Cloud Computing Engineer AWS
Hybrid in Charlotte, NC
About the Role
We are seeking a highly skilled Cloud Computing Engineer to serve as the primary technical owner for our greenfield AWS WorkSpaces environment supporting approximately 600 users. This is a pivotal, hands-on role that is part engineering and part architecture. You will design, build, and optimize a modern cloud-based virtual desktop platform, helping evolve our strategy away from traditional on-premises VDI.
This is a greenfield opportunity—you will be shaping a young environment from scratch, not inheriting someone else's setup. The ideal candidate is a true AWS WorkSpaces expert who can independently own complex infrastructure initiatives from design through production support.
Key Responsibilities
- AWS WorkSpaces Architecture: Design, implement, and maintain enterprise-scale Amazon WorkSpaces environments. Develop long-term platform strategy, scalability planning, and operational standards. Lead capacity planning, performance analysis, and disaster recovery validation.
- Image & Desktop Engineering: Build and optimize custom WorkSpaces images and bundles. Create standardized gold images, manage image lifecycles, and establish desktop hardening and compliance baselines.
- Identity & Authentication: Design integrations between AWS WorkSpaces, Microsoft Active Directory, and Microsoft Entra ID. Manage hybrid identity configurations, troubleshoot directory synchronization, and support MFA (RADIUS) and SAML-based federation.
- Intune & Endpoint Management: Partner with Endpoint Engineering to integrate AWS WorkSpaces with Microsoft Intune. Ensure proper enrollment of hybrid-joined devices and support policy/compliance management.
- Cloud Infrastructure & Networking: Administer AWS networking components (VPCs, subnets, security groups, Route 53 DNS). Troubleshoot connectivity, routing, firewall, and DNS issues. Support access from Windows, macOS, thin clients, and mobile platforms.
- Automation & Platform Engineering: Develop automation using AWS Lambda, PowerShell, and Python. Create self-healing mechanisms and maintain infrastructure-as-code standards (Terraform experience is a plus).
- Monitoring & Operational Excellence: Configure CloudWatch dashboards, metrics, and alarms. Participate in incident management, root cause analysis, and continuous service improvement.
- Security & Compliance: Ensure environments meet security, regulatory, and audit requirements. Partner with cybersecurity teams on vulnerability remediation, least privilege, and identity governance.
Must-Have Qualifications
- 7+ years of enterprise infrastructure engineering experience.
- 5+ years of AWS engineering experience.
- 3+ years of Amazon WorkSpaces administration and architecture experience (deep, hands-on expertise required—not someone learning on the job).
- Deep understanding of AWS WorkSpaces Images, Bundles, Directories, and lifecycle management.
- Strong experience with Microsoft Active Directory and hybrid identity environments.
- Experience integrating AWS WorkSpaces with Microsoft Entra ID and Intune.
- Experience supporting RADIUS MFA authentication and SAML federation.
- Strong understanding of cloud networking: Route 53, DNS, VPCs, subnets, routing, and security controls.
- Experience with AWS CloudWatch monitoring and alerting.
- Strong PowerShell and automation experience; experience with AWS Lambda.
- Experience supporting Windows 11 enterprise desktop environments.
- Excellent troubleshooting, root cause analysis, documentation, and communication skills.
- Comfortable working day-to-day in Jira for tickets and project tracking.
- Strong collaborator, especially with Security teams.