At Engine by Starling, we are on a mission to find and work with leading banks all around the world who have the ambition to build rapid growth businesses, on our technology. Engine is Starling's software-as-a-service (SaaS) business, the technology that was built to power Starling Bank, and a year ago we split out as a separate business. Starling has seen exceptional growth and success, and a large part of that is down to the fact that we have built our own modern technology from the ground up. The Engine technology platform is now available to banks and financial institutions all around the world, enabling them to benefit from the innovative digital features, and efficient back-office processes that has helped achieve Starling's success.
🏢 About Engine by Starling
Our technologists are at the very heart of Engine and enjoy working in a fast-paced environment that is all about building things, creating new stuff, and disruptive technology that keeps us on the cutting edge of fintech. We operate a flat structure to empower you to make decisions regardless of what your primary responsibilities may be, innovation and collaboration will be at the core of everything you do. Help is never far away in our open culture, you will find support in your team and from across the business, we are in this together!
🎯 The Role
We're looking for a Senior Infrastructure Engineer to help us design, build and run the cloud foundations our first-in-class, cloud-native banking platform is deployed on — across multiple regions and cloud providers globally. You'll be an inquisitive engineer with an aptitude for finding clean and simple solutions to technical problems, passionate about building observable, reliable and secure systems that positively impact the wider engineering organisation.
✅ Key Responsibilities
Design, document, build and maintain scalable infrastructure on GCP
Ensure the performance and reliability of cloud environments whilst measuring cost-effectiveness
Embrace automation and be reluctant for manual implementation
Build systems with security by design as a core foundation
Ensure platform compliance with standards such as ISO 27001, SOC 2, PCI DSS and 3DS
Design and operate key and secret management on GCP — Cloud KMS, Cloud External Key Manager (EKM) and Secret Manager — including support for cryptographic key ceremonies
Rapidly diagnose and fix client-reported infrastructure issues while maintaining peak security and performance
Write clear technical documentation and host training sessions for the team
Demonstrate knowledge of new technologies and changes in the industry
Lead complex infrastructure projects from inception through to run, and shape the future capabilities of Engine — our approach, tooling, automation and architecture
Lead by example in your contributions, setting a high technical bar for others to aim for
Confident at bootstrapping Google Cloud Organisations, hardening with policies and structuring an enterprise’s resource hierarchy
Experience with Google Cloud Platform (GCP) services including GKE, Compute Engine, Network Connectivity Center, Cloud SQL, Identity and Access Management (IAM) and VPC Service Controls
Experience writing clean, modular Terraform code
Experience with service-oriented architecture using containers, distributed systems and immutable infrastructure
Experience with key and secret management on GCP — Cloud KMS, Cloud External Key Manager (EKM) and Secret Manager — including cryptographic key ceremonies
Experience designing hybrid connectivity from GCP to co-located Payment HSMs using Network Connectivity Center (NCC), Cloud VPN and Dedicated / Partner Interconnect
Experience with Workload Identity and Workload Identity Federation for keyless authentication of workloads and CI/CD
Experience with observability tooling — Cloud Monitoring, Cloud Logging, Cloud Trace, Managed Service for Prometheus and OpenTelemetry (we also use Grafana)
Experience setting up Google Workspace / Google Cloud Identity
Experience with automation using a scripting language like Python or Go
Experience implementing CI/CD pipelines
An understanding of RESTful API and event-driven concepts
Comfortable writing RFCs and ADRs which can be taken from design to implementation and into Production with documented runbooks and operating models
Please let Starling Bank know that you found this role at devopsprojectshq.com as a way to support us, so we can keep providing you with awesome DevOps jobs.
Never miss a job
Join 2,000+ DevOps developers getting weekly alerts for remote and US/EU roles, Kubernetes, AWS, Terraform, filtered for your stack.
🔒 Need an IP to whitelist?
Get a dedicated static EU outbound IP for Banks, payments, EHRs, APIs, AI.