- Company Name
- YouVersion
- Job Title
- Staff Cloud Infrastructure Engineer
- Job Description
-
**Job Title:** Staff Cloud Infrastructure Engineer
**Role Summary:**
Design, implement, and maintain secure, scalable, and reliable cloud infrastructure. Lead security‑focused reliability initiatives, partner with cybersecurity, architecture, DevOps, and software teams to embed secure‑by‑default practices across CI/CD pipelines and production environments, and mentor engineers on DevSecOps and incident response.
**Expectations:**
- Ensure cloud infrastructure integrity, performance, cost‑effectiveness, and resilience against modern threats.
- Drive security automation, observability, and incident response processes.
- Communicate complex technical concepts clearly to cross‑functional stakeholders.
- Provide technical leadership, mentorship, and independent problem‑solving.
**Key Responsibilities:**
- Design and operate secure, scalable cloud environments (IAM, VPC, key management, service hardening).
- Lead security initiatives: liability, observability, automation, and zero‑trust networking.
- Coordinate penetration testing, vulnerability assessments, and remediation with the Cybersecurity team.
- Build and maintain incident response and post‑mortem processes focused on security root causes.
- Automate monitoring, alerting, and security testing for infrastructure and applications.
- Implement secure coding practices and Infrastructure‑as‑Code (IaC) policies with software engineers.
- Mentor team members on secure systems design, DevSecOps best practices, and incident preparedness.
**Required Skills:**
- 7+ years in SRE, DevOps, or Platform Engineering with a strong security focus.
- Deep knowledge of cloud security principles (IAM, VPC design, key management, service hardening).
- Proficiency in at least one programming language (Go, Python, Java, etc.).
- Experience with container/Kubernetes security, service mesh security, and secure CI/CD pipelines.
- Strong leadership, communication, and collaborative abilities.
- Experience with system monitoring, incident response, post‑mortem analysis, and automated security testing.
- Familiarity with GDPR, CCPA, zero‑trust networking, and policy‑as‑code concepts (preferred).
**Required Education & Certifications:**
- High School Diploma or GED (minimum).
- Preferred certifications: CISSP, ISM, OSCP, Certified Kubernetes Security Specialist (CKS) or equivalent.