Infrastructure Engineer
Listed on 2025-12-12
-
IT/Tech
Systems Engineer, Cloud Computing, Cybersecurity, SRE/Site Reliability
Join to apply for the Infrastructure Engineer role at Bastion
This range is provided by Bastion. Your actual pay will be based on your skills and experience — talk with your recruiter to learn more.
Base pay range$/yr - $/yr
About Bastion
Bastion enables financial institutions and enterprises to issue regulated stable coins, generate revenue on reserves, and expand their ecosystems. Bastion’s platform combines stablecoin issuance, secure custody, and seamless orchestration for cross-border transfers, on/off-ramps, and stablecoin conversions. With Bastion’s platform and APIs, businesses can create and scale their stablecoin network, while optimizing revenue, compliance, and control.
You can check out our Guide for Candidates here to learn more about our work.
Work to Be DoneInstead of a list of requirements, we want to give you a directional look into the first 30, 90, and 180 days on the job.
We are a startup, so the pace is fast and the specific work will change. You need to be okay with that.
If you think this is something you can handle, we will be excited to speak with you.
We are open to US remote and have an office in New York City.
First 30 days:
Learn the infrastructure, ship confidently
- Ramp on AWS architecture, Terraform patterns, Kubernetes setup, CI/CD pipelines, and observability stack
- Ship a small infrastructure improvement:
Terraform module refactor, monitoring enhancement, or CI/CD optimization - Add runbooks, alerts, or documentation for the infrastructure areas you touch
Outcomes
- Multiple safe infrastructure changes deployed with verification
- You understand our core infrastructure patterns and can navigate Terraform, K8s, and AWS resources
- Updated documentation and/or infrastructure-as-code improvements that help the team
By 90 days:
Own an infrastructure domain and raise the bar
- Take ownership of an infrastructure area: CI/CD pipelines, observability stack, Kubernetes platform, or AWS security/networking
- Lead a medium-scope project: implementing a reusable Terraform module, right-sizing service resources, or improving deployment reliability
- Strengthen system reliability with better metrics, alerts, autoscaling policies, and failure recovery mechanisms
Outcomes
- A delivered infrastructure improvement that enhances reliability, reduces cost, or improves developer velocity
- You're a go-to person for your infrastructure domain
By 180 days:
Drive platform-wide impact
- Lead a platform-wide initiative: single immutable image pipeline, infrastructure standardization, database performance optimization, or security hardening
- Shape infrastructure direction with design docs, RFC proposals, and mentoring engineering teams
- Partner with engineering, security, and compliance teams to make pragmatic tradeoffs on reliability, cost, and regulatory requirements
Outcomes
- A multi-sprint infrastructure delivery that improves system-wide reliability, security, or developer experience
- Clear before/after improvements in deployment speed, cost efficiency, or operational stability
- Patterns and tooling that enable engineers to ship faster and safer
- Building reusable Terraform modules that standardize service deployment patterns across dev, sandbox, and prod
- Implementing single immutable image pipelines with built-in security scanning and promotion workflows
- Right-sizing Kubernetes workloads and autoscaling policies to reduce cost while maintaining reliability
- Designing and implementing database monitoring and performance optimization strategies
- Hardening AWS infrastructure with security best practices: IAM policies, network segmentation, secrets management, and audit logging
- Building observability infrastructure that gives engineers fast feedback on system health and performance
- Improving CI/CD reliability and speed through better caching, parallelization, and failure handling
- Languages:
Go and Type Script/Node.js; some services in Rust as needed - Infrastructure-as-Code:
Terraform - Cloud & Compute: AWS (ECS, EKS, Lambda, EC2), Kubernetes, Docker
- CI/CD:
Git Hub Actions, container registries, automated testing and deployment pipelines - Data:
Postgres (RDS), Redis, Kafka, Snowflake - Workflow Management:
Tempora…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).