{bc}
icims

Senior Cloud Engineer

Insight Global
Atlanta, USA
Full-time
Senior · 5+ years experience
Onsite
Discovered Today
AWSAzureGCPVPCVNetPrivateLink
Free

Job Fit Check

Base Career helps you apply smarter for this job.

?%
Ready to Scan

Key skills for this role

AWSAzureGCP
Smart Apply

Full Job Posting

Key responsibilities

  • Own the cloud foundation — design and maintain the account structure, organizational hierarchy, and baseline configuration that give the platform a secure, governed, and scalable base. Make it straightforward to spin up new environments consistently and safely. • Design and own the network architecture — the topology connecting services, clients, and partner environments. Ensure the right isolation boundaries between tenants, private connectivity where required, and a design that supports multi-region and multi-cloud requirements without becoming a bottleneck. • Own cloud-level identity and access — how services authenticate to cloud resources, how teams get exactly the access they need and no more, and how enterprise clients federate their identity into the platform securely. • Design and validate the multi-region and resilience strategy — deployment topology, failover behaviour, and recovery procedures. RTO and RPO targets should be tested commitments, not aspirations. • Own data residency enforcement at the infrastructure layer — make it provable and auditable that a client's data stays within their agreed regions through controls built into the infrastructure, not applied after the fact. • Build and own the bring-your-own-cloud deployment pattern — a repeatable, documented process for deploying the platform inside an enterprise client's own cloud account without forking infrastructure code. • Own the cloud-layer security posture — threat detection, configuration compliance, and the audit trail infrastructure at the cloud level. Ensure security controls are built into the foundation, not bolted on.

Required qualifications

  • 5+ years of cloud engineering experience, with production depth on at least one major cloud (AWS, Azure, or GCP) and working competence on a second. • Multi-account or multi-subscription architecture design at production scale — organizational structures, account vending, landing zones, and baseline guardrails. • Network design at scale — VPC / VNet topology, peering, transit gateways, PrivateLink / Private Endpoints, Direct Connect or ExpressRoute, DNS, and certificate management. • Cloud-level IAM — role and policy design, cross-account access, federated identity, and leastprivilege enforcement patterns. • Multi-region deployment experience — has built and operated a system with documented RTO / RPO targets and tested disaster recovery runbooks. • Infrastructure as code at production scale (Terraform or Pulumi) — multi-account and multienvironment, with safe promotion and rollback patterns. • Cloud-native security tooling — hands-on with threat detection, configuration compliance, and audit logging services on at least one major cloud (GuardDuty / Security Hub / CloudTrail on AWS; Defender for Cloud on Azure; Security Command Center on GCP; or comparable).

Apply for this job in 1 click

Skip the repetitive application forms

Install the Base Career Chrome Extension and autofill job applications across major job boards with your profile.

Sarah M.James T.Maya R.

Trusted by over 500,000 job seekers on Base Career

Start Free Today

More from this employer

More jobs at Insight Global