Principal Platform Engineer

Bankjoy
Summary
Join Bankjoy, a FinTech startup, as a Principal Platform Engineer (Azure) to lead the evolution of our Microsoft Azure infrastructure. This hands-on role requires expertise in DevOps, cloud security, and platform tooling development. You will own the architecture and roadmap for Bankjoy’s Azure cloud infrastructure, focusing on scalability, security, and developer efficiency. Responsibilities include designing and building internal tools, hardening cloud security, maintaining IaC, optimizing infrastructure costs, and managing Azure networking components. The ideal candidate possesses 10+ years of experience in cloud/platform engineering, with a strong background in Azure and C#/.NET Core. Competitive compensation, stock options, and comprehensive benefits are offered.
Requirements
- 10+ years in cloud/platform engineering, DevOps, or SRE roles, with 3+ years focused on Azure
- Proven experience building internal tools and services using C#/.NET Core (or equivalent) to support platform use cases (e.g., observability, automation, security analysis)
- Hands-on expertise with Kubernetes, containerized workloads, and cloud-native patterns
- Deep understanding of Azure security services: IAM, Key Vault, Defender for Cloud, encryption-in-transit/at-rest, and access control
- Proficiency in Terraform, Bicep, or other declarative IaC tooling
- Strong command of Azure networking concepts (VNets, firewalls, Private Endpoints, hybrid networking)
- Familiarity with observability tooling (Azure Monitor, Prometheus, Grafana, DataDog, or similar)
- Working hours must align with Central or Eastern Time Zones to ensure effective collaboration with our core engineering and operations teams
- Solid scripting skills (PowerShell, Bash, or Python)
- Clear communication skills and a strong documentation mindset
Responsibilities
- Own the architecture and roadmap for Bankjoy’s Azure cloud infrastructure, with a focus on scalability, security, and developer efficiency
- Design and build internal tools or services (e.g., bot detection, threat monitoring, configuration validators, internal dashboards), using C#/.NET Core or other languages
- Harden our cloud security posture with proactive threat modeling, security scanning, IAM policies, encryption strategies, network segmentation, and regulatory compliance (e.g., S/DAST, SOC 2, PCI, OWASP)
- Maintain and evolve our IaC stack (Terraform, Bicep) to deliver secure, repeatable, and auditable infrastructure
- Optimize infrastructure costs and performance across compute, storage, and networking layers
- Manage Azure networking components like VNets, route tables, NSGs, and hybrid cloud interconnectivity
- Lead infrastructure incident response, contributing to postmortems and mitigation strategies
- Document infrastructure changes and architectural decisions to support internal knowledge-sharing and external audits
- Support performance benchmarking and reliability testing for Kubernetes workloads and managed Azure services
- Apply structured critical thinking to evaluate trade-offs, identify blind spots, and make informed decisions under uncertainty
- Balance complex priorities across long-term infrastructure initiatives, real-time operational issues, and tactical internal requests
- Communicate clearly and constructively across engineering and leadership—whether writing architectural diagrams, presenting security recommendations, or contributing to postmortems
- Collaborate cross-functionally to ensure cloud infrastructure supports business goals, development velocity, and compliance outcomes
Preferred Qualifications
Experience with regulatory environments (e.g., NIST, SOC 2, FFIEC, PCI)
Benefits
- Competitive compensation + stock options at a well-funded startup
- Comprehensive healthcare (100% coverage for you, 50% for US families, 100% for Canadian families)
- 401(k) / RRSP with 4% company matching (USA employees)
- Generous time off: 3–5 weeks PTO, 5 health days, 15 holidays + end-of-year shutdown
- Performance-based bonuses (Canada and USA)
- Remote-first culture (Canada & USA)
- A fast-paced and collaborative environment
- Competitive compensation
- Stock options at a well-funded startup
- 100% medical, dental and vision coverage for you on our base plans
- 50% coverage for families in the US & 100% coverage for families in Canada
- 401(k) plan with 4% company matching (US Employees)
- 3-5 weeks PTO depending on tenure
- 5 health days
- 15 holidays
- End of year shutdown
- Performance-based bonuses (US & Canadian Employees)
- Remote first culture