Job Description
About the Role
We are seeking a Cloud Architect with a demonstrated track record of leading cloud-native platform transformations in regulated, multi-region environments. This role is not about drawing cloud diagrams — it’s about architecting scalable, cost-effective, production-ready cloud infrastructure that supports teams deploying at velocity. You’ll own the technical design of our cloud platform across AWS and GCP, guide cross-functional engineering teams, and enforce infrastructure-as-code and policy-as-code practices.
Key Responsibilities
- Architect and maintain hybrid cloud systems (AWS primary, GCP secondary), including VPC peering, private link services, and multi-account strategy with centralized governance.
- Lead design and rollout of service mesh (e.g., Istio or Consul) to support secure, discoverable services in Kubernetes environments (EKS preferred).
- Establish and manage cross-cloud disaster recovery and failover strategies with RTOs/RPOs under 5 minutes for critical services.
- Define and enforce IaC standards using Terraform and Terragrunt, including automated module publishing and versioning pipelines.
- Implement cloud cost attribution and forecasting mechanisms down to per-feature team level using tooling like CloudHealth or custom telemetry pipelines.
- Work closely with SecOps to design and enforce policies through OPA/Gatekeeper and secure secrets management via HashiCorp Vault or AWS Secrets Manager.
- Guide modernization of legacy VM-based workloads into containerized or serverless architectures, with measurable performance improvements.
- Contribute to a “paved road” for internal teams with hardened base images, validated modules, CI/CD templates, and environment bootstrapping tooling.
- Participate in platform incident reviews and build action plans that address systemic architectural issues.
Required Skills & Experience
- 7+ years of cloud infrastructure experience, with at least 3 years in an architect or lead role.
- Deep proficiency in AWS services (VPC, ALB/NLB, IAM, CloudFormation, Route 53, ECS/EKS, CloudWatch) and at least functional experience with GCP equivalents.
- Extensive experience with Terraform (v1.x), Terraform Cloud/Enterprise, and GitOps workflows (ArgoCD or Flux).
- Proven ability to model complex networking and IAM scenarios using tools like CloudMapper, IAM Access Analyzer, or custom policy simulators.
- Prior experience designing centralized logging, metrics, and tracing pipelines using Prometheus/Grafana/Loki or Datadog at scale.
- Strong scripting skills in Python or Go for automation and platform tooling.
- Familiarity with Kubernetes internals, custom resource definitions (CRDs), and controller/operator patterns.
Nice to Have
- Experience with zero-trust networking and identity federation (e.g., SPIFFE/SPIRE, workload identity).
- Exposure to FinOps practices and tooling.
- Experience working in organizations subject to HIPAA, PCI, or FedRAMP compliance.
- Contributions to open-source cloud tooling or prior talks at cloud-native conferences (KubeCon, HashiConf, etc.).
Are you interested in this position?
Apply by clicking on the “Apply Now” button below!
#GraphicDesignJobsOnline#WebDesignRemoteJobs #FreelanceGraphicDesigner #WorkFromHomeDesignJobs #OnlineWebDesignWork #RemoteDesignOpportunities #HireGraphicDesigners #DigitalDesignCareers#Dynamicbrandguru