Overview
We are looking for a Chief Cloud Engineer to join our organization.
In this role, you will take ownership of designing and securing cloud infrastructure for complex, large-scale enterprise environments. You will collaborate with diverse teams to deliver innovative, secure, and compliant cloud solutions that support the company’s strategic objectives.
Responsibilities
- Design and architect secure cloud infrastructure that meets evolving business needs
- Develop, implement, and maintain cloud security policies and services in line with industry standards and compliance requirements
- Conduct security threat assessments and create mitigation plans to protect cloud resources
- Define and enforce security strategies and governance models across multiple cloud platforms
- Collaborate with SOC and SecOps teams to ensure regulatory compliance and audit readiness
- Manage Identity and Access Management (IAM), including resource hierarchy, boundary protection, and secure communication protocols
- Plan and implement network security controls such as firewalls, VPCs, and perimeter security measures
- Deploy observability solutions for comprehensive logging, monitoring, and threat detection in cloud environments
- Leverage AI agents to automate and enhance security and infrastructure deployment processes
- Lead digital transformation initiatives focused on security using Infrastructure as Code (IaC) and oversee secure containerized workload management
Requirements
- At least 7 years of hands-on experience in cloud engineering or a closely related field
- Minimum of 2 years in a leadership or team management role, with the ability to guide teams technically, set direction, and ensure best practices are followed
- Participation in at least 2 full project cycles or involvement in multiple projects covering various stages of the development lifecycle
- Proven expertise in architecting and implementing secure cloud policies and services, preferably on Google Cloud Platform (GCP)
- Strong experience in security threat analysis and mitigation, including the use of SIEM tools such as Google SecOps (Chronicle), WiZ, or similar
- Demonstrated ability to define, design, and implement robust security strategies and governance frameworks
- Experience enforcing regulatory controls and collaborating with SOC or SecOps teams to meet compliance standards
- Advanced skills in Identity and Access Management (IAM), including resource hierarchy design, boundary protection, secure communications, and Workload Identity Federation (WIF)
- Proficiency in designing and deploying network security solutions such as Cloud Firewall, Cloud Armor, and VPC, as well as ensuring effective data protection and observability for threat management
- Experience utilizing AI agents to automate, streamline, and reduce risk in security and infrastructure deployments
- Expertise in setting up secure Landing Zones, Data and AI Foundations, and establishing secure communication perimeters for users, agents, and services
- Proficiency with Infrastructure as Code tools (e.g., Terraform) for compliance-driven deployments, managing secure workloads with Google Kubernetes Engine (GKE), and securing CI/CD and DevSecOps pipelines
- English proficiency (written and spoken) at B2+ level or higher
[GTS] Benefits (generic, except India)
- International projects with top brands
- Work with global teams of highly skilled, diverse peers
- Healthcare benefits
- Employee financial programs
- Paid time off and sick leave
- Upskilling, reskilling and certification courses
- Unlimited access to the LinkedIn Learning library and 22,000+ courses
- Global career opportunities
- Volunteer and community involvement opportunities
- EPAM Employee Groups
- Award-winning culture recognized by Glassdoor, Newsweek and LinkedIn