Senior Cloud Platform Engineer - Fedramp

Rubrik Rubrik · Enterprise · Palo Alto, CA · Information Technology & Services

Senior Cloud Platform Engineer responsible for designing, building, and governing multi-cloud foundation services (AWS, Azure, GCP, OCI) with a focus on security, compliance (FedRAMP), automation, and cost optimization. This role involves end-to-end cloud onboarding, implementing secure landing zones, managing IAM and policies, enforcing governance, designing security controls, leading compliance audits, driving financial management, and developing Infrastructure-as-Code (IaC) using Terraform and Python. Mentoring junior engineers is also a key responsibility.

What you'd actually do

  1. Drive end-to-end cloud onboarding process for new business units, applications, and teams across AWS, Azure, GCP, and OCI.
  2. Drive Implementation of secure landing zones, multi-account/tenant structures, IAM and Policies.
  3. Enforce tagging standards, resource hierarchy models, and governance frameworks to enable accountability, cost tracking, and lifecycle management.
  4. Manage and evolve IAM, SSO, Org/Subscription/Project policies, and Role-Based Access Controls (RBAC) across all clouds.
  5. Design and implement security controls including encryption, KMS, VPC Service Controls, privileged access management (PIM), and audit logging.

Skills

Required

  • 7+ years of CloudOps/Engineering/Architecture experience with AWS, Azure, GCP (OCI a plus).
  • Expertise in IAM, Org/Project design, Security Policies, Logging/Monitoring across and access controls multi-cloud.
  • Strong skills in automation/IaC (Terraform, Python, GitOps/CI-CD).
  • Proven experience in cloud financial management and cost optimization.
  • Knowledge of regulatory compliance frameworks (SOX, FedRAMP, SOC 2, ISO, HIPAA).
  • Understanding of FedRAMP operational controls.

Nice to have

  • OCI a plus
  • past FedRamp environment experience would be a big plus.

What the JD emphasized

  • FedRAMP
  • cloud onboarding
  • secure landing zones
  • IAM
  • Policies
  • governance frameworks
  • security controls
  • compliance gaps
  • Compliance Audits
  • cloud security and compliance assessments
  • cloud financial management
  • cost-optimization
  • Infrastructure-as-Code (IaC)
  • automation pipelines
  • regulatory compliance frameworks
  • FedRAMP operational controls
  • past FedRamp environment experience