Senior Cloud Operations Engineer
$165,000–$165,000 year
RemoteUnited States
Job Summary
Operate, maintain, and improve the Dragos cloud fleet across Azure, AWS, and GCP, owning the full customer environment lifecycle from onboarding to offboarding. Build and maintain Terraform-based infrastructure-as-code for provisioning and standardization while managing fleet health, drift detection, and patching at scale. Design multi-tenant isolation patterns, configure networking components, and manage cloud-to-OT/on-prem connectivity. Implement IAM, secrets management, and compliance posture; build Datadog observability pipelines and SLOs. Participate in an on-call rotation (PagerDuty) to triage and resolve production incidents, driving SRE practices including error budget management and post-incident reviews. Support audit activities for FedRAMP, SOC2, and customer requirements while eliminating toil through automation.
Required Qualifications
- 4+ years of hands-on cloud operations experience across one or more of Azure, AWS, or GCP
- Strong proficiency with Terraform for infrastructure-as-code (primary IaC tool at Dragos)
- Experience operating cloud environments at scale -- fleet management, patching, upgrades, drift detection
- Hands-on experience with multi-tenant cloud architectures and customer-facing environment management
- Solid knowledge of cloud networking: VPCs/VNets, peering, transit gateways, DNS, firewalls, and hybrid connectivity
- Experience with IAM across AWS, Azure Entra ID, and/or GCP -- roles, policies, federation, SSO
- Proficiency with Datadog for monitoring, alerting, dashboards, and log pipelines
- Comfort with on-call responsibilities -- this role participates in a PagerDuty rotation for the customer cloud fleet
- Experience with SRE practices: SLO definition, error budget management, incident response, and blameless post-mortems
- Strong scripting skills in Python and/or Bash
- Familiarity with compliance frameworks (FedRAMP, SOC2, NIST CSF) and audit evidence collection
- Strong ownership mindset and accountability for production stability
- Excellent communication, documentation, and collaboration skills
- All new hires must pass a background check as a condition of employment
Desired Qualifications
- Experience with all three major cloud providers: Azure, AWS, and GCP
- Experience managing cloud environments for external customers (customer-managed and vendor-managed models)
- Familiarity with cloud-to-OT/ICS network connectivity and segmentation
- Experience with secrets management tooling: HashiCorp Vault, AWS Secrets Manager, Azure Key Vault, GCP Secret Manager
- Experience with cloud-native fleet tools: AWS Systems Manager, Azure Arc, GCP Fleet Management
- Proficiency with policy-as-code tools (OPA, Sentinel, AWS SCPs, Azure Policy)
- Experience with FinOps practices and cloud cost optimization
- Familiarity with Cloud Security Posture Management (CSPM) tooling
- Experience with CI/CD pipeline authoring (GitHub Actions)
- Passion for automation and continuously improving operational efficiency
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.