Experience level filter
Job type filter
Client history filter
Project length filter
Hours per week filter
Posted 2 weeks ago
  • Hourly: $60.00 - $85.00
  • Intermediate
  • Est. time: 3 to 6 months, 30+ hrs/week

We are a corporate finance consulting firm that has recently launched an AI implementation business with a handful of clients and are looking to have an AWS expert on board to support managing custom application deployments.

  • Fixed price
  • Expert
  • Est. budget: $1,500.00

We're a two-person company building an operations platform for hospice agencies. We handle PHI, so we're a HIPAA Business Associate. Our AWS BAA is executed. We have no engineer on staff -- infrastructure is built with AI coding tools, which is exactly why we want an experienced human on the security-critical parts. We need someone who has actually run HIPAA workloads on AWS, not someone who has read about it. THE WORKLOAD One Next.js web service, one worker, one PostgreSQL database (~10 GB), about a dozen scheduled jobs, plus a smaller demo environment. Low traffic. Containerised, Dockerfile exists. Currently on DigitalOcean; moving to AWS because DigitalOcean is not HIPAA-eligible. MILESTONE 1 -- Terraform baseline ($1,000) Write the infrastructure as code: VPC and networking, ECS Fargate services, RDS PostgreSQL (encrypted, private, Multi-AZ, point-in-time recovery), Secrets Manager, KMS, ALB, EventBridge scheduling, CloudWatch with retention, AWS Config with the HIPAA conformance pack, and least-privilege IAM. We want code we can read and re-apply, not a console walkthrough. MILESTONE 2 -- Pre-launch review ($500) After we've deployed and seeded it with synthetic data, review the running configuration against a checklist and tell us what's wrong. Read-only. No patient data will exist at any point during your engagement. WORKING STYLE We'll be responsive and specific. You won't be chasing us for answers. THREE SCREENING QUESTIONS -- please answer in your proposal 1. On RDS PostgreSQL, what happens to publicly_accessible if you create an instance without specifying a DB subnet group, and why does that matter for a HIPAA workload? 2. We have a running RDS instance that was created without encryption at rest. What's involved in fixing that? 3. We were considering AWS App Runner to keep things simple. Is that available to us? Why or why not? Short answers are fine. We're checking for specific knowledge, not essays.

Posted 2 weeks ago
  • Hourly: $75.00 - $100.00
  • Expert
  • Est. time: More than 6 months, Less than 30 hrs/week

# Fractional / On-Demand AWS DevOps Engineer We are an early-stage healthcare AI company preparing to launch with live beta sites. Our AWS platform was originally built by a larger development team. We are now operating with a smaller team, and our DevOps engineer recently accepted another position. We need an experienced AWS DevOps engineer who can step in on an hourly, on-demand basis to help us simplify, stabilize and manage the environment. Our immediate priorities are: * Analyze and significantly reduce our current AWS costs. * Safely place unused development and production services into an on-demand or “sleep when idle” configuration. * Preserve a reliable, documented process for bringing production back to an always-on configuration as beta usage grows. * Create a clean AWS prototyping/sandbox environment that closely mirrors our development architecture. * Improve CI/CD, deployment consistency, monitoring, rollback and environment management. * Identify unused or legacy infrastructure and guide the founder on what can safely be stopped, consolidated or removed. * Document the environment and provide clear, practical recommendations without creating unnecessary complexity. Our AWS environment currently includes multiple AWS accounts and services such as ECS/Fargate, ECR, Aurora Serverless v2, Kinesis, Lambda, EventBridge, ALB, S3, CloudFront, Cognito, VPC/NAT, CloudWatch, KMS, Secrets Manager and AWS Organizations. Infrastructure is managed primarily through AWS CDK, with GitHub-based repositories and CI/CD workflows. We are looking for someone who: * Has strong hands-on AWS architecture, DevOps and FinOps experience. * Can quickly understand an existing multi-account AWS environment. * Is comfortable working with containerized services, serverless systems, networking, databases and CI/CD. * Can implement safe sleep/wake, scaling and cost-control strategies without compromising data or security. * Can help establish a practical sandbox-to-development-to-production promotion process. * Communicates clearly with a technical founder and can explain risk, cost and tradeoffs in plain language. * Works quickly and efficiently, with good judgment about when to make a small fix versus recommend a larger architectural change. * Has experience with healthcare, HIPAA-sensitive systems or security-conscious environments as a plus. This is not currently a full-time role. We need someone available hourly for an initial assessment and cleanup, followed by ongoing on-demand support as we prepare to bring beta practices live. The engagement could grow as usage and infrastructure needs increase. Please include a brief description of similar AWS environments you have managed, your hourly rate, availability, and an example of how you have reduced AWS costs while preserving the ability to scale back up quickly.

  • Hourly: $40.00 - $70.00
  • Intermediate
  • Est. time: 1 to 3 months, Less than 30 hrs/week

We are a husband-and-wife orthodontic practice (Ascend Orthodontics) based in Colorado, looking for an experienced AWS DevOps engineer to deploy our existing website and establish a fully HIPAA-compliant cloud infrastructure. The codebase is currently maintained across a local machine and a GitHub repository. The site has been built using Claude Code and is ready for deployment. We are not looking for any front-end development work — although oversite on current code would be appreciated. We need someone to take it across the finish line and set it up correctly on AWS. What we need: -Pull the existing codebase from GitHub and deploy it to AWS (EC2, Elastic Beanstalk, or equivalent — open to your recommendation based on our stack) -Configure a secure, production-ready environment including SSL/TLS certificates and custom domain setup -Set up HIPAA-compliant infrastructure including IAM roles and least-privilege access controls, encryption at rest and in transit, VPC network isolation, CloudTrail audit logging, and S3 bucket security policies -Ensure AWS services used are covered under a Business Associate Agreement (BAA) — we will execute the BAA with AWS directly, but the developer must be familiar with which services qualify -Configure basic monitoring and alerting via AWS CloudWatch -Deliver clean documentation of the architecture so we can maintain and hand off as needed What we're looking for in a candidate: -AWS Certified Solutions Architect (Associate or Professional) strongly preferred -Demonstrated experience deploying HIPAA-compliant infrastructure — please describe a specific healthcare project in your proposal -Comfortable working from an existing GitHub repo with minimal handholding -Strong communication and ability to explain compliance decisions in plain language -U.S.-based or U.S. time zone preferred given the compliance sensitivity Project type: Fixed scope, one-time engagement with potential for ongoing support To apply: Please briefly describe a HIPAA or healthcare-related AWS project you've completed, the services you used, and your approach to compliance documentation.

Posted 2 weeks ago
  • Fixed price
  • Expert
  • Est. budget: $150.00

I have 2 web that are ready to be published, I want someone to help me publish them in AWS.

Posted 4 weeks ago
  • Hourly
  • Expert
  • Est. time: 3 to 6 months, Less than 30 hrs/week

Scope of Work Lead an initial 2–3 hour walkthrough/handoff session to learn the client's existing key rotation process Rotate approximately 10 AWS keys/credentials, on a cadence ranging from every 6 to 36 months Perform rotations during off-hours to avoid service disruption Use OnePassword for secure credential management Generate new keys, update AWS configuration, and trigger environment rebuilds as part of the rotation process Work within an environment that stores PII (SSNs, birth dates) in production — strict attention to security and compliance required Environment & Tech Stack Infrastructure as Code: Terraform, Terragrunt Backend: Python Frontend: React CI/CD: GitHub Actions AWS environments: Dev, Stage, Build (isolated via Terragrunt) Credential management: OnePassword Ideal Candidate Strong hands-on experience with AWS IAM, key/credential rotation, and secrets management Solid Terraform/Terragrunt experience across multi-environment AWS setups Comfortable working with CI/CD pipelines (GitHub Actions) Experience handling sensitive/PII data with appropriate security practices Available to work off-hours for rotation windows Prior experience in high-security or government-adjacent environments is a plus Reliable communicator who can work independently after an initial handoff Engagement Details Type: Fractional / part-time, starting with a defined initial engagement Initial commitment: 2–3 hours for onboarding/walkthrough Ongoing: Potential for a monthly retainer for continued key rotation and DevOps support Schedule: Rotation work performed off-hours; timing to be coordinated with the client

  • Hourly: $90.00 - $140.00
  • Expert
  • Est. time: More than 6 months, Less than 30 hrs/week

CONTACTING OUTSIDE OF UPWORK WILL RESULT IN AUTOMATIC DISQUALIFICATION Description: We're an agency staffing infrastructure and MLOps talent across a portfolio of active platform builds for confidential enterprise clients. Work includes provisioning environments inside client-owned cloud infrastructure under their security review process, and building CI/CD and observability for both application and production ML systems. Immediate need — looking to onboard within the next 5-7 business days. This role is typically front-loaded (environment setup at kickoff) then lighter mid-build, ramping again ahead of go-live — hours will flex accordingly rather than staying flat throughout. What you'll do: Stand up and manage CI/CD pipelines for both application and ML model deployment Implement model registry and shadow/champion-challenger release patterns with automated rollback Build observability — logging, monitoring, alerting — across application and ML layers Provision and manage environments within client-owned cloud infrastructure per their security review requirements Support drift monitoring and retraining triggers for production ML systems Required: Strong DevOps/infrastructure-as-code background (Terraform, CloudFormation, or similar) CI/CD pipeline design experience, including for ML model deployment specifically (MLOps) Cloud platform experience (AWS, GCP, or Azure), including provisioning within a client-owned/managed environment Available to start within the next week Nice-to-have: ML monitoring/observability tooling (drift detection, model registries such as MLflow), security-review or compliance-adjacent infrastructure experience

  • Hourly: $90.00 - $140.00
  • Expert
  • Est. time: More than 6 months, Less than 30 hrs/week

CONTACTING OUTSIDE OF UPWORK WILL RESULT IN AUTOMATIC DISQUALIFICATION Description: We're an agency staffing infrastructure and MLOps talent across a portfolio of active platform builds for confidential enterprise clients. Work includes provisioning environments inside client-owned cloud infrastructure under their security review process, and building CI/CD and observability for both application and production ML systems. Immediate need — looking to onboard within the next 5-7 business days. This role is typically front-loaded (environment setup at kickoff) then lighter mid-build, ramping again ahead of go-live — hours will flex accordingly rather than staying flat throughout. What you'll do: Stand up and manage CI/CD pipelines for both application and ML model deployment Implement model registry and shadow/champion-challenger release patterns with automated rollback Build observability — logging, monitoring, alerting — across application and ML layers Provision and manage environments within client-owned cloud infrastructure per their security review requirements Support drift monitoring and retraining triggers for production ML systems Required: Strong DevOps/infrastructure-as-code background (Terraform, CloudFormation, or similar) CI/CD pipeline design experience, including for ML model deployment specifically (MLOps) Cloud platform experience (AWS, GCP, or Azure), including provisioning within a client-owned/managed environment Available to start within the next week Nice-to-have: ML monitoring/observability tooling (drift detection, model registries such as MLflow), security-review or compliance-adjacent infrastructure experience

  • Hourly
  • Expert
  • Est. time: 3 to 6 months, 30+ hrs/week

I run a financial software company where we offer a REST API (.NET SDK with a REST API layer in AWS) for financial calculations serving enterprise customers. We're planning infrastructure and reliability improvements and need an experienced AWS DevOps or SRE to advise on best practice and explain the trade-offs. This starts as paid hourly advisory, with a potential to grow into hands-on implementation if it makes sense once we've scoped the work. A few examples of topics to work through would be: - Separating test/sandbox from production so heavy testing doesn't impact live customers - Multi-region deployment (adding UK/EU for latency and performance) - Reducing API response times — infrastructure vs. application-level levers - Moving logging/usage data off our production database into a dedicated store - Health-check / uptime endpoint design for continuous monitoring - Backup and redundancy for high availability and disaster recovery - Doing all of this in a way that supports SOC 2 compliance

Jobs Per Page: