Principal Cloud Architect – AWS
Location
United States
Posted
31 days ago
Salary
Not specified
Bachelor Degree10 yrs expEnglishAWSCloudTerraform
Job Description
• Cloud strategy & target-state architecture: Define the multi-year AWS platform strategy, principles, and “golden paths” for teams to build on.
• Security & compliance architecture: Own cloud security posture and compliance-by-design for HIPAA and audit readiness (e.g., SOC 2, HITRUST).
• AWS landing zone & governance: Design and operate a multi-account AWS environment (Control Tower/Organizations), including guardrails, identity, network segmentation, and centralized logging.
• Reliability & operational excellence: Set SRE-aligned practices for observability, incident response, disaster recovery, and operational readiness.
• Platform enablement: Create reusable Infrastructure-as-Code modules, templates, and reference architectures to accelerate safe delivery across teams.
• FinOps & cost governance: Implement cost allocation, tagging, budgeting, and optimization practices that improve visibility and reduce total cost of ownership.
• Design and evolve a secure multi-account AWS environment (Control Tower/Organizations) with clear boundaries for production/non-production, workloads, and data sensitivity.
• Define and socialize reference architectures for core workload types (web apps, APIs, data pipelines, event-driven/serverless), including secure defaults and “golden paths.”
• Establish architectural standards and governance (design reviews, threat modeling, pre-launch checklists) that improve quality without slowing delivery.
• Build and maintain infrastructure as code and delivery automation (IaC modules, promotion strategies, automated checks) in partnership with engineering.
• Implement cloud security controls for PHI and sensitive data (identity, encryption, secrets, logging/detection, auditability) and drive continuous posture improvement.
• Partner with hospital IT/security teams to implement secure data exchange links, including joint testing, documentation, and operational runbooks.
• Operationalize reliability: SLIs/SLOs, observability, alerting, incident response, and DR readiness - improving time-to-detect and time-to-recover.
• Evaluate emerging cloud and AI capabilities and run focused POCs when they materially improve security, reliability, cost, or developer velocity.
Job Requirements
- 10+ years designing and delivering cloud solutions, with deep hands-on AWS experience running production workloads.
- Experience with healthcare interoperability standards and integrations (FHIR, HL7) and/or healthcare data platforms.
- Track record architecting secure, highly available, audit-ready systems in regulated industries (healthcare strongly preferred).
- Strong experience with AWS multi-account governance (Control Tower/Organizations); deep VPC/networking fundamentals (segmentation, routing, secure connectivity such as VPN/Direct Connect).
- Strong DevSecOps/IaC + CI/CD experience (Terraform/CloudFormation/CDK; GitHub Actions preferred) and ability to set standards teams actually adopt.
- Experience with containers/orchestration and serverless patterns.
- Expertise in AWS security primitives and tooling (IAM/least privilege, KMS, secrets, logging/monitoring; Security Hub/GuardDuty/Config/CloudTrail; zero trust concepts).
- Exceptional communication: can align stakeholders and explain trade-offs clearly.
- Keeps current on emerging cloud and AI advancements and translates them into pragmatic improvements in architecture, operations, and delivery.
Benefits
- Technology plays a critical supporting role in how our teams deliver therapy - powering day-to-day clinical operations and integrating with our health system partners. We work with sensitive data and operate in a high-trust environment, so reliability, security, and engineering quality matter as much as speed. By reducing friction, errors, and delays in infusion center workflows, our technology helps care teams deliver therapy more smoothly and consistently
- High ownership and high trust: you’ll have autonomy and real impact.
- AI-forward, accountability-first: we move faster with AI, but we don’t outsource responsibility.
- Collaborative and mission-driven: we build software that improves infusion center operations and ultimately improves patient care and outcomes.
Related Guides
Related Categories
Related Job Pages
More Cloud Engineer Jobs
Cloud Engineer
ClassLinkClassLink’s mission is to empower educators to improve learning through innovative systems and services.
Cloud Engineer32 days ago
Full TimeRemoteTeam 51-200Since 1998H1B Sponsor
Cloud Engineer (IC2) designing and maintaining AWS cloud infrastructure at ClassLink
AWSCloudDNS
Cloud Engineer32 days ago
Full TimeRemoteTeam 1,001-5,000H1B No Sponsor
Cloud Ops Administrator managing CBN STI cloud solutions for North American customers
AnsibleAzureCloudDockerKubernetesLinuxPuppetTerraformVMware
New York + 4 moreAll locations: New York, North Carolina, South Carolina, Virginia, Wisconsin
Cloud Engineer32 days ago
Full TimeRemoteTeam 10,001+Since 1993H1B Sponsor
Director of Sales Business Development leading partnerships in cloud services
AWSCloud
Cloud Engineer33 days ago
Full TimeRemoteTeam 10,001+Since 1962H1B No Sponsor
Cloud Engineer designing and implementing cloud systems for USTRANSCOM
AWSAzureCloudDockerJavaJavaScriptKubernetesPythonTerraform