At OneStream, we're on a mission to empower every Finance organization and professional to exceed their potential. Our global teams span continents, cultures, and time zones, united by a shared purpose as we build the operating system for modern Finance and help organizations move with greater speed, clarity, and confidence.
That mission comes to life through our people. Behind every innovation, customer success, and milestone are talented people working together to make a difference. That'swhywe'relooking for people who arebold enough to think big, authentic in how they lead and collaborate, curious aboutwhat'spossible, and committed to delivering results.
Want a closer look before you apply? Explore our Careers site to learn more about our people, culture, and benefits.
Summary
OneStream Software is a hyper-growth SaaS company focused on financial and operational data analytics for the largest companies in the world. We host our software on the Microsoft Azure cloud in many regions around the world using a variety of Azure technologies. This position focuses on the implementation of automations used to deliver, manage, and secure our cloud environments. If you enjoy staying at the forefront of technology and automating infrastructure deployments, then this is the job for you. This vital role within Cloud Services requires knowledge and experience designing, implementing, and monitoring scalable and secure cloud networking architecture in the FedRAMP space. The employee is expected to work well in a small team and be willing to share responsibilities with other team members as needed. The employee will interact with internal staff, managers, and customers to implement and maintain IT operations. A passion for technology and learning, and the ability to grow others are vital for success in this role.
Primary Duties and Responsibilities
Lead the design, continuous monitoring, implementation, and security operations of Azure cloud solutions, ensuring they meet industry best practices and comply with FedRAMP High and IL4 requirements.
Lead team in developing modular Infrastructure-as-Code utilizing Terraform, PowerShell, ARM, Bicep, and YAML languages.
Lead projects of moderate complexity to completion.
Sustain a high level of reliability for key automated systems.
Lead teams to define, estimate, and implement requirements for new automations or services of moderate complexity needing development.
Stay up to date with the latest Azure and FedRAMP regulatory changes and industry trends, advising teams on potential impacts and necessary adjustments.
Update technical documentation, workflows, and knowledge base articles.
Provide feedback in pull requests and peer coding reviews.
Solid knowledge in focused areas of OneStream Software.
Participate in On-Call rotation to support production systems.
Assist in efforts to debug the problems which arise in production.
Ability to mentor others in several technical areas.
Understanding practical use of FedRAMP/SOC controls to assist Compliance and Security teams.
Required Education and Experience
BS/BA in computer science, engineering, or technology-related field, or equivalent work experience.
8+ years of cloud infrastructure experience.
2+ years of compliance programs and security control sets such as NIST SP 800-53, FedRAMP High, and IL4, as applied to cloud SaaS, PaaS, and IaaS environments.
Expert knowledge of:
VNets/vWAN, subnets, UDRs, routing, peering
ExpressRoute, VPN Gateway, Private Link/Endpoint
Azure Firewall, NSG/ASG, WAF, Application Gateway, Web Application Firewalls
Hands-on experience implementing network design and firewall configurations, as it pertains to connecting to government networks (BCAP) utilizing Azure Firewall and/or Palo Alto.
Hands-on experience implementing IPv6 routing and strict egress filtering strategies.
Ability to translate DISA STIGs and NIST controls into enforceable network guardrails and evidence artifacts.
Advanced understanding of Infrastructure-as-Code concepts and tooling, including Terraform, CloudFormation templates, Bicep, or ARM templates, on Microsoft Azure, Amazon Web Services (AWS), or Google Cloud Platform (GCP).
Deep knowledge of Configuration Management/Orchestration utilities such as Ansible, PowerShell DSC, Chef, and Puppet.
Advanced understanding of cloud concepts including elasticity, security, and identity management.
Well-versed familiarity with Agile Development methodologies utilizing Jira or Azure DevOps Boards.
Strong understanding of Azure Kubernetes Services (AKS) with container-based deployment skills or other platforms such as OpenShift, GKS, and EKS.
Proficient knowledge in Software Development Lifecycles.
8+ years of hands-on experience with the following technologies, tools, and concepts:
Automating processes using PowerShell, Bash, CLI, REST APIs, python, ARM Templates or other scripting languages.
Comfortable leveraging source control tools such as Git, BitBucket, or GitHub.
Microsoft Azure, Amazon Web Services (AWS) or Google Cloud (GCP).
Microsoft Windows 11, Windows Server, IIS, Microsoft SQL Server, Active Directory.
Preferred Education and Experience
Experience working for a cloud service provider (CSP), managed service provider (MSP), or SaaS provider.
8+ years of relevant Azure experience deploying and managing while leveraging Infrastructure-as-Code (IAC) concepts.
Microsoft Windows Server 2016-2022, IIS, Microsoft SQL Server, and Azure Active Directory.
Debian, Ubuntu, or other flavors of the Linux operating systems.
Any certifications such as Microsoft Certified: Azure Administrator Associate (AZ-103, AZ-104), Azure Solutions Architect Expert (AZ-300, AZ-301), CCNP, CCIE, CISSP, Azure DevOps Engineer Expert (AZ-400), Certified Kubernetes Administrator (CKE), Information Technology Infrastructure Library (ITIL) Foundation, Microsoft Certified Professional (MCP), or... For full info follow application link.