2mo ago

Cloud Governance Engineer

PortugalPortugalRemotemid
OtherEngineer
4 views0 saves0 applied

Quick Summary

Key Responsibilities

roughly 70% Google Cloud, with AWS and Azure in scope as secondary platforms. GCP is where the majority of the work sits, so hands-on GCP experience is a hard

Requirements Summary

intake, risk assessment, time-bound approval, expiry, and follow-up Partner with Security to enforce Identity and Access Management and network security standards across the

Technical Tools
OtherEngineer

Join us in bringing joy to customer experience.  Five9 is a leading provider of cloud contact center software, bringing the power of cloud innovation to customers worldwide.   

Living our values everyday results in our team-first culture and enables us to innovate, grow, and thrive while enjoying the journey together. We celebrate diversity and foster an inclusive environment, empowering our employees to be their authentic selves. 

This is a governance role, not a build-and-operate role. You will spend your time defining the rules our cloud estate runs by, making those rules enforceable in code, and proving they are working. You will write standards that other engineering teams have to follow, and you will be the person who explains to Finance, Security, and Product leadership why a given risk matters and what it will cost to fix or ignore.

If what you want is to build and run infrastructure, this is not the right seat. If you want to own how a multi-cloud estate is governed, it is.

 

Responsibilities

~1 min read
  • →Define, document, and maintain cloud governance policies and standards across GCP, AWS, and Azure, and turn them into enforceable technical controls using GCP Organization Policy, AWS SCPs and Config, and Azure Policy
  • →Own the exception and waiver process end to end: intake, risk assessment, time-bound approval, expiry, and follow-up
  • →Partner with Security to enforce Identity and Access Management and network security standards across the organization, and review access models for least privilege
  • →Build and maintain dashboards that track governance metrics: security posture, key and credential rotation, policy violations, configuration drift, and time to remediation
  • →Own resource labeling and tagging standards and enforce them, so that cost, ownership, and environment can be attributed reliably
  • →Drive cost governance: spend visibility and showback, anomaly detection, commitment and discount coverage reviews, and surfacing waste to the teams that own it
  • →Collaborate with IT, Finance, Security, DevOps, Cloud Architects, and Product Engineering to keep governance controls consistent across all environments, and translate technical risk into language those stakeholders can act on
  • →Work with stakeholders to define service level objectives, key performance indicators, and metrics for operational efficiency
  • →Support the review of new third-party cloud services before they enter the estate

 

Requirements

~2 min read
  • 4+ years working in public cloud environments, including at least 2 years hands-on with GCP
  • Hands-on experience implementing preventative guardrails in at least one hyperscaler (GCP Organization Policy, AWS SCPs or Config, Azure Policy). You should be able to walk us through a policy you rolled out, what it broke, and how you handled the fallout
  • Experience authoring a cloud policy or standard that other teams were required to follow, not only implementing one written elsewhere
  • Experience running or contributing to an exception or waiver process for cloud controls
  • Working knowledge of cloud IAM, network security, encryption, and key and secret management
  • Infrastructure-as-Code with Terraform, and comfort extending it to policy-as-code
  • Python for automation, enforcement, and reporting
  • Demonstrated ability to explain a technical risk to a non-technical audience and drive a decision. This is a core part of the job and we will test it during the interview process

 

  • Google Cloud Professional Cloud Security Engineer or Professional Cloud Architect certification
  • Policy-as-code tooling: OPA, Conftest, Sentinel
  • Cloud cost tooling: GCP billing exports and BigQuery, AWS Cost Explorer, or a third-party platform such as Cloudability or Apptio
  • Familiarity with the control frameworks our platform is audited against (SOC 2, HIPAA, GDPR). You will not own audits in this role, but context helps you prioritize
  • Kubernetes governance and policy enforcement
  • Okta integration, Microsoft Active Directory Federation Services
  • Bachelor's degree in Computer Science, Engineering, or another relevant technical field
  • Result oriented, self-starter

 

What We Offer

~1 min read
✓Five9 Equity Programs
✓Bonus Scheme
✓10% Flex Benefit
✓Meal Allowance
✓Medical Insurance
✓Life Insurance
✓25 day Annual Leave + Public Holidays

Location & Eligibility

Where is the job
Portugal
Remote within one country
Who can apply
Open to applicants worldwide

Listing Details

Posted
July 23, 2026
First seen
July 23, 2026
Last seen
October 8, 2026

Posting Health

Days active
77
Repost count
0
Trust Level
39%
Scored at
October 9, 2026

Signal breakdown

freshnesssource trustcontent trustemployer trust

Five9 is a leading provider of cloud contact centre software.

Employees
3k+
Founded
2001
Domain
View company profile
Newsletter

Stay ahead of the market

Get the latest job openings, salary trends, and hiring insights delivered to your inbox every week.

A
B
C
D
Join 12,000+ marketers

No spam. Unsubscribe at any time.

Cloud Governance Engineer