and compliance findings should be properly remediated and how those solutions can be safely replicated across the environment.
You will provide technical direction to infrastructure and application engineers, establish Infrastructure-as-Code standards, oversee safe production deployments, and partner directly with US-based technical stakeholders. This is a technical leadership role, focused on architecture, standards, remediation design, code review, and maintaining a high technical quality bar.
Responsibilities
- Design remediation patterns for infrastructure and platform findings IAM least-privilege models, network segmentation, encryption in transit and at rest, IaC and configuration hardening, establishing the reusable standard for each class of finding.
- Own the safe path to production: deployment path, rollback strategy, and the automated guardrails and policy controls that keep a closed finding from regressing.
- Define the Infrastructure-as-Code standards (Terraform / CloudFormation modules and conventions) that the POD's infrastructure engineers apply across accounts and environments.
- Make the proper-fix versus configuration-change call on infrastructure findings; escalate architectural questions to the shared Lead Engineer.
- Provide day-to-day technical guidance to the POD's engineers, review remediation approach and quality, and act as the POD's first technical escalation point when the shared Lead is engaged across other PODs.
- Partner directly with US-based application and platform owners on change control and sequencing against release cycles.
- Ensure remediation evidence and controls satisfy audit and compliance requirements
- 5 - 8 years hands-on SRE, platform, cloud-infrastructure engineering, including ownership of design and standards.
- Advanced English level (spoken and written).
- Deep AWS, IAM (including cross-account, Organizations, and SCPs), VPC and network architecture, KMS and encryption, core compute and storage, and AWS security services.
- Expert Infrastructure-as-Code (Terraform and/or CloudFormation), including reusable module and standard design.
- Strong CI/CD design experience, deployment paths, rollback, progressive delivery, and policy-as-code / guardrails (OPA, Sentinel, SCPs, or similar).
- Demonstrated design of cloud security remediation patterns: least-privilege, segmentation, encryption, configuration hardening.
- Experience driving remediation from cloud security-scanning and posture-management output (CSPM, vulnerability scanners), turning recurring findings into reusable remediation patterns, not just one-off fixes.
- Comfortable owning infrastructure design across a hybrid AWS + on-premises environment.
- Track record of setting standards others replicate, and of providing technical direction to other engineers within a team, design and code review, guidance, and holding a quality bar (technical leadership, not people management).
- Secrets management at design level (AWS Secrets Manager, HashiCorp Vault, or similar).
- Comfortable working in a regulated environment handling sensitive data (PHI / payment data) under formal change control, and able to pass client security onboarding.
- Healthcare or other regulated-industry delivery experience (HIPAA, HITRUST, PCI DSS, SOC 2).
- Windows Server / on-premises datacenter operations (on-prem is in scope).
- Familiarity with .NET and/or Java application deployment contexts.
- Senior AWS certification (Solutions Architect Professional, Security – Specialty, or DevOps Engineer Professional).
- Monitoring and alerting to detect configuration drift and finding regression (CloudWatch, Datadog, or similar).
- Configuration management at scale (Ansible, Chef, or Puppet).