Job Details
- Fully remote role with quarterly in-person team sessions (likely in Prague)
- Full-time contract
- Initial 6 months with possible extension
- US working hours required (minimum overlap: 7:00–10:00 CET)
Role Overview
We are looking for a Cloud Platform Engineer to support the deployment of a managed GenAI SaaS platform into regulated client environments using a hybrid multi-cloud model.
The Azure-based control plane is already built and operational. Your focus will be on creating and managing client-side data-plane environments, starting with GCP, and integrating them securely with the existing Azure platform.
You will work closely with a Solution Architect who owns the overall design and provides technical guidance, ensuring delivery follows a clear architectural vision.
Key Responsibilities
- Build and configure secure client environments in GCP (and other clouds when required)
- Design landing zones, security policies, and tenant onboarding processes
- Implement Infrastructure-as-Code using Terraform and GitOps workflows (Flux/ArgoCD)
- Configure IAM, governance, and policy guardrails to separate platform management from client data access
- Enable secure multi-cloud connectivity between GCP data planes and Azure control plane
- Implement cross-cloud monitoring and telemetry solutions (Grafana/Telegraf/Prometheus)
- Define technical prerequisites for client onboarding (networking, security, compliance)
- Support upgrades, troubleshooting, and operational improvements across environments
Required Experience
- Strong hands-on experience with GCP (Resource Hierarchy, IAM, Organization Policy, VPC Service Controls, GKE)
- Experience building multi-tenant / multi-client cloud platforms
- Knowledge of hybrid and multi-cloud architectures (especially Azure + GCP integration)
- Expertise in cloud governance, security policies, and access control models
- Strong Terraform experience in production environments
- Experience with GitOps and CI/CD (Flux, ArgoCD, or similar)
- Working knowledge of Azure (Management Groups, Azure Policy, Azure Lighthouse)
- Understanding of data residency, sovereignty, and compliance requirements
Nice to Have
- AWS experience (Organizations, Control Tower, SCPs)
- Observability tooling knowledge (Grafana, Telegraf, Prometheus)
- Encryption and key management experience (KMS, Key Vault, CMEK/CMK)
- Experience with GenAI / RAG platforms
- Background in regulated industries (e.g., financial services)
- Relevant cloud certifications (GCP Professional Cloud Architect/DevOps, Azure certifications)
SNI sp. z o.o. will process personal data for the purpose of the recruitment process in accordance with Data Privacy Policy. The data may also be stored and processed for future recruitment purposes, in accordance with the given consent.