Cloud Architect - Senior AWS

English: Fluent

Location: Remote

Term: 3-6 months

Working time: GMT +7

Role Summary

The Cloud Architect is the design authority and governance lead for the AWS multitenant platform of a Singapore financial advisory firm. This role owns the Landing Zone, Organisational Unit (OU) structure, guardrails, and modernisation roadmap. The architect provides strategic direction across infrastructure, security, observability, and cost governance, ensuring scalable and compliant foundations for containerised workloads, databases, and tenant onboarding.

Responsibilities

  • Landing Zone & Governance
    1. Design and implement AWS Control Tower / Landing Zone

Accelerator (LZA) with OUs, Service Control Policies (SCPs), Account Factory, and guardrails.

○ Establish and maintain the multi-tenant silo model (one account per tenant with dev/stg/prod environments).

○ Define and enforce tagging standards for cost visibility and compliance.

  • Migration & Modernization
    1. Architect migration strategies for compute (EC2 → ECS Fargate/EKS), databases (EC2 → RDS/Aurora), and storage (onprem/EC2 → S3/EFS).

○ Oversee blue/green deployment strategies for application cutovers.

○ Provide frameworks for future SSR refactoring (API-first and SPAready design).

  • Networking & Security
    1. Define networking architecture: VPC design, Transit Gateway, Route53, cross-account networking.

○ Establish security frameworks: IAM Identity Center, KMS, AWS Config, CloudTrail, GuardDuty, Security Hub, Inspector, Macie.

○ Align platform with security standards (CIS, NIST, ISO, PCI DSS if required).

  • Platform Standards & Oversight
    1. Provide reference architectures for CI/CD pipelines, observability, and cost governance.

○ Define observability standards (logs, metrics, traces, synthetic monitoring, budgets).

○ Review and approve technical solutions proposed by DevOps, FullStack, and QA teams.

○ Ensure operational readiness with runbooks and incident response frameworks.

○ Guide DevOps and development teams in AWS best practices.

Qualifications

  • 10–12 years of IT experience, 6+ years in AWS architecture roles.
  • Proven track record in multi-account AWS Org design, Control Tower, and LZA deployments.
  • Strong hands-on knowledge of ECS, RDS/Aurora, networking, IAM, KMS, and Secrets Manager.
  • Experience with cost optimisation and FinOps practices in AWS.

Boundaries

  • Does not write Infrastructure-as-Code (IaC) or application code (delegated to DevOps/Full-Stack).
  • Does not manage day-to-day operations (delegated to DevOps/QE).

Focuses on design, governance, and security and ensures all technical work aligns with the target architecture and compliance requirements.

Application Confirmation

You're applying for the role below:

Cloud Architect - Senior AWS

Location: Ho Chi Minh City

Contract Details: Contract

Submit Date: 2025-10-13

No CV uploaded

About the job

Location Ho Chi Minh City
Created On 2025-10-10
Working Model WFH
Job Level Senior