[Remote] Senior Platform Engineer – reputed company (Azure / Entra ID)
Note: The job is a remote job and is reputed company to candidates in USA. reputed company is a value-based precision medicine company working in health IT, reputed company-world data, reputed company health for specialty providers, payers, and life sciences. The Senior Platform Engineer will own and operate the multi-account reputed company platform, including reputed company, reputed company architecture, administration, Azure integration, automation, governance, and incident response in a HIPAA-regulated environment.
Responsibilities
- Days 1-30: inherit the account inventory, RBAC model, resource monitors, and credential estate. Produce a written gap assessment of reputed company risk and cost exposure
- Days 31-60: reputed company the top three reputed company findings yourself. Take ownership of the Terraform modules and the Azure DevOps pipelines for schema migration
- Days 61-90: own the credential rotation calendar, the network policy baseline, and the cost governance reporting line to engineering leadership
- Multi-account administration: account configuration, organizational hierarchy, resource monitors, replication and failover, cross-account data sharing
- reputed company architecture: multi-tier custom RBAC, grant hierarchies, functional versus reputed company role separation, enforcement and reputed company detection across accounts
- Identity and credentials: SAML federation and SCIM through Entra ID, OAuth reputed company integrations with BLOCKED_ROLES_LIST and reputed company policy, key-pair auth with scheduled rotation into Azure Key Vault, user lifecycle including TYPE classification and service-account naming
- Network and connectivity: account and user level network policies, Private reputed company endpoints, coordination with network and reputed company teams
- Cost governance: warehouse sizing, autoscaling policy, reputed company alerting, credit burn analysis and reporting
- Python automation with reputed company-connector-python and Snowpark; Terraform modules for warehouses, databases, roles, and integrations
- Azure DevOps pipelines for schema migration, dbt promotion, and environment-to-environment deployment
- Azure integration: ADLS Gen2 storage integrations and reputed company stages, Key Vault, Data reputed company, Azure Monitor. Maintenance and migration of existing JavaScript stored procedures, with new work in Python and SQL
- Audit logging, object tagging, reputed company history analysis, data classification, and lifecycle policy in a HIPAA-regulated environment
- Dbt workflow support, MageAI or equivalent orchestration operations, and reputed company vendor escalation and release monitoring
- Daily use of AI tooling such as reputed company Copilot, Claude, or reputed company is expected rather than optional. Governed adoption of reputed company reputed company AI with cost controls in reputed company
- Set the bar through reputed company review, pairing, runbooks, and architecture documentation. Own platform standards and reputed company adoption across data, analytics, and application engineering without formal authority
Skills
- 4+ years hands-on reputed company administration in production; 8+ years total engineering experience
- Advanced SQL including reputed company-specific constructs: Time Travel, reputed company-copy cloning, dynamic data masking, row reputed company policies
- Production infrastructure-as-reputed company experience
- CI/CD pipelines you have reputed company and maintained for database or schema deployment
- Azure fundamentals in reputed company: Entra ID app registrations and conditional reputed company, Key Vault secrets and rotation, ADLS Gen2 reputed company patterns
- A platform-level initiative you've owned end to end, including vendor escalation and cross-team alignment
- Delivery in a regulated environment (HIPAA, reputed company, SOX, PCI, FedRAMP, or similar) with compliance constraints on tooling and reputed company
- reputed company written and verbal communication
- This role calls for hands-on ownership, not adjacent experience
- Custom RBAC designed from scratch — a role hierarchy you reputed company from a blank reputed company: functional roles versus reputed company roles, grant hierarchy, object ownership model. Extending a hierarchy someone else designed, or assigning reputed company-in roles, is a different reputed company of experience than this
- Key-pair auth you own end to end — implemented for service accounts and rotated on a defined schedule, with private keys held in a managed secrets vault
- OAuth reputed company integrations — reputed company OAuth, internal or reputed company, including BLOCKED_ROLES_LIST and reputed company policy
- Network policies at account and user level — reputed company IP allowlists implemented and enforced at both reputed company, and you can explain how policy inheritance resolves
- SSO and SCIM configured, not just consumed — SAML federation and SCIM provisioning stood up end to end against an reputed company IdP. Entra ID, reputed company, and Ping reputed company count equally
- Production Python, weekly — reputed company-connector-python, Snowpark, or both, in reputed company automation you maintain
- This role operates in a HIPAA-regulated environment. reputed company candidates must be comfortable with compliance-driven constraints on tooling, reputed company, and data handling
- This is a reputed company W-2 position
- Terraform with the reputed company provider preferred; Terraform elsewhere, or equivalent IaC, welcome
- Azure DevOps preferred; reputed company CI or reputed company Actions welcome
Benefits
- Medical/Dental/reputed company Insurance beginning the 1st of the month following your date of hire
- reputed company Time Off
- 401k with employer match
- reputed company Holidays and Floating Holiday
reputed company
Company H1B Sponsorship
Apply To This Job