Cloud Governance Engineer

United States Digital Space LLC

United States

On-site

USD 150,000 - 190,000

Full time

4 days ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Benefits offered by this job

Equity Programs
Bonus Scheme
10% Flex Benefit
Meal Allowance
Medical Insurance
Life Insurance
25 day Annual Leave + Public Holidays

Job summary

United States Digital Space LLC is a leading cloud contact center software provider seeking a governance-focused professional to define and enforce rules for a multi-cloud estate. The role emphasizes GCP as the primary platform, with AWS and Azure in scope, and requires hands-on policy implementation.

You will own exception processes, translate risk for Finance, Security, and Product leadership, and build dashboards to monitor governance metrics across environments. This is a fully remote role.

Qualifications

  • 4+ years in public cloud environments with hands-on GCP experience
  • Experience implementing preventative guardrails across at least one hyperscaler
  • Experience authoring cloud policies or standards
  • Experience running or contributing to a cloud controls exception/waiver process
  • Working knowledge of cloud IAM, network security, encryption, and key/secret management
  • IaC with Terraform and policy-as-code
  • Strong Python for automation, enforcement, and reporting
  • Ability to explain technical risk to non-technical audience

Responsibilities

  • Define, document, and maintain cloud governance policies across GCP, AWS, and Azure
  • Own exception and waiver process end-to-end
  • Partner with Security on IAM and network security standards
  • Build dashboards tracking governance metrics
  • Own resource labeling and tagging standards for cost attribution
  • Drive cost governance through spend visibility and showback
  • Collaborate with IT, Finance, Security, DevOps, and Product to ensure consistency
  • Define service level objectives and KPIs for operations
  • Review new third-party cloud services before they enter the estate

Skills

Cloud governance
Policy enforcement
Stakeholder communication
Policy-as-code

Education

Bachelor's degree in Computer Science or Engineering

Tools

Terraform
Python
Kubernetes
Okta
Active Directory

Job description

Join us in bringing joy to customer experience. the company is a leading provider of cloud contact center software, bringing the power of cloud innovation to customers worldwide.

Living our values everyday results in our team-first culture and enables us to innovate, grow, and thrive while enjoying the journey together. We celebrate diversity and foster an inclusive environment, empowering our employees to be their authentic selves.

This is a governance role, not a build-and-operate role. You will spend your time defining the rules our cloud estate runs by, making those rules enforceable in code, and proving they are working. You will write standards that other engineering teams have to follow, and you will be the person who explains to Finance, Security, and Product leadership why a given risk matters and what it will cost to fix or ignore.

If what you want is to build and run infrastructure, this is not the right seat. If you want to own how a multi-cloud estate is governed, it is.

About our estate: roughly 70% Google Cloud, with AWS and Azure in scope as secondary platforms. GCP is where the majority of the work sits, so hands-on GCP experience is a hard requirement rather than a preference.

Key Responsibilities
  • Define, document, and maintain cloud governance policies and standards across GCP, AWS, and Azure, and turn them into enforceable technical controls using GCP Organization Policy, AWS SCPs and Config, and Azure Policy
  • Own the exception and waiver process end to end: intake, risk assessment, time-bound approval, expiry, and follow-up
  • Partner with Security to enforce Identity and Access Management and network security standards across the organization, and review access models for least privilege
  • Build and maintain dashboards that track governance metrics: security posture, key and credential rotation, policy violations, configuration drift, and time to remediation
  • Own resource labeling and tagging standards and enforce them, so that cost, ownership, and environment can be attributed reliably
  • Drive cost governance: spend visibility and showback, anomaly detection, commitment and discount coverage reviews, and surfacing waste to the teams that own it
  • Collaborate with IT, Finance, Security, DevOps, Cloud Architects, and Product Engineering to keep governance controls consistent across all environments, and translate technical risk into language those stakeholders can act on
  • Work with stakeholders to define service level objectives, key performance indicators, and metrics for operational efficiency
  • Support the review of new third-party cloud services before they enter the estate
Requirements
  • 4+ years working in public cloud environments, including at least 2 years hands-on with GCP
  • Hands-on experience implementing preventative guardrails in at least one hyperscaler (GCP Organization Policy, AWS SCPs or Config, Azure Policy). You should be able to walk us through a policy you rolled out, what it broke, and how you handled the fallout
  • Experience authoring a cloud policy or standard that other teams were required to follow, not only implementing one written elsewhere
  • Experience running or contributing to an exception or waiver process for cloud controls
  • Working knowledge of cloud IAM, network security, encryption, and key and secret management
  • Infrastructure-as-Code with Terraform, and comfort extending it to policy-as-code
  • Python for automation, enforcement, and reporting
  • Demonstrated ability to explain a technical risk to a non-technical audience and drive a decision. This is a core part of the job and we will test it during the interview process
Preferred Qualifications
  • Google Cloud Professional Cloud Security Engineer or Professional Cloud Architect certification
  • Policy-as-code tooling: OPA, Conftest, Sentinel
  • Cloud cost tooling: GCP billing exports and BigQuery, AWS Cost Explorer, or a third-party platform such as Cloudability or Apptio
  • Familiarity with the control frameworks our platform is audited against (SOC 2, HIPAA, GDPR). You will not own audits in this role, but context helps you prioritize
  • Kubernetes governance and policy enforcement
  • Okta integration, Microsoft Active Directory Federation Services
  • Bachelor's degree in Computer Science, Engineering, or another relevant technical field
  • Result oriented, self-starter

Workplace location: This role is fully remote for candidates who reside outside Porto, Maia, Matosinhos, Gondomar, Valongo e Vila Nova de Gaia. Candidates who reside within those municipalities would be required to work in-office 3 days a week.

Benefits:
  • the company Equity Programs
  • Bonus Scheme
  • 10% Flex Benefit
  • Meal Allowance
  • Medical Insurance
  • Life Insurance
  • 25 day Annual Leave + Public Holidays

the company embraces diversity and is committed to building a team that represents a variety of backgrounds, perspectives, and skills. The more inclusive we are, the better we are. the company is an equal opportunity employer.

the company is committed to providing reasonable accommodations for qualified individuals with disabilities throughout the application and interview process. If you need assistance or an accommodation due to a disability, please contact us at hr@unitedstatesdigital.space to request an accommodation. Requests will be handled confidentially and in accordance with applicable law.

View our privacy policy, including our privacy notice to California residents here: https://www.the company.com/pt-pt/legal.

Note: the company will never request that an applicant send money as a prerequisite for commencing employment with the company.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior Information Security Engineer
Senior Information Security Engineer

United States Digital Space LLC • United States

Remote
USD 140,000 - 210,000
Shares
Bonus Scheme
Flex Benefit
+4
Senior DevOps Engineer
Senior DevOps Engineer

United States Digital Space LLC • United States

Hybrid
USD 130,000 - 195,000
Company shares
Bonus scheme
10% Flex Benefit
+4
Cloud Governance Architect — Multi-Cloud Policy & Compliance
Cloud Governance Architect — Multi-Cloud Policy & Compliance

United States Digital Space LLC • United States

On-site
USD 150,000 - 190,000
Equity Programs
Bonus Scheme
10% Flex Benefit
+4
Lead Governance, Risk, and Compliance Engineer - Remote
Lead Governance, Risk, and Compliance Engineer - Remote

Jobgether • Illinois

On-site
USD 100,000 - 140,000
Flexible work environment
Employer contributions towards healthcare
Equity in the company
+3
Cloud Engineering Advisor
Cloud Engineering Advisor

FedEx Group • Plano (TX)

On-site
USD 107,000 - 144,000
Office Manager (São Paulo, Brazil)
Office Manager (São Paulo, Brazil)

Figma • United States

On-site
USD 65,000 - 90,000
Cloud Engineering Advisor
Cloud Engineering Advisor

Federal Express Corporation • Plano (TX)

On-site
USD 99,000 - 134,000
Health, vision & dental insurance
Retirement plan
Tuition reimbursement
Cloud Engineer - Governance, Risk, and Compliance (GRC)
Cloud Engineer - Governance, Risk, and Compliance (GRC)

Peraton • Herndon (VA)

Remote
USD 112,000 - 179,000
Senior GRC Technical Engineer
Senior GRC Technical Engineer

Cloud Software Group • San Ramon (CA)

On-site
USD 160,000 - 240,000
Healthcare benefits
401(k) match
Career development
Cloud Security Engineer
Cloud Security Engineer

Greenberg Traurig, LLP • Charlotte (NC)

On-site
USD 100,000 - 130,000