Cloud IAM Platform Engineer
20 hours ago
Job description:
Job Description:
- Build and maintain GitHub Actions workflows for self-service provisioning of infrastructure, secrets, and IAM roles using Terraform.
- Develop reusable Terraform modules that encapsulate compliant patterns for deploying GCP, Azure, and on-prem infrastructure (VMs, networks, K8s clusters, etc.).
- Integrate with HashiCorp Vault to securely inject secrets into pipelines and support runtime retrieval for VMs and services.
- Support the GitHub repository onboarding process by automating bindings between repositories, identity pools, and service accounts.
- Enable secure OIDC-based pipeline authorization (e.g., GCP Workload Identity Federation, Azure Federated Credentials).
- Drive automation for certificate-based authentication for on-prem VMs accessing Vault and other internal services.
- Collaborate with platform, IAM, and security teams to implement compliant patterns for secrets, identity, and access governance.
- Design self-service onboarding workflows for developers and application teams across environments (EDP-GT, EDP-XL, TD Universe).
- Contribute to internal documentation and Confluence living strategies to ensure transparency and onboarding clarity.
Required Technical Skills:
- Build and maintain GitHub Actions workflows for self-service provisioning of infrastructure, secrets, and IAM roles using Terraform.
- Develop reusable Terraform modules that encapsulate compliant patterns for deploying GCP, Azure, and on-prem infrastructure (VMs, networks, K8s clusters, etc.).
- Support the GitHub repository onboarding process by automating bindings between repositories, identity pools, and service accounts.
- Enable secure OIDC-based pipeline authorization (e.g., GCP Workload Identity Federation, Azure Federated Credentials).
- Drive automation for certificate-based authentication for on-prem VMs accessing Vault and other internal services.
- Collaborate with platform, IAM, and security teams to implement compliant patterns for secrets, identity, and access governance.
- Design self-service onboarding workflows for developers and application teams across environments (EDP-GT, EDP-XL, TD Universe).
- Contribute to internal documentation and Confluence living strategies to ensure transparency and onboarding clarity.
Experience & Education:
- Undergraduate degree or Technical Certificate (Graduate degree preferred)
- Experience in DevOps, SRE, or Platform Engineering roles
- Experienced with Terraform (including module design, state management, and CI integration)
- Proficiency with GitHub Actions for CI/CD pipelines and automation workflows
- Deep knowledge of cloud IAM models (especially GCP Workload Identity Federation and Azure Entra ID)
- Understanding of cert-based authentication, secure software supply chain, and compliance automation
- Familiarity with Kubernetes, container-based deployments, and cloud-native network/security controls
- Comfortable working in multi-cloud environments (Azure, GCP) and hybrid setups (VMC2, on-prem)
- Strong scripting skills (e.g., Bash, Python, or Go)
Experience: 5-8 Years
.
Reinvent your world. We are building a modern Wipro. We are an end-to-end digital transformation partner with the boldest ambitions. To realize them, we need people inspired by reinvention. Of yourself, your career, and your skills. We want to see the constant evolution of our business and our industry. It has always been in our DNA - as the world around us changes, so do we. Join a business powered by purpose and a place that empowers you to design your own reinvention.
-
IAM Engineer
2 weeks ago
Toronto, Ontario, Canada Smart IT Frame LLC Full time $120,000 - $180,000 per yearDear candidates,GreetingsWe have a contract role with one of our clients. Kindly find the below details and let me know if you are interested.Role: PingFederate EngineerLocation: Toronto, ONType: ContractIn this role, you will:· Design, implement, and maintain integrations with identity platforms such as PingFederate, Entra ID, and Azure Identity tools.·...
-
Cloud Engineer
1 day ago
Toronto, Ontario, Canada Spait Infotech Private Limited Full timeJob Title: Cloud EngineerJob SummaryThe Cloud Engineer is responsible for designing, implementing, and maintaining cloud infrastructure to ensure scalability, security, and high availability. This role involves deploying and managing applications in the cloud, automating infrastructure, and collaborating with development, security, and operations teams to...
-
Director Cloud Engineering
1 day ago
Toronto, Ontario, Canada S&P Global Full time US$125,000 - US$210,000 per yearDirector Cloud Engineering – Security & IAMThe Team: S&P Dow Jones Indices is seeking a Director, Cloud Engineering to join our Infrastructure Engineering team as a pivotal member, responsible for managing Identity and Access Management across Cloud and co-located infrastructure. This role demands a seasoned engineer who excels in both independent work and...
-
GCP Cloud Engineer
1 day ago
Toronto, Ontario, Canada Apexon Full time $120,000 - $180,000 per yearApexon is a digital-first technology services firm backed by Goldman Sachs Asset Management and Everstone Capital. It specializes in accelerating business transformation and delivering human-centric digital experiences. Apexon provides solutions in areas such as digital experience, analytics, AI, and cloud technologies. Additionally, it is recognized as a...
-
Cyber Security Engineer PAM/IAM
1 week ago
Toronto, Ontario, Canada Nets-international Communication Full time $66,171 - $153,517 per yearJob OverviewThe Cybersecurity Engineer (PAM / IAM / Cloud Security) is responsible for implementing, managing, and securing identity and access systems across on-premises and cloud environments. This role ensures that privileged accounts, user access, and cloud resources are properly secured, monitored, and compliant with organizational policies and...
-
IAM Engineer I
7 days ago
Toronto, Ontario, Canada TD Full time $76,800 - $115,200 per yearWork Location:Toronto, Ontario, Canada*Hours:*37.5*Line Of Business:*Technology Solutions*Pay Details:*$76,800 - $115,200 CADThis role is eligible for a discretionary variable compensation award that considers business and individual performance.TD is committed to providing fair and equitable compensation opportunities to all colleagues. Growth opportunities...
-
Cloud Platform Engineer
2 weeks ago
Toronto, Ontario, Canada League Full time $90,000 - $120,000 per yearAbout LeagueFounded in 2014, League is the leading healthcare consumer experience (CX) platform, powered by artificial intelligence (AI), reaching more than 63 million people around the world and delivering the highest level of personalization in the industry. Payers, providers, and consumer health partners build on League's platform to deliver...
-
DevOps - Platform Engineer
1 week ago
Toronto, Ontario, Canada Nue Careers Full time $120,000 - $180,000 per yearWhy you'll love this NUE opportunityAt , we're on a mission to revolutionize revenue operations for modern businesses.We're looking for a Platform Engineer who's passionate about building and scaling systems that drive meaningful business outcomes.In this role, you'll take ownership of the cloud infrastructure on AWS/k8s, Salesforce Platform Tooling & most...
-
DevOps - Platform Engineer
1 week ago
Toronto, Ontario, Canada Nue Full time $120,000 - $180,000 per yearWhy you'll love this NUE opportunityAt, we're on a mission to revolutionize revenue operations for modern businesses.We're looking for aPlatform Engineerwho's passionate about building and scaling systems that drive meaningful business outcomes.In this role, you'll take ownership of the cloud infrastructure onAWS/k8s, Salesforce Platform Tooling& most...
-
Cloud Platform Engineering
6 days ago
Toronto, Ontario, Canada Epsilon Solutions Ltd. Full time $80,000 - $120,000 per yearJob Role: Cloud Platform EngineeringLocation: Toronto, Ontario, CanadaJob Type: ContractJob Description:Must have -Azure cloud platform admin experience, creating resources using Terraform, network configuration, creating Azure instances etcPython, PySpark, SQL, ADF, Databricks, Fabrics, Function apps, webappsDatabricks admin and developer experience, power...