Full Job Description
We are hiring a cloud infrastructure engineer for our Enterprise Cloud Engineering team. Our Enterprise Cloud Engineering team builds and operates the foundational identity, access, cloud infrastructure, and security platforms that enable employees, applications, services, and AI systems to securely operate at scale. We own the reliability, scalability, and security of critical identity services, cloud platforms, Kubernetes environments, and production workloads across AWS and Azure, with a strong focus on automation, operational excellence, and secure-by-default design. Partnering closely with Security, Infrastructure, and Engineering teams, we design and deliver authentication, authorization, identity governance, cloud access controls, and AI security capabilities while also deploying and supporting business-critical applications and services. As stewards of platform reliability, we leverage modern engineering practices, infrastructure as code, observability, and site reliability principles to ensure our systems remain resilient, performant, compliant, and ready to support the company's growth.
**AS A CLOUD INFRASTRUCTURE ENGINEER, YOU WILL:**
- Design, build, and operate secure, scalable cloud infrastructure and identity platforms across AWS and Azure.
- Implement and manage IAM, IGA, authentication, authorization, SSO, MFA, identity lifecycle management, and provisioning/deprovisioning solutions using modern identity platforms and standards such as SAML, OAuth2, OIDC, and SCIM.
- Develop automation, integrations, and infrastructure-as-code solutions using Terraform and programming languages such as Python, Go, or PowerShell.
- Design and implement security controls for AI-powered systems, including controlled, audited, and governed agent workflows, while contributing to core security services such as service identity, secrets management, key management, authentication, and authorization.
- Partner with Security and Engineering teams to deliver secure-by-design solutions, implement Zero Trust principles, and reduce operational friction.
- Write high-quality, reliable code, participate in architecture and code reviews, support critical production systems, and drive operational excellence through scalability, resiliency, and automation.
**OUR CLOUD INFRASTRUCTURE ENGINEER WILL HAVE:**
- 5+ years of experience in Cloud Infrastructure, Identity & Access Management (IAM), Identity Engineering, or Security Engineering.
- Hands-on experience with any Identity platforms - Okta, Microsoft Entra ID (Azure AD), and modern IAM/IGA platforms.
- Strong knowledge of authentication, authorization, identity lifecycle management, and federation protocols including SAML, OAuth2, OIDC, SCIM, and RBAC.
- Experience designing and operating identity and access controls across AWS and Azure environments, with experience building and operating production services on AWS, Azure, or GCP.
- Experience deploying and operating services on Kubernetes.
- Strong automation and coding skills with Python, Go, PowerShell, Terraform, or similar technologies.
- A security-first mindset with experience implementing Zero Trust, least-privilege access, and compliance frameworks such as SOC2, FedRAMP, or ITAR.
- An operational mindset with experience supporting and improving production services through monitoring, troubleshooting, incident response, and automation.
- Excellent collaboration and communication skills, with a proven ability to drive projects and influence technical decisions across teams.
Every Snowflake employee is expected to follow the company's confidentiality and security standards for handling sensitive data. Snowflake employees must abide by the company's data security plan as an essential part of their duties. It is every employee's duty to keep customer information secure and confidential.