Salary 💰 $87,000 - $164,000 per year
Tech Stack Azure Cloud Go Google Cloud Platform Kubernetes Python Terraform Vault
About the role Design and implement automation pipelines that enable secure, scalable, and auditable self-service infrastructure provisioning across cloud environments (Azure, GCP, and on-prem) Codify access patterns, integrate with Vault, and enforce least-privilege IAM models using GitHub Actions and Terraform Build and maintain GitHub Actions workflows for self-service provisioning of infrastructure, secrets, and IAM roles using Terraform Develop reusable Terraform modules that encapsulate compliant patterns for deploying GCP, Azure, and on-prem infrastructure Integrate with HashiCorp Vault to securely inject secrets into pipelines and support runtime retrieval for VMs and services Automate onboarding by binding repositories, identity pools, and service accounts Enable secure OIDC-based pipeline authorization (e.g., GCP Workload Identity Federation, Azure Federated Credentials) Drive automation for certificate-based authentication for on-prem VMs accessing Vault and other internal services Collaborate with platform, IAM, and security teams to implement compliant patterns for secrets, identity, and access governance Design self-service onboarding workflows for developers and application teams across environments (EDP-GT, EDP-XL, TD Universe) Contribute to internal documentation and Confluence living strategies Requirements Bachelor's or Graduate degree Strong academic background (e.g., computer science, engineering) 7 + years relevant experience Experienced with Terraform (including module design, state management, and CI integration) Proficiency with GitHub Actions for CI/CD pipelines and automation workflows Deep knowledge of cloud IAM models (especially GCP Workload Identity Federation and Azure Entra ID) Understanding of cert-based authentication, secure software supply chain, and compliance automation Familiarity with Kubernetes, container-based deployments, and cloud-native network/security controls Comfortable working in multi-cloud environments (Azure, GCP) and hybrid setups (VMC2, on-prem) Strong scripting skills (e.g., Bash, Python, or Go) Experience integrating with HashiCorp Vault Experience designing and implementing automation pipelines and reusable Terraform modules Experience enabling OIDC-based pipeline authorization and certificate-based authentication for on-prem VMs base salary and variable compensation/incentive awards (e.g., eligibility for cash and/or equity incentive awards) health and well-being benefits savings and retirement programs paid time off (including Vacation PTO, Flex PTO, and Holiday PTO) banking benefits and discounts career development and training programs mentorship and online learning platform competitive benefits plan colleague development and regular performance conversations employee assistance/accommodation support (USWAPTDO email for accommodations) Copy Applicant Tracking System Keywords Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard skills Terraform GitHub Actions Bash Python Go Kubernetes IAM models OIDC-based authorization cert-based authentication cloud-native network/security controls
Soft skills collaboration documentation organizational skills
Certifications Bachelor's degree Graduate degree