Lead Cloud Infrastructure Engineer

Wells Fargo
Woodbridge Township, United States of America
1 month ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Languages
English
Experience level
Senior
Compensation
$ 224K

Job location

Remote
Woodbridge Township, United States of America

Tech stack

API
Artificial Intelligence
Application Performance Management
Architectural Patterns
Azure
Bash
Cloud Computing
Continuous Integration
Data as a Services
Data Masking
DevOps
Django
Github
Identity and Access Management
Python
PostgreSQL
Microsoft SQL Server
SQL Azure
Powershell
Software Engineering
SQL Databases
Tokenization
Management of Software Versions
Data Logging
Scripting (Bash/Python/Go/Ruby)
Enterprise Software Applications
Cloud Platform System
Cloud Monitoring
React
Firewalls (Computer Science)
Build Management
Hashicorp
Terraform
Jenkins
Databricks
Microservices

Job description

  • Design and build internal applications, dashboards, and APIs for cloud policy, firewall, and data-protection services using ReactJS, Python, Django, Postgres SQL and Azure SQL Managed Instance (SQL MI).
  • Create secure, testable backend services (REST), integrate with cloud policy/KMS platforms, and automation systems.
  • Build reusable UI components and front-end frameworks that support consistent user experiences across policy, firewall, and data-protection dashboards.
  • Own the full API lifecycle, including design, versioning, documentation, and long-term maintenance, to support scalable integration patterns across engineering teams.
  • Implement monitoring and observability for applications and services using tools such as Application Insights, Azure Monitor, and Cloud Logging to ensure reliability and performance.
  • Ensure strong developer experience (DX) through intuitive APIs, documentation, self-service workflows, and responsive support patterns., * Engineer and operationalize policy frameworks across Azure and GCP (e.g., Azure Policy, GCP Organization Policy, HashiCorp Sentinel), including remediation, exemptions, compliance mapping.
  • Resolve complex cloud-control challenges such as VPC-SC errors and guardrail conflicts.
  • Contribute to companywide standards/best practices, landing-zone patterns, and "secure-by-default" resource templates.

Data protection engineering

  • Engineer, operate, and automate key and secret management and data protection services (e.g., Azure Key Vault, Managed HSM, Cloud KMS; rotation, audit, monitoring) for Azure and GCP platforms.
  • Provide Tier-3 engineering support, incident response, and vendor escalation for encryption technologies to ensure resiliency and alignment with enterprise security requirements.

Platform, IaC & DevOps:

  • Design, code, test, and ship cloud infrastructure using Terraform (modules, registries, versioning, policy-as-code) with GitHub and CI/CD (GitHub Actions, Jenkins, Harness).
  • Implement event-driven automation (Functions/Logic Apps/Event Grid; Pub/Sub equivalents), IaC testing (tflint, compliance tests), and Terraform Enterprise workflows for scale.

Leadership & collaboration:

  • Lead complex, cross-org cloud initiatives; act as an escalation point; mentor engineers; and collaborate with partner teams and vendors in a globally distributed environment.
  • Define architectural patterns and technical strategy for cloud policy, compliance automation, and data-protection services, ensuring solutions scale across multiple cloud platforms and engineering teams.

Requirements

Wells Fargo is seeking a Lead Infrastructure Engineer on the Cloud Policy and Data Protection Engineering team within Core Infrastructure Services (CIS). CIS accelerates enterprise application transformation by empowering engineers to build and run secure, scalable applications on cloud platforms. This role requires strong software engineering fundamentals, extensive automation experience, and the ability to design, build, and lead delivery of enterprise cloud compliance and data protection capabilities. Must have extensive experience with scripting and automation practices., * 5+ years of Software Engineering experience, or equivalent demonstrated through one or a combination of the following: work experience, training, military experience, education

  • 3+ years full-stack development (ReactJS, Python, Django, MI/ SQL Server)
  • 3+ years IaC with Terraform and GitHub (module development, versioning, reusable patterns, and compliance controls)
  • 3+ years cloud platform security services
  • 3+ years DevOps/CI-CD engineering (GitHub Actions, Jenkins, Harness)

Desired Qualifications:

  • 3 yrs with Azure or GCP platform security services
  • Scripting in PowerShell/Bash
  • Experience with key/secret management and encryption technologies
  • IAM/Entra ID, service accounts, managed identities, least-privilege
  • Experience automating and managing Palo Alto cloud firewall policies through Terraform, GitHub workflows, or other CI/CD platforms
  • Cloud networking fundamentals
  • Terraform Enterprise, remote state/workspaces, policy-as-code
  • Event-driven automation and modern authentication
  • CSPM and Cloud Control Matrix familiarity
  • Azure data services experience (Private Link, Key Vault, Data Factory, Purview, Databricks, Synapse)
  • Experience with paved-path/internal platform module development
  • Azure and/or GCP certifications (preferred professional level)
  • DLP, data masking, tokenization
  • AI/GenAI for cloud automation

Benefits & conditions

Wells Fargo provides eligible employees with a comprehensive set of benefits, many of which are listed below. Visit Benefits - Wells Fargo Jobs (https://www.wellsfargojobs.com/en/life-at-wells-fargo/benefits) for an overview of the following benefit plans and programs offered to employees.

  • Health benefits
  • 401(k) Plan
  • Paid time off
  • Disability benefits
  • Life insurance, critical illness insurance, and accident insurance
  • Parental leave
  • Critical caregiving leave
  • Discounts and savings
  • Commuter benefits
  • Tuition reimbursement
  • Scholarships for dependent children
  • Adoption reimbursement

Posting End Date:

20 Mar 2026

***** Job posting may come down early due to volume of applicants.

We Value Equal Opportunity

Wells Fargo is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, status as a protected veteran, or any other legally protected characteristic.

Employees support our focus on building strong customer relationships balanced with a strong risk mitigating and compliance-driven culture which firmly establishes those disciplines as critical to the success of our customers and company. They are accountable for execution of all applicable risk programs (Credit, Market, Financial Crimes, Operational, Regulatory Compliance), which includes effectively following and adhering to applicable Wells Fargo policies and procedures, appropriately fulfilling risk and compliance obligations, timely and effective escalation and remediation of issues, and making sound risk decisions. There is emphasis on proactive monitoring, governance, risk identification and escalation, as well as making sound risk decisions commensurate with the business unit's risk appetite and all risk and compliance program requirements.

About the company

Wells Fargo maintains a drug free workplace. Please see our Drug and Alcohol Policy (https://www.wellsfargojobs.com/en/wells-fargo-drug-and-alcohol-policy) to learn more. Wells Fargo Recruitment and Hiring Requirements: a. Third-Party recordings are prohibited unless authorized by Wells Fargo. b. Wells Fargo requires you to directly represent your own experiences during the recruiting and hiring process.

Apply for this position