At Dragos, the mission is personal. The systems we protect deliver the water you drink, power your home, and keep the hospitals your community depends on running. Those critical infrastructure systems that power our civilization around the world are under attack every day by adversaries. When those systems fail, people are immediately at risk. We are the global leader in xOT cybersecurity, combining technology, threat intelligence, and expert services. The people here chose this work because they understand what is at stake. Here, you will find a remote-first mission-driven team across North America, Europe, the Middle East, and APAC built on authenticity, transparency, and trust. If safeguarding the systems that protect your family, friends, and community is the kind of work that matters to you, you are in the right place.Â
About the RoleÂ
We are seeking an experienced Senior Cloud Operations Engineer to join our Cloud Skill Community. This role owns the operational health of the Dragos customer cloud fleet across Azure, AWS, and GCP -- both Dragos-managed and customer-managed environments. You will drive fleet reliability, deployment automation, and day-to-day operations at scale, bringing a strong infrastructure-as-code mindset and a bias toward automation and repeatability.Â
ResponsibilitiesÂ
- Operate, maintain, and improve the Dragos cloud fleet across Azure, AWS, and GCPÂ
- Own the full customer environment lifecycle -- onboarding, configuration, upgrades, and off boardingÂ
- Build and maintain Terraform-based infrastructure-as-code for customer environment provisioning and fleet standardizationÂ
- Manage fleet health, drift detection, patching, and version lifecycle management at customer scaleÂ
- Design and enforce multi-tenant isolation patterns -- blast radius containment, RBAC at scale, and cross-account access controlsÂ
- Configure and maintain cloud networking components across all three providers (VPCs/VNets, peering, transit gateways, DNS, firewalls, load balancers)Â
- Manage cloud-to-OT/on-prem connectivity for customer environmentsÂ
- Implement and maintain IAM, secrets management, and compliance posture across cloud providersÂ
- Build and maintain Datadog observability -- monitors, dashboards, log pipelines, and SLOsÂ
- Participate in an on-call rotation (PagerDuty) for the Dragos cloud fleet -- triage, respond to, and resolve production incidents across customer environmentsÂ
- Drive SRE practices: define SLOs, manage error budgets, maintain runbooks, and lead post-incident reviewsÂ
- Support audit and compliance activities including evidence collection for FedRAMP, SOC2, and customer-specific requirementsÂ
- Identify and eliminate toil through automation and process improvementÂ
QualificationsÂ
- 4+ years of hands-on cloud operations experience across one or more of Azure, AWS, or GCP
- Cybersecurity Experience
- Strong proficiency with Terraform for infrastructure-as-code (primary IaC tool at Dragos)Â
- Experience operating cloud environments at scale -- fleet management, patching, upgrades, drift detectionÂ
- Hands-on experience with multi-tenant cloud architectures and customer-facing environment managementÂ
- Solid knowledge of cloud networking: VPCs/VNets, peering, transit gateways, DNS, firewalls, and hybrid connectivityÂ
- Experience with IAM across AWS, Azure Entra ID, and/or GCP -- roles, policies, federation, SSOÂ
- Proficiency with Datadog for monitoring, alerting, dashboards, and log pipelinesÂ
- Comfort with on-call responsibilities -- this role participates in a PagerDuty rotation for the customer cloud fleetÂ
- Experience with SRE practices: SLO definition, error budget management, incident response, and blameless post-mortemsÂ
- Strong scripting skills in Python and/or BashÂ
- Familiarity with compliance frameworks (FedRAMP, SOC2, NIST CSF) and audit evidence collectionÂ
- Strong ownership mindset and accountability for production stabilityÂ
- Excellent communication, documentation, and collaboration skillsÂ
Preferred QualificationsÂ
- Experience with all three major cloud providers: Azure, AWS, and GCPÂ
- Experience managing cloud environments for external customers (customer-managed and vendor-managed models)Â
- Familiarity with cloud-to-OT/ICS network connectivity and segmentationÂ
- Experience with secrets management tooling: HashiCorp Vault, AWS Secrets Manager, Azure Key Vault, GCP Secret ManagerÂ
- Experience with cloud-native fleet tools: AWS Systems Manager, Azure Arc, GCP Fleet ManagementÂ
- Proficiency with policy-as-code tools (OPA, Sentinel, AWS SCPs, Azure Policy)Â
- Experience with FinOps practices and cloud cost optimizationÂ
- Familiarity with Cloud Security Posture Management (CSPM) toolingÂ
- Experience with CI/CD pipeline authoring (GitHub Actions)Â
- Passion for automation and continuously improving operational efficiencyÂ
Compensation:Â
- Competitive Equity Package Â
- Comprehensive Benefits PlanÂ
Â
#LI-JF1 Â Â
#LI-NH1 Â
Dragos is an Equal Opportunity Employer and considers applicants for employment without regard to race, color, religion, sex, orientation, national origin, age, disability, genetics, or any other basis forbidden under federal, state, or local laws. All new hires must pass a background check as a condition of employment.