• Directly manage a small team of cloud engineers; handle hiring, coaching, performance reviews, career development, and administrative tasks (time-off, expense approvals)
• Facilitate team stand-ups, planning, and backlog refinement; break down Director-defined initiatives into well-scoped, actionable work items with the team
• Produce weekly status reports for leadership covering progress, blockers, and upcoming priorities
• Serve as primary point of contact for cloud governance requests, escalations, and issues from Engineering and other departments; collect requirements and feedback when implementing new systems, guardrails, or CSP configurations; communicate policy changes and best practices to development teams
• Develop, implement, and enforce cloud governance frameworks and policies across Azure, AWS, and SaaS platforms to meet regulatory and industry requirements
• Define and manage RBAC, tagging, and naming standards across cloud service providers
• Create and enforce policies using IaC and policy-as-code tooling (e.g., Azure Policy, AWS SCPs, Cloud Custodian, Terraform); design break-glass access and JIT privilege elevation workflows
• Oversee multiple Microsoft Entra tenants used by Engineering and other departments, including cross-tenant synchronization, identity lifecycle management (provisioning, deprovisioning, attribute-based scoping), and SAML/OIDC authentication for SaaS applications and CSPs
• Oversee hardware security key (YubiKey) lifecycle management - procurement, provisioning, and phishing-resistant authentication policies - for the FedRAMP environment
• Conduct security assessments and audits; perform root cause analysis on governance-related incidents; support compliance initiatives in regulated and compliance-heavy environments, including audit readiness and evidence collection
• Manage vendor relationships for cloud service providers and SaaS platforms within a shared responsibility model - including billing, contract negotiation, authentication configuration, and delegation to end users
• Monitor cloud usage and spending; identify and implement cost optimization strategies; evaluate licensing models and SKU options; provide regular reports on cloud costs and usage trends to senior leadership and Finance
• Contribute hands-on work as needed - writing Terraform, PowerShell, or Python for policy enforcement, automation, and infrastructure management; review infrastructure-as-code pull requests from the team; develop CI/CD pipelines for cloud policy and governance tooling deployment