SRE Cloud Foundations SRE, G10
Level: L2
Location: Remote, prefer PST hours
Visa Requirements: UC Citizenship
Role Summary
Our SRE Cloud Foundations team is looking for a Senior Site Reliability Engineer to build the secure cloud foundations required for FedRAMP High and IL5. This role is for an independent senior engineer who can own large features or bounded cloud foundation systems with minimal guidance.
You will design and build AWS GovCloud foundations, account provisioning automation, service control policies, guardrails, shared Terraform modules, cloud resource standards, FinOps reporting, and compliance-oriented automation. You should be able to apply strong practical cloud infrastructure judgment, partner with other teams, and mentor engineers who need help navigating secure and compliant cloud adoption.
What You ll Do
Build and operate AWS GovCloud foundations for FedRAMP High and IL5, including AWS Organizations, Control Tower, account provisioning lifecycle, and account automation.
Implement and maintain service control policies, landing-zone patterns, and cloud governance automation.
Build reusable infrastructure-as-code modules and paved-road patterns that help engineering teams deploy securely and consistently.
Support standardized cloud resource creation and management, including VPC patterns, prefix lists, IAM patterns, and account-level controls.
Build or adapt Cloud Foundations services for federal use, including cloud account workflows, email service enablement, Google Cloud Platform project/key management, FinOps reporting, and cloud compliance automation.
Partner with other teams to translate FedRAMP High and IL5 requirements into practical cloud architecture and operating models.
Participate in responder duties, cost anomaly response, cloud support channels, operational ticket triage, and production support.
Produce documentation, runbooks, design notes, and evidence-friendly operational records.
Provide guidance and technical feedback to engineers adopting secure cloud patterns.
You Are an Ideal Candidate If You Have
8+ years of experience in SRE, cloud infrastructure, DevOps, platform engineering, or infrastructure software.
Hands-on experience with AWS multi-account environments, AWS Organizations, IAM, Terraform, and cloud governance.
Experience building automation in Python, Go, Ruby, or similar languages.
Familiarity with Control Tower, Account Factory for Terraform, CloudFormation, EventBridge, Lambda, SQS, IAM Identity Center, or similar AWS platform services.
Strong understanding of reliability, security, cost management, and developer experience tradeoffs in cloud platforms.
Ability to partner with engineering teams as a trusted advisor while still enforcing clear cloud standards.
Strong written communication and comfort documenting processes for audit, handoff, and operational support.
Preferred
Experience with AWS GovCloud, FedRAMP, DoD IL5, FIPS, or regulated SaaS environments.
Experience with FinOps, cloud cost reporting, guardrail platforms, compliance automation, or account provisioning workflows.
Experience building reusable Terraform modules or paved-road cloud patterns for internal engineering teams.