Bastion
Financial Infrastructure
InfrastructureEngineer
Neural analysis suggests this role is
optimal for Mid+ candidates.
“Infrastructure Engineer at Bastion. Skills: AWS, Terraform, Kubernetes, CI/CD, observability. Ramp on AWS architecture, Terraform patterns, Kubernetes setup, CI/CD pipelines, and observability stack. Ship a small infrastructure improvement: Terraform module refactor, monitoring enhancement, or CI/CD optimization”
What You'll Achieve.
Multiple safe infrastructure changes deployed with verification; You understand our core infrastructure patterns and can navigate Terraform, K8s, and AWS resources; Updated documentation and/or infrastructure-as-code improvements that help the team; A delivered infrastructure improvement that enhances reliability, reduces cost, or improves developer velocity; You're a go-to person for your infrastructure domain; A multi-sprint infrastructure delivery that improves system-wide reliability, security, or developer experience; Clear before/after improvements in deployment speed, cost efficiency, or operational stability; Patterns and tooling that enable engineers to ship faster and safer
Industry & Context.
pragmatic tradeoffs on reliability, cost, and regulatory requirements
US remote, office in New York City
What They're Looking For.
Must Have
AWS architecture, Terraform patterns, Kubernetes setup, CI/CD pipelines, observability stack
Nice to Have
Go, TypeScript/Node.js, Rust, ECS, EKS, Lambda, EC2, GitHub Actions, container registries, automated testing and deployment pipelines, Postgres (RDS), Redis, Kafka, Snowflake, Temporal, AWS Nitro Enclaves, IAM policies, secrets management, Datadog, Grafana, Sentry, CloudWatch, Incident.io
What You'll Do.
Ramp on AWS architecture
and observability stack
Ship a small infrastructure improvement: Terraform module refactor
monitoring enhancement
or CI/CD optimization
or documentation for the infrastructure areas you touch
Take ownership of an infrastructure area: CI/CD pipelines
or AWS security/networking
Lead a medium-scope project: implementing a reusable Terraform module
right-sizing service resources
or improving deployment reliability
Strengthen system reliability with better metrics
and failure recovery mechanisms
Lead a platform-wide initiative: single immutable image pipeline
infrastructure standardization
database performance optimization
or security hardening
Shape infrastructure direction with design docs
and mentoring engineering teams
Partner with engineering
and compliance teams to make pragmatic tradeoffs on reliability
and regulatory requirements
Building reusable Terraform modules that standardize service deployment patterns across dev
Implementing single immutable image pipelines with built-in security scanning and promotion workflows
Right-sizing Kubernetes workloads and autoscaling policies to reduce cost while maintaining reliability
Designing and implementing database monitoring and performance optimization strategies
Hardening AWS infrastructure with security best practices: IAM policies
Building observability infrastructure that gives engineers fast feedback on system health and performance
Improving CI/CD reliability and speed through better caching
How You'll Work.
Team & Collaboration
Partner with engineering, security, and compliance teams
Communication Scope
mentoring engineering teams
Process & Methodology
Lead a medium-scope project, Lead a platform-wide initiative, design docs, RFC proposals
Full Job Description
ABOUT BASTION Bastion builds regulated financial infrastructure for modern businesses. Bastion's full stack product suite covers stablecoin issuance, custodial wallet infrastructure, and global asset conversion rails, with the flexibility to deploy individual capabilities or combine them end-to-end. Bastion's regulated foundation underpins a compliance-first approach to risk management, ensuring the integrity and security of all financial activity within its systems. Bastion holds the appropriate licenses for its own operations, but can also act as a service provider, offering compliance and financial operations support under our customers’ licenses. WORK TO BE DONE Instead of a list of requirements, we want to give you a directional look into the first 30, 90, and 180 days on the job. We are a startup, so the pace is fast and the specific work will change. You need to be okay with that. If you think this is something you can handle, we will be excited to speak with you. We are open to US remote and have an office in New York City. FIRST 30 DAYS: LEARN THE INFRASTRUCTURE, SHIP CONFIDENTLY - Ramp on AWS architecture, Terraform patterns, Kubernetes setup, CI/CD pipelines, and observability stack - Ship a small infrastructure improvement: Terraform module refactor, monitoring enhancement, or CI/CD optimization - Add runbooks, alerts, or documentation for the infrastructure areas you touch - Outcomes - Multiple safe infrastructure changes deployed with verification - You understand our core infrastructure patterns and can navigate Terraform, K8s, and AWS resources - Updated documentation and/or infrastructure-as-code improvements that help the team BY 90 DAYS: OWN AN INFRASTRUCTURE DOMAIN AND RAISE THE BAR - Take ownership of an infrastructure area: CI/CD pipelines, observability stack, Kubernetes platform, or AWS security/networking - Lead a medium-scope project: implementing a reusable Terraform module, right-sizing service resources, or improving deployment reliabili
Applying for this Infrastructure Engineer role?
Most applicants get filtered before a human reads their resume. See if yours makes the cut.
How to Apply on Ashby
- Ashby is a fast modern ATS — most applications take under 3 minutes.
- The resume parser is strong; verify parsed experience dates and job titles.
- Custom screening questions are often scored algorithmically — answer completely.
- Location field affects geo-based screening; use your actual metro area.
ANONYMOUS · UNFILTERED
What do employees actually say about Bastion?
Real rants from real employees. Read before you apply.