×
Register Here to Apply for Jobs or Post Jobs. X

Cloud Engineer

Job in Boston, Suffolk County, Massachusetts, 02298, USA
Listing for: Brown Brothers Harriman & Co.
Full Time position
Listed on 2026-08-25
Job specializations:
  • IT/Tech
    Cloud Computing: Infrastructure & Operations, Cybersecurity, Azure, SRE/Site Reliability
Salary/Wage Range or Industry Benchmark: 110000 - 160000 USD Yearly USD 110000.00 160000.00 YEAR
Job Description & How to Apply Below

At BBH, Partnership is more than a form of ownership—it’s our approach to business and relationships. We know that supporting your professional and personal goals is the best way to help our clients and advance our business. We take that responsibility seriously. With a 200-year legacy and a shared passion for what’s next, this is the right place to build a fulfilling career.

About

Us

We are on a mission to rebuild how financial services firms create, manage, and execute their data integrations and transformations. Today that process stretches across multiple teams, tools, and handoffs - slow to build, expensive to maintain, and nearly impossible to change. We collapse it into a single AI-native platform that business users can operate without writing a ticket, while engineering teams retain the governance and security controls they require.

We're growing our founding team now.

About the Role

Our Cloud Engineer will own the infrastructure the entire platform runs on. This is a broad ownership role: cloud infrastructure on Azure, CI/CD pipelines, Kubernetes cluster management, security controls, and cost optimization - all under one remit. This is not a compliance-first security role. It is a cloud infrastructure role where security is a core engineering discipline built into everything, not layered on at the end.

You'll work closely with platform engineering to ensure the environment is reliable, observable, and built to scale - and you'll give the rest of the engineering team the confidence to ship quickly because the foundation they're building on is solid. You'll be one of the first cloud infrastructure hire, which means greenfield decisions and real ownership from day one.

Responsibilities
  • Infrastructure Design, deploy, and manage cloud infrastructure on Azure using Terraform and Git Ops practices
  • Own the networking layer - VNets, Subnets, private endpoints, and DNS configuration
  • Manage Azure resource organization, identity, and access management
  • Monitor and optimize cloud spending while maintaining performance and reliability
  • CI/CD & Developer

    Experience:

    Build and maintain CI/CD pipelines with automated testing, security scanning, and deployment automation. Primary tooling:
    Azure Dev Ops and/or Git Hub Actions. Work with engineering teams to ensure deployment workflows support fast, safe iteration. Manage environment configuration and secrets (Azure Key Vault)
  • Kubernetes & Containers:
    Manage AKS (Azure Kubernetes Service) cluster configuration, scaling, and lifecycle. Implement container security hardening, network policies, and RBAC. Establish patterns for workload deployment, resource management, and observability
  • Security & Compliance:
    Implement security controls across network, application, and data layers. Conduct vulnerability scanning and manage remediation. Threat modelling for platform components. Support SOC 2 compliance requirements as the company matures
  • Observability & Incident Response:
    Set up and maintain platform monitoring, alerting, and logging infrastructure. Develop and own incident response procedures. Ensure SLAs are measurable and maintained
Requirements
  • Experience 5+ years Dev Ops, SRE, or cloud infrastructure engineering in SaaS environments
  • Production infrastructure ownership - not just contributing to an infra team, but owning outcomes
  • Deep Azure expertise (primary cloud) - AKS, Azure Dev Ops, Azure Networking, Key Vault, Azure Monitor
  • Terraform - required; all infrastructure is managed as code
  • Kubernetes - cluster management, networking, RBAC, security hardening
  • CI/CD pipeline design
    - Git Hub Actions or Azure Dev Ops
  • Container security - image scanning, runtime security, secrets management
  • Networking - VNet design, private endpoints, DNS, firewall rules
  • Active user of AI tools for infrastructure and automation tasks
  • Nice to Have SOC 2 or PCI-DSS compliance experience
  • Azure security certifications (AZ-500, AZ-104) or equivalent (CISSP, CKS)
  • Financial services or compliance-sensitive infrastructure background
  • Experience with data encryption at scale
    - Azure Key Vault, envelope encryption, field-level encryption
  • AWS familiarity - we're Azure-primary but AWS awareness is useful
  • Terraform…
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary