Tulea Health

Principal Cloud Architect – AWS

Tulea Health

full-time

Posted on:

Location Type: Remote

Location: United States

Visit company website

Explore more

AI Apply
Apply

Job Level

About the role

  • Cloud strategy & target-state architecture: Define the multi-year AWS platform strategy, principles, and “golden paths” for teams to build on.
  • Security & compliance architecture: Own cloud security posture and compliance-by-design for HIPAA and audit readiness (e.g., SOC 2, HITRUST).
  • AWS landing zone & governance: Design and operate a multi-account AWS environment (Control Tower/Organizations), including guardrails, identity, network segmentation, and centralized logging.
  • Reliability & operational excellence: Set SRE-aligned practices for observability, incident response, disaster recovery, and operational readiness.
  • Platform enablement: Create reusable Infrastructure-as-Code modules, templates, and reference architectures to accelerate safe delivery across teams.
  • FinOps & cost governance: Implement cost allocation, tagging, budgeting, and optimization practices that improve visibility and reduce total cost of ownership.
  • Design and evolve a secure multi-account AWS environment (Control Tower/Organizations) with clear boundaries for production/non-production, workloads, and data sensitivity.
  • Define and socialize reference architectures for core workload types (web apps, APIs, data pipelines, event-driven/serverless), including secure defaults and “golden paths.”
  • Establish architectural standards and governance (design reviews, threat modeling, pre-launch checklists) that improve quality without slowing delivery.
  • Build and maintain infrastructure as code and delivery automation (IaC modules, promotion strategies, automated checks) in partnership with engineering.
  • Implement cloud security controls for PHI and sensitive data (identity, encryption, secrets, logging/detection, auditability) and drive continuous posture improvement.
  • Partner with hospital IT/security teams to implement secure data exchange links, including joint testing, documentation, and operational runbooks.
  • Operationalize reliability: SLIs/SLOs, observability, alerting, incident response, and DR readiness - improving time-to-detect and time-to-recover.
  • Evaluate emerging cloud and AI capabilities and run focused POCs when they materially improve security, reliability, cost, or developer velocity.

Requirements

  • 10+ years designing and delivering cloud solutions, with deep hands-on AWS experience running production workloads.
  • Experience with healthcare interoperability standards and integrations (FHIR, HL7) and/or healthcare data platforms.
  • Track record architecting secure, highly available, audit-ready systems in regulated industries (healthcare strongly preferred).
  • Strong experience with AWS multi-account governance (Control Tower/Organizations); deep VPC/networking fundamentals (segmentation, routing, secure connectivity such as VPN/Direct Connect).
  • Strong DevSecOps/IaC + CI/CD experience (Terraform/CloudFormation/CDK; GitHub Actions preferred) and ability to set standards teams actually adopt.
  • Experience with containers/orchestration and serverless patterns.
  • Expertise in AWS security primitives and tooling (IAM/least privilege, KMS, secrets, logging/monitoring; Security Hub/GuardDuty/Config/CloudTrail; zero trust concepts).
  • Exceptional communication: can align stakeholders and explain trade-offs clearly.
  • Keeps current on emerging cloud and AI advancements and translates them into pragmatic improvements in architecture, operations, and delivery.
Benefits
  • Technology plays a critical supporting role in how our teams deliver therapy - powering day-to-day clinical operations and integrating with our health system partners. We work with sensitive data and operate in a high-trust environment, so reliability, security, and engineering quality matter as much as speed. By reducing friction, errors, and delays in infusion center workflows, our technology helps care teams deliver therapy more smoothly and consistently
  • High ownership and high trust: you’ll have autonomy and real impact.
  • AI-forward, accountability-first: we move faster with AI, but we don’t outsource responsibility.
  • Collaborative and mission-driven: we build software that improves infusion center operations and ultimately improves patient care and outcomes.
Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard Skills & Tools
AWSInfrastructure-as-CodeDevSecOpsCI/CDTerraformCloudFormationCDKcontainersorchestrationserverless
Soft Skills
communicationstakeholder alignmenttrade-off explanation