Northern Trust Corporation

Sr. Lead, Infra Cloud (Bastion Zone)

Pune, India
Terraform Azure AWS Python Perl Ruby PowerShell API
Description

About Northern Trust:

Northern Trust, a Fortune 500 company, is a globally recognized, award-winning financial institution that has been in continuous operation since 1889.

Northern Trust is proud to provide innovative financial services and guidance to the world’s most successful individuals, families, and institutions by remaining true to our enduring principles of service, expertise, and integrity. With more than 130 years of financial experience and over 22,000 partners, we serve the world’s most sophisticated clients using leading technology and exceptional service.

Summary:

Northern Trust is seeking a dynamic Sr. Lead, Cloud Engineer with an emphasis in Security Architecture, API Management, Automation, and Security Operations to join an organization under managing one of the most security focused areas of the company. This person will also have a strong cloud automation engineering background with experience in security engineering frameworks. The job will require the right candidate to build, automate, and secure a highly available multi-cloud provider infrastructure environments to protect Northern Trust’s cloud-hosted assets and applications. Are you ready for the next step in your career for this exciting opportunity?

Responsibilities:

Cloud DevOps Engineering & Automation:

  • Develop infrastructure-as-code (IaC) automation (e.g., Terraform) to manage and support highly secured cloud patterns within Northern Trust’s secure enclave for system administration.
  • Utilize modern software DevOps and CI/CD tooling, such as GitHub, GitHub Actions, ADO, Jenkins, etc., to provision infrastructure resources and prevent configuration drift. 
  • Collaborate with development teams to ensure seamless continuous integration of code and deployment as well as promoting disciplined code versioning practices.
  • Familiarity and experience with Terraform Cloud for workspace and state management.
  • Collaborate with product, architecture, and other stakeholders to ensure cloud technologies are designed in accordance with product roadmaps and well architected frameworks.
  • Investigate and resolve complex cloud infrastructure related issues and recommend and develop solutions to issues and create documentation of reengineering processes as required.
  • Participate in IT Service Management (ITSM) change, incident, and general requests for cloud platform support for business as usual (BAU) operations.
  • Contribute to cloud operation disciplines and improve processes and own such as OS lifecycle management, backup and recovery, disaster recovery, certificate management, etc.

Network Engineering

  • Manage firewall technologies such as Azure Front Door, Checkpoint FW, Illumio, Akamai WAF/CDN via automation and possess networking fundamentals to identify root causes of application connectivity issues.
  • Support cloud network security platforms and collaborate with tool vendors across WAF/CDN (e.g., Akamai, Azure Front Door, etc.), DNS Management, and load balancing,
  • Design, develop, and implement automation workflows for network firewalls to enhance security protocols and integrate firewall management within the broader security strategy.
  • Proficient in APIs to construct REST requests to accomplish a task given API documentation.
  • HTTP response codes and can Identify the parts of an HTTP response.

Security Engineering

  • Support Azure Conditional access and Entra ID synchronization partnering with MS AD team which runs EASE environment.
  • Develop, implement, and enforce Policy-as-Code (PaC) for cloud environments (Azure, AWS) to configure, detect, remediate, and enforce security standards.
  • Define and implement security policies based upon CIS/NIST industry benchmarks.
  • Support remediation of security vulnerabilities using cloud posture management and ITSM tooling in accordance with service level agreements (SLA)
  • Manage, configure, enhance, and operate cloud security posture management platforms (e.g., Wiz, Prisma Cloud, etc.) for pre-deployment scanning of IaC code to protect infrastructure.


Minimum Qualifications

  • Bachelor’s degree in computer science, engineering, or related technical fields
  • 10+ years of technology experience
  • 4 to 8+ years cloud computing (Microsoft Azure, AWS)
  • 3 to 5+ years cloud networking automation
  • Terraform Infrastructure as code automation

Preferred Qualifications

Demonstrate extensive abilities and/or a proven record of success in the following:

  • Experience with Azure networking tools (V-WAN, VNET, BGP, etc.) as well as Marketplace tools including F5, Checkpoint, and other Network Virtual Appliance offerings
  • Proven understanding of DevSecOps concepts, and has implemented or working knowledge of using those skills in an already existing framework
  • Strong passion for end-to-end DevOps automation via CI/CD pipelines to deploy Infrastructure as Code (IaC) and usage of tools (e.g., ADO, GitHub/Actions, Jenkins, or equivalents).
  • Ability to manage infrastructure environments, configurations, and IaC scripts to support application pattern and workflows via self-service automation (e.g., Backstage.io).
  • Support all phases of the cloud resource lifecycle management and develop new IaC automation capabilities when new cloud service products are created and business need.
  • Strong understanding of the design, implementation and maintenance of network infrastructure in multi-region and multi-cloud environments
  • Proficiency in scripting languages: Python, Perl, Ruby, PowerShell, YAML, KQL, other
  • Proficiency in waterfall and Agile, Scrum, Kanban, SAFe, etc. delivery methodologies
  • Knowledge and experience in testing automation harnesses and frameworks
  • Understanding and ability to ensure operational stability and enforcement of security controls via Policy-as-Code and IaC automation.
  • Independently managing workload, coordinating priorities with technical leads, and completing deliverables per the processes and standards
  • Ability to work independently and manage multiple tasks and projects and maintain day-to-day management and administration of projects in an Agile environment.

Working with Us:

As a Northern Trust partner, greater achievements await. You will be part of a flexible and collaborative work culture in an organization where financial strength and stability is an asset that emboldens us to explore new ideas.

Movement within the organization is encouraged, senior leaders are accessible, and you can take pride in working for a company committed to assisting the communities we serve! Join a workplace with a greater purpose.

We’d love to learn more about how your interests and experience could be a fit with one of the world’s most admired and sustainable companies! Build your career with us and apply today. #MadeForGreater

Reasonable accommodation

Northern Trust is committed to working with and providing reasonable accommodations to individuals with disabilities. If you need a reasonable accommodation for any part of the employment process, please email our HR Service Center at MyHRHelp@ntrs.com.

We hope you’re excited about the role and the opportunity to work with us. We value an inclusive workplace and understand flexibility means different things to different people.

Apply today and talk to us about your flexible working requirements and together we can achieve greater.

Northern Trust Corporation
Northern Trust Corporation
Finance Financial Services Wealth Management

0 applies

9 views

There are more than 50,000 engineering jobs:

Subscribe to membership and unlock all jobs

Engineering Jobs

60,000+ jobs from 4,500+ well-funded companies

Updated Daily

New jobs are added every day as companies post them

Refined Search

Use filters like skill, location, etc to narrow results

Become a member

🥳🥳🥳 401 happy customers and counting...

Overall, over 80% of customers chose to renew their subscriptions after the initial sign-up.

To try it out

For active job seekers

For those who are passive looking

Cancel anytime

Frequently Asked Questions

  • We prioritize job seekers as our customers, unlike bigger job sites, by charging a small fee to provide them with curated access to the best companies and up-to-date jobs. This focus allows us to deliver a more personalized and effective job search experience.
  • We've got about 70,000 jobs from 5,000 vetted companies. No fake or sleazy jobs here!
  • We aggregate jobs from 5,000+ companies' career pages, so you can be sure that you're getting the most up-to-date and relevant jobs.
  • We're the only job board *for* software engineers, *by* software engineers… in case you needed a reminder! We add thousands of new jobs daily and offer powerful search filters just for you. 🛠️
  • Every single hour! We add 2,000-3,000 new jobs daily, so you'll always have fresh opportunities. 🚀
  • Typically, job searches take 3-6 months. EchoJobs helps you spend more time applying and less time hunting. 🎯
  • Check daily! We're always updating with new jobs. Set up job alerts for even quicker access. 📅

What Fellow Engineers Say