Senior Platform Engineer
Listed on 2026-08-03
-
IT/Tech
Cybersecurity, Systems Engineer, Cloud Computing: Infrastructure & Operations
Company:
Gerber Collision & Glass
#
Great Teams Don’t Happen by
* Accident
*
Built with Intent. Driven by YOU.
At the Gerber Collision & Glass
, our teams work to provide the elite infrastructure and supportive environment you need to Be the Best and outperform at every touchpoint in collision and glass services. As we continue to grow and lead the industry, we ensure you have the resources and the team behind you to move your career forward.
Our Commitment:
The Boyd Group welcomes unique talents from all backgrounds and characteristics. We act with integrity and appreciate the diverse perspectives that make our "Greater Team" exceptional. Qualified individuals, including those with disabilities and Protected Veterans, are encouraged to apply.
Job DescriptionThe Platform Engineer serves as a senior technical resource responsible for strengthening cloud security foundations across AWS and Azure through preventive controls, secure network architecture, and CI/CD enforcement. This role is highly hands-on and designs and implements security platforms in collaboration with Infrastructure Architecture, translating agreed designs and roadmaps into deployable technical standards, automation (Terraform, Python/Power Shell), and operationalized platform capabilities.
Limited on-call expectations focused on escalation for platform-level issues.
Cloud Foundations
- Build and evolve cloud foundations in AWS Control Tower, including baseline standards for account structure, preventive cloud controls, and secure-by-default patterns.
- Reduce privilege escalation paths by defining and enforcing least-privilege patterns, privileged role boundaries, and secure administrative workflows for cloud operations and automation.
- Improve service/API security through standard patterns for workload/service identities, credential handling, and secure service-to-service access (in partnership with application and platform teams).
- Reduce lateral movement risk by implementing cloud network security architecture patterns (segmentation, controlled east-west paths, and a centralized egress/inspection approach where appropriate).
- Collaborate with the Infrastructure Architect on target designs and multi-quarter roadmaps; implement approved designs through standards, automation, and platform changes.
- Design and implement security-as-code and policy-as-code enforcement in Git Lab CI/CD for infrastructure and access changes, with a focus on preventing high-risk IAM and network patterns from being deployed.
- Standardize secure delivery patterns through reusable pipeline templates/components and Terraform module conventions (PR-based change control, reviewable outputs).
- Secure CI/CD automation identities and secrets usage patterns in pipelines (permissions, separation of duties, and safe credential handling).
- Drive adoption across engineering teams by providing clear patterns, documentation, and reference implementations.
- Design, implement, and own Cyber Ark across PAM, EPM, and Secrets Hub: onboarding patterns, access models, rotation workflows, elevation policies, privileged workflows, and platform automation.
- Maintain and improve the current MFA/SSO platform as required, and support rationalization/consolidation toward the target platform strategy over time.
- Provide standardized privileged access and secrets usage patterns that directly support cloud and CI/CD security objectives (automation identities, break-glass approach, service credential patterns).
- Establish continuous controls monitoring outcomes for cloud and platform controls (control validation, exception identification, and standardized reporting outputs).
- Provide and maintain security configurations and audit-ready outputs for control reviews (cloud controls, CI/CD enforcement controls, privileged access controls), coordinating with control owners as needed.
- Translate security requirements into deployable technical standards implemented through established change processes.
- Maintain documentation for platform designs, standards, CI/CD enforcement,…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).