Senior Cloud Governance Engineer

Redfin Redfin · Seattle · Washington, WA · Remote

Senior Cloud Governance Engineer responsible for designing, implementing, and supporting network and identity solutions in a public cloud (AWS). The role involves leading cloud governance strategy, architecting automated guardrails, driving cross-team compliance, promoting technical excellence, and delivering measurable strategic impact.

What you'd actually do

  1. Lead the evolution of Redfin’s cloud governance strategy by architecting scalable guardrails and identity solutions that balance developer velocity with the "big picture" needs of security, cost-efficiency, and organizational compliance.
  2. Design and implement high-quality, reliable governance frameworks (such as SCPs, IAM policies, and automated remediation), proactively managing technical ambiguity and risks to secure a complex multi-account environment.
  3. Partner with Infosec and Platform teams to resolve cross-team dependencies and drive consensus on cloud standards, removing obstacles to ensure that security and governance are integrated seamlessly into the deployment lifecycle.
  4. Lead the development of Infrastructure as Code for governance tooling while mentoring peers through insightful code reviews and proposing new processes to make the team’s cloud management more efficient.
  5. Define and track key engineering metrics related to cloud spend, security posture, and resource utilization, using these insights to contribute to long-term strategy and ensure technical choices align with business needs.

Skills

Required

  • 5+ years of hands-on cloud platform management experience, preferably in AWS
  • Governance: Control Tower, Service Catalog, Account Factory IAM, AWS IAM Identity Center, AWS Organizations, Cognito
  • Network: CloudFront, VPC, WAF, Shield Route53, VPC Lattice
  • 3+ years of experience in establishing, managing, and scaling a multi-account or multi-project cloud based environment.
  • Deep passion for Infrastructure as Code
  • 3+ years of experience with scripting languages

Nice to have

  • Experience with cloud platform observability tooling such as CloudWatch
  • Terraform, Spacelift, Terraform Cloud, Atlantis or CloudFormation

What the JD emphasized

  • security
  • compliance
  • governance