Senior Cloud Engineer
160k – 213kIrvine, CADevOps / SREOnsite5+ YOE
Summary
Architect and scale secure Azure cloud infrastructure supporting spacecraft control systems and autonomous satellite operations. Requires 5+ years in cloud/SRE/DevOps, deep Azure expertise, IAM proficiency, and compliance framework experience.
About the role
Key Responsibilities
- Design, deploy, and manage core Azure infrastructure components to support mission-critical workloads.
- Architect and implement robust Identity and Access Management (IAM) strategies within Azure (Entra ID) to ensure least-privilege access and secure cross-team collaboration.
- Implement and maintain security controls and governance aligned with frameworks such as CMMC, FedRAMP, ISO 27001, or SOC 2.
- Build and optimize reusable infrastructure as code (IaC) components and templates for consistent, secure, and scalable deployments.
- Define and implement standardized deployment patterns and workflows for production workloads.
- Collaborate with other teams (IT, InfoSec, Networking) to understand their requirements and translate them into secure, scalable Azure solutions.
- Identify operational bottlenecks and architect innovative solutions that maximize system availability, reliability, and security.
- Implement and manage Zero Trust Network Access (ZTNA) solutions to secure remote access and internal communications.
Requirements
- Bachelor’s degree in computer science, information systems/IT, or an engineering discipline.
- 5+ years of experience in Cloud Engineering, Site Reliability Engineering, or DevOps roles.
- Deep hands-on experience with Microsoft Azure services and architectures, with a proven track record of running and scaling production workloads.
- Strong expertise in Azure Identity and Access Management (IAM), including Azure AD (Entra ID), RBAC, and Conditional Access.
- Demonstrated competency with security compliance frameworks (CMMC, FedRAMP, ISO, SOC, etc.) and experience implementing technical controls to meet these standards.
- Proficiency with infrastructure as code tools (Terraform, Bicep, or similar).
- Must be able to obtain Secret or Top-Secret clearance.
Nice-to-Haves
- Azure certifications (e.g., Azure Solutions Architect Expert, Azure Security Engineer Associate).
- Experience with Kubernetes (AKS) or other container orchestration platforms.
- Development experience in at least one programming language (e.g., Python, Go, PowerShell, TypeScript).
- Experience implementing GitOps practices or CI/CD pipelines (Azure DevOps, GitHub Actions).
- Knowledge of multiple cloud providers (AWS, GCP) and their architectural differences.
- Experience in high-security or regulated industries (aerospace, defense, or similar).
- Familiarity with Zero Trust architectures and tools (e.g., Cloudflare WARP, Zscaler, Entra Private Access).
Skills
Microsoft AzureAzure Entra IDAzure RBACTerraformBicepInfrastructure as CodeCMMCFedRAMPISO 27001SOC 2Zero Trust Network AccessKubernetesAKSPythonGo
Similar roles at this salary range
All DevOps / SRE jobs →Senior Network Engineer
Design, deploy, and operate enterprise network infrastructure for corporate facilities and hybrid cloud environments with zero-trust architecture and compliance requirements. Requires 5+ years enterprise networking experience and ability to obtain TS/SCI clearance.
133k – 215kLos Angeles, CA +1DevOps / SREOn-site5+ YOEAWSVLAN