Cloud Foundation Engineer

Cloud Foundation Engineer

EPAM
EPAM
Málaga, Spain (Hybrid)CompetitiveHybridAdded 1 month ago🇬🇧English: Required

Need a visa? No sponsorship mentioned here. Browse visa jobs.

Requirements

  • Demonstrated experience owning enterprise-scale cloud infrastructure governance (IAM, control-plane design, security boundaries) — not limited to consuming services
  • Hands-on proficiency in cloud foundations for at least one major provider (Azure, AWS, or equivalent), including IAM/authentication design and enforcement, multi-tenant isolation and account/project governance, and networking design (private endpoints, routing, service connectivity)
  • Proven production-level coding skills in Python (beyond scripting), with strong knowledge in modular system architecture and error handling
  • Previous exposure to enterprise-scale infrastructure systems or software platforms, ideally in regulated industries
  • Strong analytical, problem-solving and strategic thinking skills
  • Ability to act as an escalation point for urgent issues and rapidly implement secure solutions

Benefits

  • Private health insurance
  • EPAM Employees Stock Purchase Plan
  • 100% paid sick leave
  • Referral Program
  • Professional certification
  • Language courses

Original Advert

We're looking for a Senior Cloud Foundation Engineer to join our team in Malaga, Spain in a hybrid working mode. In this role, you will own the design and implementation of critical cloud foundation services, ensuring secure governance, access controls and platform reliability for enterprise-scale infrastructure. You will work on core cloud governance challenges such as IAM policy architecture, multi-tenant isolation and service connectivity - not just CI/CD tooling - while enabling rapid, safe innovation in high-stakes financial environments.

Join a strategic engineering function tasked with building secure, scalable and resilient cloud foundations for one of the most sophisticated financial platforms in the world. You'll influence control-plane decisions that define how the entire organization consumes cloud services.

Responsibilities
  • Design and enforce IAM policies and least-privilege access frameworks across multi-account or multi-project environments
  • Ownership of cloud governance models and platform security boundaries to support multi-team environments at scale
  • Architect and implement multi-tenant isolation mechanisms, private networking and secure connectivity patterns
  • Develop production-grade solutions in Python, applying best practices for system design, modularity and error handling
  • Diagnose and resolve business-critical issues during on-call rotations, ensuring system resilience and reliability
  • Collaborate with security, infrastructure and application teams to maintain alignment with regulatory and compliance standards
  • Drive automation and tooling for governance, policy validation and access control enforcement
  • Continuously assess platform maturity and recommend improvements to strengthen security and reduce risk
Requirements
  • Demonstrated experience owning enterprise-scale cloud infrastructure governance (IAM, control-plane design, security boundaries) - not limited to consuming services
  • Hands-on proficiency in cloud foundations for at least one major provider (Azure, AWS, or equivalent), including IAM/authentication design and enforcement, multi-tenant isolation and account/project governance, and networking design (private endpoints, routing, service connectivity)
  • Proven production-level coding skills in Python (beyond scripting), with strong knowledge in modular system architecture and error handling
  • Previous exposure to enterprise-scale infrastructure systems or software platforms, ideally in regulated industries
  • Strong analytical, problem-solving and strategic thinking skills
  • Ability to act as an escalation point for urgent issues and rapidly implement secure solutions
Nice to have
  • Multi-cloud governance experience across Azure and AWS
  • Familiarity with compliance frameworks and their application within cloud foundations
  • Previous experience defining security and access governance for financial or mission-critical systems
  • Expertise in infrastructure policy automation tooling
Benefits
  • Private health insurance
  • EPAM Employees Stock Purchase Plan
  • 100% paid sick leave
  • Referral Program
  • Professional certification
  • Language courses

Application managed by EPAM