Principal Cloud Engineer
Hybrid · Oklahoma City, Oklahoma, United States or Brook Park, Ohio, United States
Job Summary
Principal Cloud Engineer – join the Architecture and Cloud Engineering (ACE) team to own platform direction for Auris' Azure landing zone, Terraform module catalog, and CI/CD posture. You’ll drive landing zone standards across sandbox to prod, maintain and extend workload modules, define production-ready onboarding patterns for new applications, operate the GitHub Actions runner platform, and collaborate with security leadership to translate SOC 2/SOX requirements into platform guardrails. You will mentor cloud engineers, influence multi-subscription promotion strategies, lead incident response for platform issues, and leverage AI-assisted tooling to accelerate outcomes. The role emphasizes senior-level technical leadership, hands-on cloud engineering, and cross-functional partnership with security, architecture, and product teams. Remote work is available outside primary office locations in OKC and Brook Park, OH; on-site presence is expected to support collaboration. See also the company’s emphasis on flexible work arrangements and an AI-forward culture.
Required Qualifications
- 8+ years in cloud engineering
- Experience at Principal/Lead level
- Deep hands-on Microsoft Azure across App Service, Azure Container Apps, Azure SQL, Front Door, Key Vault, Defender for Cloud, Azure Policy, networking, Private Endpoints
- AKS exposure optional
- Production Terraform at scale: module authorship, AzureRM provider 4.x, state management, drift detection, multi-environment promotion patterns
- GitHub Actions with OIDC federation, self-hosted runner platforms (KEDA-scaled preferred), and GitHub App-based automation for cross-repo workflows
- Hub-and-spoke networking, Private Endpoint design, and DNS architecture (Azure private DNS zones, hub-based forwarders, split-horizon resolution)
- SOC 2 and SOX-aware infrastructure design; PCI-DSS exposure a plus
- Strong written communication; ADRs, runbooks, and design docs
- Comfort with AI-assisted tools (Copilot, Claude, Gemini) as part of daily workflow
- Experience consolidating dual-cloud (Azure + AWS) footprints; cloudflare experience (Tunnels, Workers, Zero Trust)
- Experience with large enterprise-tenant Azure operating models; multi-subscription estates; PIM; Entra; federated identity at scale
- Container platform experience, Azure Container Apps preferred, AKS acceptable
- Nice to Have AZ-305 or AZ-400 certifications
- Background scaling SaaS infrastructure for large user bases
- FinOps practices and large-estate Azure cost management
Apply with one swipe on Sorce. We auto-fill applications and apply on your behalf — no cover letters, no 40-minute forms.
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.