SaaS Cloud Engineer
Indexed description
Job Description
Roles and Responsibilities
— Provision & Bootstrap
- Own per-customer AWS account provisioning;
- Automate account bootstrap workflows using Infrastructure as Code (Terraform / AWS CloudFormation) and CI/CD pipelines (GHA / ArgoCD).
- Implement and maintain Cyber Guardrails aligned to GESOS standards, including jumphost configuration, IAM policies, and VPC networking.
- Deploy standardized cloud infrastructure baselines: AWS CloudTrail, CloudWatch, GuardDuty, Security Hub, and Config Rules.
- Configure DNS, network connectivity, and cross-account trust relationships for each customer environment.
- Collaborate with Platform SRE to define sizing, scaling, and SLO baselines for each customer workload.
- Support progressive delivery pipelines (blue/green, canary) to ensure zero-downtime deployments.
- Integrate cloud-native observability hooks (CloudWatch, synthetic monitors) for new customer environments.
- Assist with acceptance testing validation gates before production cutover.
- Drive FinOps practices: right-size resources, implement savings plans, and produce monthly cost reports per customer using AWS Cost Explorer.
- Maintain cloud security posture: apply CVE patches, respond to compliance and audit requirements in coordination with SecOps.
- Participate in on-call rotations for incident response (Level 1/2), root cause analysis (RCA), and BC/DR exercises.
- Continuously improve account automation, reducing toil through scripting (Python, Bash) and runbook codification.
- Monitor FinOps KPIs and flag anomalies proactively to the SRE Lead.
- 3-5 years of hands-on experience in cloud infrastructure, SRE, or DevOps engineering roles.
- AWS experience using EC2, EKS, S3, VPC, IAM, CloudTrail, Cloud Watch, Guard Duty, Organizations, Control Tower.
- Experience writing Infrastructure as Code using Terraform or AWS Cloud Formation or any programming languages like Python or Java, etc.
- Working knowledge of CI/CD pipelines — GitHub Actions (GHA) and/or ArgoCD.
- Scripting fluency in Python and/or Bash for automation and operational tooling.
- Knowledge and awareness with cloud security best practices: IAM least privilege, security group design, encryption at rest/in-
- transit.
- Exposure to FinOps concepts — cost allocation tagging, savings plans, Reserved Instances analysis.
- Fluent in English.
- Familiarity with Cyber Security Standard and Policies in regulated environments.
- Knowledge of GovCloud or regulated-industry compliance (FedRAMP, NERC CIP, SOC 2).
- AWS certifications: Solutions Architect (Associate or Professional), DevOps Engineer Professional.
- AWS (EKS, IAM, CloudTrail, CloudWatch, RDS, MSK, SQS, S3, etc.)
- Infrastructure as Code - Terraform
- Decent knowledge on Kubernetes Concepts and EKS/Rancher
- CI/CD - Jenkins, GitHub Actions
- Scripting - Python / Bash
- FinOps / Cost Explorer
- Incident Response
- Compliance & SecOps
Business Acumen
- Strong oral and written communication skills
- Strong business analysis and problem solving skills
- Proactively engages with cross-functional teams to resolve issues and design solutions using critical thinking and analytical skills and best practices
- Ability to interact at all levels of the organization and with other GE businesses
Create a free Caio profile to unlock more results and save your role and location preferences.
Unlock free search