Overview
Join Twilio’s Cloud Native Foundations Team as a Software Engineer, Platform Access (L2), focused on identity, governance, and automated access control across multi-cloud environments. Design, build, and operate access controls and platform security tools at scale.
What you'll do
- Help design, build, and operate automations and access tools that streamline developer workflows while keeping multi-cloud environments secure.
- Work with security and technical leadership to turn well-scoped tasks into working code.
- Participate in code reviews and follow established patterns, testing standards, and policy-as-code frameworks across the platform.
- Support multi-cloud access infrastructure spanning AWS, Azure, and GCP accounts using Infrastructure as Code (Terraform).
- Help maintain least-privilege IAM policies, identity federation, role provisioning, and automated lifecycle workflows across hundreds of cloud accounts.
- Help maintain observability coverage, including metrics, alerts, and basic distributed tracing, across core data pipelines.
- Build awareness of secure architectural practices and IAM best practices.
- Flag access drift, technical debt, security vulnerabilities, and platform issues to your team as you encounter them.
- Actively seek feedback and mentorship from senior engineers.
- Participate in sprint planning and share what you learn with peers as you grow into a more senior role.
What you'll need
- 1–2+ years of professional software engineering or DevOps/Platform engineering experience, with practical exposure to multi-cloud environments, Identity & Access Management (IAM), or platform automation.
- Practical experience with, or a strong desire to learn, AI-assisted development tools, such as Claude Code or GitHub Copilot, to help write code, automate testing, and support debugging workflows.
- Practical experience or familiarity with Terraform, Harness, or similar IaC tools to manage cloud resources and access permissions programmatically.
- Experience with cloud environments, including basic exposure to account management, IAM permissions, or core services in at least one major provider: AWS, Microsoft Azure, or Google Cloud Platform (GCP).
- Working knowledge of at least one of Shell, Terraform, YAML, or Go (Golang), with a willingness to build proficiency across the rest.
- Solid understanding of core security concepts, including authentication, authorization, least-privilege principles, and secrets management.
- An eagerness to build self-service, developer-friendly platform tooling.
Nice to have
- General familiarity with multi-account/multi-project cloud architecture.
- Familiarity with centralized identity federation, SAML, OIDC, or Okta integration with cloud service providers.
- Hands-on experience with containerized workloads, including Docker or Kubernetes, or managing access to Kubernetes clusters, including EKS/AKS/GKE RBAC.
- Interest in automated cloud governance tools, account vending machines, or identity lifecycle management at scale.
- Coursework or personal projects involving distributed systems, cloud security, or API development.
- Enthusiasm for working across multi-cloud environments and expanding hands-on depth across AWS, Azure, and GCP over time.
Details
- Remote role in the United States; not eligible to be hired in CA, CT, NJ, NY, PA, or WA.
- Occasional travel may be required for project or team in-person meetings.
- Remote-first work may include ad-hoc in-person team gatherings, functional off-sites, or customer meetings.
Read the full description and apply on the company’s own careers page.