Summary
Design and operate secure, scalable cloud environments across multiple major cloud providers. You will build landing zones, define governance policies and guardrails, automate infrastructure with Terraform and GitOps, implement cross-cloud management patterns, and strengthen identity, access, and telemetry controls.
Highlights
Design secure-by-default cloud environments across GCP and other major cloud platforms, with strong focus on governance, multi-cloud architecture, Infrastructure as Code, GitOps, tenant isolation, and cloud security.
Description
I am looking for a Cloud Engineer with strong GCP expertise and multi-cloud experience.
You will design secure landing zones, implement governance policies, and build scalable environments across multiple clients.
This role combines infrastructure engineering with cross-cloud architecture, requiring hands-on experience with Terraform, GitOps, and cloud security.
๐ Project
build and manage client-plane data environments in GCP (and Azure/AWS where required) connected to an existing Azure control plane design and implement secure-by-default landing zones and tenant onboarding patterns define and enforce organization policies and guardrails separating management access from data access deliver infrastructure using Infrastructure-as-Code (Terraform) and GitOps (Flux) implement cross-cloud, cross-tenant management patterns including integration with Azure Lighthouse and GCP IAM/resource hierarchy implement cross-cloud telemetry with metadata-only logging to prevent data exfiltration define client prerequisites in networking, security, and landing zone setup support incident response, upgrades, and versioning across environments
๐ฏ Skills
strong hands-on experience with GCP (resource hierarchy, Organization Policy Service, IAM, VPC Service Controls, GKE) experience with multi-tenant / multi-client deployments across isolated environments knowledge of multi-cloud and hybrid architectures (control-plane vs data-plane separation) expertise in policy and guardrail design for secure access control strong experience with Terraform (modules, state management, multi-environment setups) experience with GitOps and CI/CD (Flux or similar tools) working knowledge of Azure (management groups, Azure Policy, Azure Lighthouse) understanding of data residency and regulatory requirements
๐ก Nice to have
experience with AWS (Organizations, Control Tower, SCPs) knowledge of observability tools (Grafana, Telegraf, Prometheus) experience with encryption and key management (Cloud KMS, Key Vault, CMEK/CMK) experience with GenAI or RAG workloads background in financial services or regulated environments relevant certifications (GCP Professional Cloud Architect / DevOps Engineer)