
AWS Cloud Engineer
Roche · 2 Locations
Job description
At Roche you can show up as yourself, embraced for the unique qualities you bring. Our culture encourages personal expression, open dialogue, and genuine connections, where you are valued, accepted and respected for who you are, allowing you to thrive both personally and professionally. This is how we aim to prevent, stop and cure diseases and ensure everyone has access to healthcare today and for generations to come. Join Roche, where every voice matters. The Position AWS Cloud Engineer Roche Digital Technology (RDT) is where innovation meets purpose. As a global team at the heart of Roche, we are a community of business-minded technologists committed to help shape tomorrow’s digital future of healthcare. Our mission is to power Roche through cutting-edge digital technologies, harnessing the potential of artificial intelligence, data, and scalable tech innovations. Driven by purpose and passion, we’re building a future where digital is a core strength across all of Roche, enabling smarter ways of working, unlocking human potential, and driving breakthroughs that truly matter for millions of patients around the world. At Roche, we offer a hybrid work model that combines flexibility with in-person collaboration. For now, we require our employees to be in our offices on average two days per week. The specific office days may vary depending on business needs, such as workshops, conferences, town halls, team meetings, and other collaborative events. We are looking for an experienced AWS Cloud Engineer to design, build, and evolve secure, scalable, and automated cloud solutions on AWS. You will work as part of a team of Cloud Engineers, taking ownership of solutions from design through implementation and operation. This is a hands-on engineering role: we are looking for someone who enjoys staying close to the technology, solving complex technical challenges, and turning architectural concepts into reliable production solutions. The role has a strong focus on Amazon EKS, AWS Bedrock, Infrastructure as Code and CI/CD, as well as cloud networking and security. The opportunity: Design and implement end-to-end AWS solutions, translating business and technical requirements into secure, scalable, resilient, and maintainable architectures. Design, build, and operate Amazon EKS environments and Kubernetes-based workloads, including cluster architecture, workload deployment, networking, security, observability, and lifecycle management. Design and implement solutions leveraging AWS Bedrock and related AWS services for generative AI workloads, with particular attention to secure integration, access control, networking, scalability, and operational readiness. Build cloud infrastructure using AWS CDK, applying Infrastructure as Code principles to create reusable, maintainable, and automated infrastructure components. Develop and maintain CI/CD pipelines for infrastructure and application deployments using GitLab CI/CD and/or GitHub Actions. Design and implement AWS networking architectures, including VPCs, subnets, routing, private connectivity, DNS, load balancing, ingress/egress patterns, and integration across cloud environments. Embed security by design across cloud solutions, including IAM, least-privilege access, secrets and key management, network security, encryption, and security controls. Implement robust logging, monitoring, alerting, and observability to ensure production environments are transparent, reliable, and supportable. Build and integrate solutions using additional AWS services such as Lambda, IAM, CloudWatch, S3, API Gateway, and other services as appropriate. Troubleshoot complex infrastructure, networking, security, Kubernetes, and deployment issues across the technology stack. Contribute to engineering standards, reusable patterns, automation, technical documentation, and cloud best practices. Collaborate closely with other Cloud Engineers, application teams, architects, security specialists, and other stakeholders. Remain hands-on and close to the technology, continuously evaluating new AWS capabilities and improving existing platforms and engineering practices. Who you are: You are an engineer who combines strong architectural thinking with hands-on implementation skills. You are comfortable designing an end-to-end solution, but equally comfortable opening an IDE, writing CDK code, configuring an EKS workload, building a deployment pipeline, or troubleshooting a networking issue. You enjoy working collaboratively within a team of Cloud Engineers, sharing knowledge and challenging technical decisions constructively. You take ownership of the solutions you build and care about their security, reliability, maintainability, and operational quality. Most importantly, you remain curious and close to the technology, continuously learning and applying new capabilities across the AWS ecosystem. You have: Strong hands-on experience designing and implementing solutions on AWS. Deep practical knowledge of Amazon EKS and Kubernetes, including production-grade cluster and workload architectures. Experience with AWS Bedrock or strong experience building cloud-based generative AI/ML solutions with the ability to quickly develop deep Bedrock expertise. Strong experience with AWS CDK and Infrastructure as Code. Strong understanding of AWS networking, including VPC architecture, routing, private/public connectivity, DNS, security groups, load balancing, and related networking concepts. Strong understanding of AWS security and IAM, including least-privilege design and secure cloud architecture. Experience designing and implementing automated CI/CD pipelines, ideally with GitLab CI/CD and/or GitHub Actions. Experience with AWS logging, monitoring, and observability, particularly CloudWatch and related services. Good working knowledge of serverless and event-driven AWS architectures, including services such as AWS Lambda. Experience operating and troubleshooting production cloud environments. Ability to work across the full engineering lifecycle, from solution design and architecture through hands-on implementation and operation. What you get:Salary range 14,175 - 26,325 PLN gross based on the employment contract. Annual bonus payment based on your performance. Dedicated training budget (training, certifications, conferences, diversified career paths etc.). Recharge Fridays (2 Fridays off per quarter available). Take time Program (up to 3 months of leave to use for any purpose). Vacation subsidy available. Flex Location (possibility to perform our work from different places in the world for a certain period of time). Take Time for Charity (additional paid leave of maximum 2 weeks to engage in the charity action of your choice). Private healthcare (LuxMed packages), group life insurance (UNUM) and Multisport. Stock share purchase additions. Yearly sales of company laptops and cars and many more! Apply directly and join us in shaping the future of healthcare. If you feel this offer suits a friend of yours, feel free to share it. Want to know what it’s like to be a part of Roche IT first-hand? Check out our blog! https://careers.roche.com/global/en/we-are-roche ….. The controller of your personal data is Roche Polska Sp. z o.o., ul. Domaniewska 28, 02-672 Warsaw. The data is processed for the purpose of recruitment. You have the right to access your data, rectify it, delete it, limit processing, transfer it and - if processing is based on your consent - withdraw this consent at any time. Contact the Data Protection Officer at: Ochrona.danych@roche.com. More information on the principles of processing your personal data by Roche at the link: https://www.roche.pl/pl/content/klauzula-informacyjna-rekrutacja-en.html Roche Polska sp. z o.o. operates in full compliance with the law and does not tolerate any violations. Roche Polska sp. z o.o. has implemented a Procedure for Reporting Violations of Law. If you
Verified and listed by ActiveJobs. Applications are made directly on Roche's own career page — we never sit in the middle.