Lead AWS Cloud Engineer
ISO New England is the independent system operator responsible for ensuring the safe and reliable flow of electricity in our region and planning for the future of the electric grid. We are at the forefront of New England’s ongoing transition to clean energy.
About the role
We are looking for a Lead AWS Cloud Engineer to design, build, and operate secure, multi-region AWS infrastructure. In this hands-on role, you will lead cloud platform standards, support architecture decisions, automate infrastructure with Terraform and GitOps, and mentor engineers while helping deliver reliable cloud services for a mission-critical environment.
Responsibilities
- Lead design, delivery, and operations for enterprise AWS cloud infrastructure and platform services
- Build and maintain secure, scalable multi-region AWS environments using Terraform, GitOps, and reusable modules
- Define and improve cloud standards, architecture patterns, security guardrails, and infrastructure-as-code practices
- Own core AWS services including identity, networking, security, observability, AWS Organizations, Control Tower, and AFT
- Develop automation for account vending, baseline customization, golden AMI pipelines, and cloud operations
- Partner with Security, Networking, Application, Cloud Platform, and Infrastructure Architecture teams to support production reliability and on-call operations
- Manage AWS Account Factory for Terraform (AFT) for automated account vending and baseline customization
Requirements
- Bachelor's degree in a related technical field or equivalent experience
- AWS Certified Solutions Architect – Associate or higher certification preferred; equivalent hands-on AWS expertise accepted
- 8+ years of infrastructure, cloud engineering, or platform engineering experience in regulated, critical infrastructure, or high-availability environments
- Advanced hands-on experience with AWS, Terraform, multi-account architecture, multi-region infrastructure, and infrastructure as code
- Strong AWS security and identity expertise, including IAM, IAM Identity Center, SCPs, KMS, least privilege, policy as code, and audit-ready configurations
- Experience with AWS networking and platform services such as VPC, Transit Gateway, Direct Connect, VPN, Network Firewall, Route 53, AWS Organizations, and Control Tower
- Proficiency with automation and serverless technologies, including Python, Lambda, EventBridge, Step Functions, SAM, Packer, Ansible, and EC2 Image Builder
- Experience with Terraform Cloud, Scalr, private module registries, GitOps workflows, or similar orchestration platforms
- Knowledge of hybrid cloud, observability, governance, CMDB integrations, CSPM tools, SIEM integrations, Splunk, Kinesis Firehose, and HEC pipelines
This employer will not sponsor applicants for work visas for this position (e.g., H-1B, F-1/CPT/OPT, O-1, E-3, TN, J, etc.). The successful candidate must reside in the U.S.; relocation will be required if outside the U.S.
Benefits
- Enhanced 401(k) and financial planning support
- Tuition reimbursement and professional development
- Wellness programs, including an onsite gym
- Flexible work hours
- Employee Business Networks
- Free coffee at our onsite café
- Hybrid work environment (3 days/week onsite)
- Distance-based relocation assistance
- Comprehensive health insurance (medical, dental, and vision)
- Flexible spending and health savings accounts
- Student debt benefit
- Life and AD&D insurance
- Disability insurance
- Critical illness and hospital indemnity benefits
- Paid time off and paid leave
- Wellness program
- Employee assistance program
Pay
The expected salary range for this position is $127,000 - $163,000 per year. This role is also eligible for an annual performance bonus.
Schedule
Hybrid work environment (3 days/week onsite).