Must Have Technical/Functional Skills:
• 8+ years of experience in SRE, cloud infrastructure, DevOps, platform engineering, or infrastructure software.
• Hands-on experience with AWS multi-account environments, AWS Organizations, IAM, Terraform, and cloud governance.
• Experience building automation in Python, Go, Ruby, or similar languages.
• Familiarity with Control Tower, Account Factory for Terraform, CloudFormation, EventBridge, Lambda, SQS, IAM Identity Center, or similar AWS platform services.
• Strong understanding of reliability, security, cost management, and developer experience tradeoffs in cloud platforms.
• Ability to partner with engineering teams as a trusted advisor while still enforcing clear cloud standards.
• Strong written communication and comfort documenting processes for audit, handoff, and operational support.
Roles & Responsibilities:
• Build and operate AWS GovCloud foundations for FedRAMP High and IL5, including AWS Organizations, Control Tower, account provisioning lifecycle, and account automation.
• Implement and maintain service control policies, landing-zone patterns, and cloud governance automation.
• Build reusable infrastructure-as-code modules and paved-road patterns that help engineering teams deploy securely and consistently.
• Support standardized cloud resource creation and management, including VPC patterns, prefix lists, IAM patterns, and account-level controls.
• Build or adapt Cloud Foundations services for federal use, including cloud account workflows, email service enablement, Google Cloud Platform project/key management, FinOps reporting, and cloud compliance automation.
• Partner with other teams to translate FedRAMP High and IL5 requirements into practical cloud architecture and operating models.
• Participate in responder duties, cost anomaly response, cloud support channels, operational ticket triage, and production support.
• Produce documentation, runbooks, design notes, and evidence-friendly operational records.
• Provide guidance and technical feedback to engineers adopting secure cloud patterns.
Nice to have skills:
• Experience with AWS GovCloud, FedRAMP, DoD IL5, FIPS, or regulated SaaS environments.
• Experience with FinOps, cloud cost reporting, guardrail platforms, compliance automation,
• or account provisioning workflows.
• Experience building reusable Terraform modules or paved-road cloud patterns for internal engineering teams.
In order to comply with U.S. laws and regulations applicable to this position, the person(s) hired must possess the ability to obtain US Securit y Clearance which requires that the person ====, a U.S. Permanent Resident (i.e., a “”), or a Political Asylee or Refugee.
Salary Range: $64,000 - $130,000 a year
#LI-CM2