SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.
Lambda is building the world's leading AI cloud infrastructure platform, serving tens of thousands of customers from AI researchers to enterprises and hyperscalers. The Cloud Foundations team manages the account, access, and network foundation that Lambda's infrastructure runs on, implementing governance and access controls in line with company policies.
In this role, you will own and evolve the infrastructure-as-code execution platform (Terraform, Atlantis), designing how infrastructure changes are proposed, reviewed, and applied across the company. You'll design and operate Lambda's cloud account, access, and IAM structure, including organizational hierarchy, provisioning, and permission models. You'll own the cloud network foundation—VPCs, Transit Gateway, and DNS—and establish the patterns other teams build on.
You'll drive AWS cloud governance through tagging standards, compliance guardrails, and cost visibility, while implementing least-privilege access and compliance automation to replace manual work with self-service capabilities. This is a new team, and you'll help shape how it operates: its scope, priorities, and service boundaries. You'll participate in an on-call rotation and keep the systems you own well-documented, reliable, and observable.
Working closely with Security, GRC, IT, and engineering teams that consume the foundation, you'll turn policy into working controls and paved paths so hundreds of engineers can safely self-serve.
REQUIREMENTS:
- 6+ years of experience in cloud infrastructure, cloud platform, or cloud security engineering, or closely related discipline
- Deep experience managing AWS at scale: multi-account organizations, IAM and permission boundaries, SCPs, and resource organization
- Strong foundation in infrastructure-as-code (Terraform) and tooling: modules, state management, automated plan/apply workflows
- Solid cloud networking fundamentals: VPC design, transit and hybrid connectivity, DNS, edge/CDN configuration
- Comfortable writing automation and tooling in Go and/or Python, treating it as a product with real quality standards
- Use AI tools as a natural part of your workflow, holding their output to the same bar as your own
- Build for the many, not for one team or use case
- Comfortable with ambiguity and clarifying ownership
- Ability to distill the right problem from noise and ask the why behind the why
- Own what you build past shipping: monitor, measure impact, and act on learnings
- Attention to detail and commitment to smooth operations
NICE TO HAVE:
- Experience building agentic workflows that automate infrastructure operations or governance
- Experience implementing controls for compliance programs (SOC 2, ISO 27001) without manual toil
- Cloud cost management and FinOps experience
- Hands-on experience with Azure, GCP, or OCI alongside AWS