EPAM Systems logo
EPAM Systems
Posted 66 days agoVerified live 12h ago

Cloud Engineer

Brief overview

Remote
526 H-1B approvalsDept. of Labor
520 green cardsCertified filings
Microsoft AzureAzure Cloud ShellAzure Virtual NetworkPythonRole-based Access ControlEntra IDPrivileged Identity ManagementConditional Access PoliciesMicrosoft Defender for CloudAzure PolicyMicrosoft SentinelFedRAMP ComplianceFISMA ComplianceTerraformAzure Blob StorageAzure Database for PostgreSQLAzure Container Registry

About the company

EPAM Systems logo
EPAM Systemsepam.com

EPAM leverages its core engineering expertise as a leading global product development and digital platform engineering services company.

Visa sponsorship history

4 years sponsoring, last filed FY2026

Data powered by U.S. Department of Labor. This does not guarantee sponsorship for this specific role.
526H-1B approved
99%approval rate
140new H-1B hires
520PERM certified
$115,000median wage / yr
H-1B Petition ApprovalsVisas USCIS actually granted: the strongest sign the company sponsors.
2023195
2024183
2025120
202628
LCA Certified ApplicationsAn early filing step, not a visa approval: it signals intent, not confirmed sponsorship.
202374
202445
202523
202611
Green Card (PERM) FilingsCertified green card filings: a long-term commitment to international hires.
2023106
2024179
2025193
202642
Top sponsored roles
Senior Software EngineerSENIOR SOFTWARE ENGINEERLead Software EngineerLEAD SOFTWARE ENGINEERSenior Systems Engineer
Sponsored employees from
IndiaBelarusUkraineRussiaKazakhstan

Job description

Summary

EPAM Systems is seeking a Cloud Engineer to become part of their team. In this role, you will contribute to constructing and operationalizing the Azure cloud platform, establishing the core organizational framework and infrastructure required to host clients' products on Azure.

Responsibilities

  • Architect and roll out the Azure organizational structure, covering management groups, subscriptions, and resource groups, in line with enterprise landing zone best practices
  • Set up Azure identity and access management with Entra ID, RBAC role assignments, Privileged Identity Management (PIM), conditional access policies, and break-glass accounts
  • Roll out security and compliance solutions, including Microsoft Defender for Cloud, Azure Policy, and Microsoft Sentinel, to enable comprehensive logging and monitoring
  • Perform FedRAMP/FISMA compliance gap assessments throughout the Azure environment and put in place the required controls to address any gaps discovered
  • Plan and construct Azure networking foundations, encompassing VNets, subnets, NSGs, NAT Gateways, route tables, and hub-spoke or mesh topologies
  • Establish private connectivity approaches using Private Endpoints and Private DNS Zones for Azure managed services
  • Set up and configure Azure managed resources, such as Blob Storage accounts, Azure Database for PostgreSQL, Azure Container Registry, Azure Machine Learning Compute, and Log Analytics workspaces
  • Define User-Assigned Managed Identities (UAMI) and apply least-privilege role assignments to enable secure workload authentication
  • Develop and maintain all infrastructure as Terraform modules, applying GitOps workflows for change tracking and deployment
  • Partner with product engineering and Security teams to convert application needs into secure, compliant Azure infrastructure solutions

Skills

  • Bachelor's or Master's degree in Computer Science or a similar technical field, along with demonstrated experience in Azure cloud platform engineering, administration, or architecture
  • A minimum of 2 years of professional experience in a cloud engineering position
  • Practical experience overseeing cloud infrastructure through Infrastructure as Code with Terraform
  • Working experience designing and deploying Azure networking solutions, covering VNets, NSGs, Private Endpoints, and Private DNS Zones
  • Solid background in Azure identity and access management, including Entra ID, RBAC, and managed identities
  • Confident scripting and automation skills using Python, Shell, or Go
  • Outstanding verbal and written communication skills in English (B2+ level or above)
  • Background in working with FedRAMP, FISMA, or comparable federal compliance frameworks within a cloud setting
  • Azure certifications such as AZ-104 (Azure Administrator), AZ-500 (Azure Security Engineer), or AZ-305 (Azure Solutions Architect)
  • Practical experience with Azure managed data services, such as Azure Database for PostgreSQL, Blob Storage, and Azure Container Registry
  • Hands-on knowledge of Kubernetes and Azure Kubernetes Service (AKS) for managing containerized workloads
  • Applied experience with Azure security tooling, including Microsoft Defender for Cloud, Azure Policy, and Microsoft Sentinel
  • Familiarity with GitOps and CI/CD pipelines through GitHub Actions, Argo CD, or similar platforms
  • Strong communication skills in both writing and speech, with the capacity to produce clear and thorough technical documentation

Qualifications

Must Haves

  • Bachelor's or Master's degree in Computer Science or a similar technical field, along with demonstrated experience in Azure cloud platform engineering, administration, or architecture
  • A minimum of 2 years of professional experience in a cloud engineering position
  • Practical experience overseeing cloud infrastructure through Infrastructure as Code with Terraform
  • Working experience designing and deploying Azure networking solutions, covering VNets, NSGs, Private Endpoints, and Private DNS Zones
  • Solid background in Azure identity and access management, including Entra ID, RBAC, and managed identities
  • Confident scripting and automation skills using Python, Shell, or Go
  • Outstanding verbal and written communication skills in English (B2+ level or above)

Nice to Haves

  • Background in working with FedRAMP, FISMA, or comparable federal compliance frameworks within a cloud setting
  • Azure certifications such as AZ-104 (Azure Administrator), AZ-500 (Azure Security Engineer), or AZ-305 (Azure Solutions Architect)
  • Practical experience with Azure managed data services, such as Azure Database for PostgreSQL, Blob Storage, and Azure Container Registry
  • Hands-on knowledge of Kubernetes and Azure Kubernetes Service (AKS) for managing containerized workloads
  • Applied experience with Azure security tooling, including Microsoft Defender for Cloud, Azure Policy, and Microsoft Sentinel
  • Familiarity with GitOps and CI/CD pipelines through GitHub Actions, Argo CD, or similar platforms
  • Strong communication skills in both writing and speech, with the capacity to produce clear and thorough technical documentation

Benefits

  • International projects with top brands
  • Work with global teams of highly skilled, diverse peers
  • Healthcare benefits
  • Employee financial programs
  • Paid time off and sick leave
  • Upskilling, reskilling and certification courses
  • Unlimited access to the LinkedIn Learning library and 22,000+ courses
  • Global career opportunities
  • Volunteer and community involvement opportunities
  • EPAM Employee Groups
  • Award-winning culture recognized by Glassdoor, Newsweek and LinkedIn

More jobs like this