Bastion enables financial institutions and enterprises to issue regulated stablecoins, generate revenue on reserves, and expand their ecosystems. Bastion’s platform combines stablecoin issuance, secure custody, and seamless orchestration for cross-border transfers, on/off-ramps, and stablecoin conversions. With Bastion’s platform and APIs, businesses can create and scale their stablecoin network, while optimizing revenue, compliance, and control.
You can check out our Guide for Candidates here to learn more about our work.
Instead of a list of requirements, we want to give you a directional look into the first 30, 90, and 180 days on the job.
We are a startup, so the pace is fast and the specific work will change. You need to be okay with that.
If you think this is something you can handle, we will be excited to speak with you.
We are open to US remote and have an office in New York City.
Ramp on AWS architecture, Terraform patterns, Kubernetes setup, CI/CD pipelines, and observability stack
Ship a small infrastructure improvement: Terraform module refactor, monitoring enhancement, or CI/CD optimization
Add runbooks, alerts, or documentation for the infrastructure areas you touch
Outcomes
Multiple safe infrastructure changes deployed with verification
You understand our core infrastructure patterns and can navigate Terraform, K8s, and AWS resources
Updated documentation and/or infrastructure-as-code improvements that help the team
Take ownership of an infrastructure area: CI/CD pipelines, observability stack, Kubernetes platform, or AWS security/networking
Lead a medium-scope project: implementing a reusable Terraform module, right-sizing service resources, or improving deployment reliability
Strengthen system reliability with better metrics, alerts, autoscaling policies, and failure recovery mechanisms
Outcomes
A delivered infrastructure improvement that enhances reliability, reduces cost, or improves developer velocity
You're a go-to person for your infrastructure domain
Lead a platform-wide initiative: single immutable image pipeline, infrastructure standardization, database performance optimization, or security hardening
Shape infrastructure direction with design docs, RFC proposals, and mentoring engineering teams
Partner with engineering, security, and compliance teams to make pragmatic tradeoffs on reliability, cost, and regulatory requirements
Outcomes
A multi-sprint infrastructure delivery that improves system-wide reliability, security, or developer experience
Clear before/after improvements in deployment speed, cost efficiency, or operational stability
Patterns and tooling that enable engineers to ship faster and safer
Building reusable Terraform modules that standardize service deployment patterns across dev, sandbox, and prod
Implementing single immutable image pipelines with built-in security scanning and promotion workflows
Right-sizing Kubernetes workloads and autoscaling policies to reduce cost while maintaining reliability
Designing and implementing database monitoring and performance optimization strategies
Hardening AWS infrastructure with security best practices: IAM policies, network segmentation, secrets management, and audit logging
Building observability infrastructure that gives engineers fast feedback on system health and performance
Improving CI/CD reliability and speed through better caching, parallelization, and failure handling
Languages: Go and TypeScript/Node.js; some services in Rust as needed
Infrastructure-as-Code: Terraform
Cloud & Compute: AWS (ECS, EKS, Lambda, EC2), Kubernetes, Docker
CI/CD: GitHub Actions, container registries, automated testing and deployment pipelines
Data: Postgres (RDS), Redis, Kafka, Snowflake
Workflow Management: Temporal
Security: AWS Nitro Enclaves for hardware-backed key isolation, IAM policies, secrets management
Observability: Datadog, Grafana, Sentry, CloudWatch
Incident Management: Incident.io
Bastion provides equal employment opportunities to all employees and applicants for employment and prohibits discrimination and harassment of any type without regard to race, color, religion, age, sex, national origin, disability status, genetics, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state or local laws. This policy applies to all terms and conditions of employment, including recruiting, hiring, and placement. Bastion participates in E-Verify to authorize eligibility of employment in the United States.
Please mention you found this job on AI Jobs. It helps us get more startups to hire on our site. Thanks and good luck!
Understand the required skills and qualifications, anticipate the questions you may be asked, and study well-prepared answers using our sample responses.
Infrastructure Engineer Q&A's