
SaaS Cloud Engineer
GE Vernova
full-time
Posted on:
Location Type: Hybrid
Location: United States
Visit company websiteExplore more
About the role
- Own per-customer AWS account provisioning; Automate account bootstrap workflows using Infrastructure as Code (Terraform / AWS CloudFormation) and CI/CD pipelines (GHA / ArgoCD).
- Implement and maintain Cyber Guardrails aligned to GESOS standards, including jumphost configuration, IAM policies, and VPC networking.
- Deploy standardized cloud infrastructure baselines: AWS CloudTrail, CloudWatch, GuardDuty, Security Hub, and Config Rules.
- Configure DNS, network connectivity, and cross-account trust relationships for each customer environment.
- Collaborate with Platform SRE to define sizing, scaling, and SLO baselines for each customer workload.
- Support progressive delivery pipelines (blue/green, canary) to ensure zero-downtime deployments.
- Integrate cloud-native observability hooks (CloudWatch, synthetic monitors) for new customer environments.
- Assist with acceptance testing validation gates before production cutover.
- Drive FinOps practices: right-size resources, implement savings plans, and produce monthly cost reports per customer using AWS Cost Explorer.
- Maintain cloud security posture: apply CVE patches, respond to compliance and audit requirements in coordination with SecOps.
- Participate in on-call rotations for incident response (Level 1/2), root cause analysis (RCA), and BC/DR exercises.
- Continuously improve account automation, reducing toil through scripting (Python, Bash) and runbook codification.
- Monitor FinOps KPIs and flag anomalies proactively to the SRE Lead.
Requirements
- 3-5 years of hands-on experience in cloud infrastructure, SRE, or DevOps engineering roles.
- Deep AWS expertise — EC2, EKS, S3, VPC, IAM, CloudTrail, CloudWatch, GuardDuty, Organizations, Control Tower.
- Proven proficiency with Infrastructure as Code — Terraform or AWS CloudFormation.
- Experience with container orchestration (Kubernetes/EKS) and related tooling (Helm, Rancher).
- Working knowledge of CI/CD pipelines — GitHub Actions (GHA) and/or ArgoCD.
- Scripting fluency in Python and/or Bash for automation and operational tooling.
- Demonstrated experience with cloud security best practices: IAM least privilege, security group design, encryption at rest/in-transit.
- Exposure to FinOps concepts — cost allocation tagging, savings plans, Reserved Instances analysis.
- Experience with multi-tenant SaaS account vending machines (AWS Control Tower, Landing Zone Accelerator).
- Familiarity with Cyber Security Standard and Policies in regulated environments.
- Knowledge of GovCloud or regulated-industry compliance (FedRAMP, NERC CIP, SOC 2).
- Exposure to Backstage IDP or similar developer portals.
- AWS certifications: Solutions Architect (Associate or Professional), DevOps Engineer Professional.
Benefits
- Relocation Assistance Provided
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills & Tools
AWSTerraformAWS CloudFormationCI/CDPythonBashKubernetesGitHub ActionsArgoCDCloud Security
Soft Skills
collaborationincident responseroot cause analysiscontinuous improvementproactive monitoring
Certifications
AWS Solutions Architect AssociateAWS Solutions Architect ProfessionalAWS DevOps Engineer Professional