Cloud Engineer
Onsite in Foster City, CA | at least 3 days in office
*** is expanding its IT Platform team to support our mission of Autonomous Mobility. We're looking for a Cloud Engineer to help operate and support our AWS environment, working closely with the Cloud Engineering team and partnering with engineering teams across IT & Applications, Infrastructure, Product Software, Data Platform, and Manufacturing Operations. This role executes day-to-day provisioning, automation, and support work that keeps ***'s AWS platform running securely and reliably.
In this role, you will:
- Provision and manage AWS accounts and tenant structures, including IAM users/roles, cross-account access, and SSO group setup, following established playbooks
- Write and maintain Terraform modules both applying existing centralized modules and authoring new ones for account setup, networking, IAM, and resource provisioning
- Build and configure AWS networking resources (VPCs, subnets, VPC peering, routing) based on team designs
- Support secrets management workflows (AWS Secrets Manager, Vault) for integrations with third-party platforms (e.g., Mulesoft)
- Apply security and governance guardrails to provisioned resources (least-privilege IAM, encryption, AMI/container compliance checks)
- Troubleshoot and resolve day-to-day AWS support tickets across compute, storage, and networking for cross-functional customers (engineering tools, HPC/simulation workloads, mission control systems, data platform, manufacturing systems)
- Follow and help maintain runbooks/playbooks for recurring provisioning and operational tasks
- Escalate architectural or ambiguous issues to senior team members while owning execution of well-defined requests
Qualifications:
- 5+ years of experience
- Hands-on experience with AWS in a production environment compute, storage, networking, and IAM
- Experience with Infrastructure as Code, ideally Terraform, including writing and modifying modules
- Working knowledge of AWS networking fundamentals (VPCs, subnets, routing, security groups)
- Understanding of IAM and cloud security fundamentals (least privilege, encryption, secrets management)
- Comfortable working from tickets, playbooks, and runbooks, and following documented processes accurately
- Good written and verbal communication skills; able to work with engineers and business stakeholders to clarify requirements
- Ability to work independently on well-scoped tasks while knowing when to escalate
Bonus Qualifications:
- Experience with Terraform Cloud, Spacelift, or similar centralized IaC platforms
- Exposure to multi-account AWS environments (Landing Zones, Control Tower)
- Experience with containerized workloads (Kubernetes/EKS)
- Familiarity with monitoring/alerting tools (e.g., Grafana, CloudWatch)
- Exposure to AI/ML or HPC cloud workloads
| Location | Foster City, CA |
| Salary | $80–$106.50 Per Hour |