
Lead Platform Infrastructure Engineer
Job description
Lead Platform Infrastructure Engineer at Stuut Ai.
About the role
You will define and enforce the foundational architecture that powers Stuut's platform across global deployments. You will ensure that the infrastructure remains secure, observable, and reliable as we serve customers in regulated industries. You will partner closely with application engineers to translate product requirements into robust infrastructure capabilities. You will design isolated environments that meet strict data residency and sovereignty mandates for demanding enterprise clients. You will establish the standards and tooling that allow the platform to scale without sacrificing speed or stability. You will evaluate and integrate with external partners while maintaining clear accountability for Stuut's technical direction. You will mentor engineers and contribute directly to production infrastructure code as the platform team grows.
Key facts
What you'll do
- Own the end-to-end platform architecture for Stuut's multi-cloud strategy, defining guardrails and patterns for AWS, Azure, and future sovereign environments.
- Design and implement isolated data planes and regional deployments that satisfy data residency, encryption, and sovereignty requirements for enterprise and regulated customers.
- Build and maintain reusable Terraform modules, CI/CD pipelines, policy frameworks, and internal tooling to make environment provisioning repeatable, secure, and observable.
- Establish and enforce reliability standards for availability targets, observability dashboards, incident response playbooks, capacity planning, and disaster recovery procedures.
- Drive security and compliance initiatives by implementing identity and access management, networking controls, key management, audit logging, and data protection mechanisms.
- Evolve the multi-tenant architecture to enforce strict tenant boundaries, regional data isolation, and secure control-plane and data-plane interfaces across cloud providers.
- Lead technical assessments and execution for AWS-to-Azure and broader multi-cloud initiatives, including service selection, migration planning, testing, and production cutover.
- Create paved paths, detailed documentation, and self-service infrastructure tooling that enable product engineers to deploy quickly without compromising reliability or governance.
- Evaluate and manage relationships with cloud providers, security vendors, and implementation partners while retaining architectural ownership and accountability for infrastructure decisions.
- Recruit, mentor, and develop a high-performing platform engineering team by setting expectations, providing feedback, and enabling career growth.
Requirements
- Bring 7+ years of hands-on platform engineering, infrastructure, SRE, or cloud architecture experience with significant technical ownership in a high-growth product environment.
- Demonstrate deep, practical experience operating production systems on AWS, including networking, compute, storage, and managed services across multiple accounts or organizational units.
- Show strong expertise with Azure infrastructure, networking, identity, and managed services, including the ability to design and operate hybrid or multi-cloud environments.
- Exhibit advanced proficiency with Terraform or similar infrastructure-as-code frameworks, with a track record of building and operating reusable modules delivered through robust CI/CD pipelines.
- Have designed, operated, and scaled container-based or Kubernetes platforms, managing databases, object storage, queues, caches, and production networking at significant scale.
- Possess a strong understanding of multi-tenant SaaS architecture, including tenant isolation strategies, regional data boundaries, encryption practices, access control models, and failure domain analysis.
- Have hands-on experience building secure cloud foundations, including IAM frameworks, secrets and key management, private networking, centralized logging, vulnerability management, and policy enforcement mechanisms.
- Demonstrate experience supporting enterprise security and compliance programs, translating customer requirements, regulatory expectations, and audit findings into practical technical controls and evidence.
- Communicate effectively with engineers, executives, customers, auditors, and external partners, translating complex infrastructure concepts into clear, actionable information.
- Thrive in fast-paced, early-stage environments where you enjoy building systems and processes from scratch with limited precedent and evolving requirements.
- Take ownership of ambiguous problems, make pragmatic tradeoffs between speed and durability, and maintain a bias toward building long-term, maintainable solutions.
- Be comfortable diving into production incidents and debugging complex infrastructure issues while also defining multi-year platform roadmaps.
Nice to have
- Experience deploying workloads across multiple sovereign regions, including environments with strict data residency mandates such as the UAE.
- Familiarity with regulated industries like financial services, where compliance, auditability, and risk management are central to technology decisions.
- Background working with enterprise customers that have complex networking, identity, and data governance requirements.
- Knowledge of emerging control-plane and data-plane patterns for multi-tenant systems, including API gateways, service meshes, and secure data access layers.
- Experience contributing to open-source infrastructure projects or building internal platforms that are shared across engineering organizations.
Practical notes
This role is based in San Francisco and requires in-person presence during standard business hours. Travel may be required for team offsites, customer visits, or industry events. Employment is full-time, and the position reports to the engineering leadership team. Candidates must be authorized to work in the United States without sponsorship for this role.