--- title: 'Cloud Engineer at BeyondTrust' canonical: 'https://feeny.ai/job/cloud-engineer-beyondtrust-canada-united-states-2m0xr4bg9e73' type: 'job' last_seen: '2026-09-11' --- # Cloud Engineer at BeyondTrust - **Company:** BeyondTrust - **Location:** Canada / United States - **Work type:** remote - **Posted:** 2026-08-28 - **Last confirmed live:** 2026-09-11 - **Apply:** https://job-boards.greenhouse.io/beyondtrust/jobs/8161719 ## Job description BeyondTrust is a place where you can bring your purpose to life through the work that you do, creating a safer world through our cybersecurity SaaS portfolio. Our culture of flexibility, trust, and continual learning means you will be recognized for your growth, and for the impact you make on our success. You will be surrounded by people who challenge, support, and inspire you to be the best version of yourself. ## The Role The Cloud Engineer designs, secures, and supports mission-critical cloud infrastructure that enables reliable services for users worldwide. The successful candidate demonstrates strong technical judgment, operational discipline, and the ability to apply practical solutions to complex cloud engineering challenges. ## What You’ll Do - Operate and maintain BeyondTrust's cloud infrastructure, ensuring availability, performance, and operational health across all environments. - Design, deploy, and secure multi-account AWS, Azure, and GCP environments in alignment with organizational standards. - Design, deploy, and support AWS networking solutions, including VPCs, Transit Gateway, VPC Peering, PrivateLink, VPC Endpoints, and related routing and connectivity services. - Develop and maintain reusable Terraform modules, remote state management, and version-controlled configurations that enforce infrastructure standards. - Build and maintain CI/CD pipelines using GitHub Actions, including self-hosted runners, to deliver infrastructure and application changes consistently and reliably. - Troubleshoot and resolve incidents, apply patches, validate backup and recovery processes, and optimize infrastructure for performance and cost efficiency. - Troubleshoot cloud connectivity issues with DNS, routing, load balancing, and application communication across multi-account environments. - Provide after-hours support as needed, resolve incidents, and document post-incident reviews and follow-up actions. - Administer identity federation, authentication, authorization, and privileged access controls across cloud platforms. - Integrate, manage, and support third-party tools used for cloud access, operations, security, and auditing. - Enforce governance standards, including account management, resource tagging, configuration compliance, and capacity planning through controlled and auditable changes. - Leverage AI-assisted engineering tools to develop reusable automation that accelerates delivery and improves team productivity. - Create and maintain architecture diagrams, Terraform standards, SOPs, troubleshooting guides, and disaster recovery documentation. ## What You’ll Bring - 2+ years of experience designing, securing, and managing large cloud environments in AWS, Azure, or GCP. - 2+ years of hands-on experience with AWS core services, including networking, compute, storage, load balancing, monitoring, and automation services. - 2+ years of experience developing and maintaining Terraform modules or other infrastructure as code solutions. - 2+ years of experience with AWS IAM, including roles, policies, permissions, and access management. - Strong understanding of AWS networking, including CIDR, routing, DNS, security controls, Transit Gateway, and VPC connectivity services. - 2+ years of experience with Git workflows, version control, scripting, configuration management, and automated infrastructure testing and validation. - 2+ years of experience building or supporting CI/CD pipelines using GitHub Actions or similar automation platforms. - 2+ years of scripting experience using Python (preferred), PowerShell, or Bash. - Strong troubleshooting, problem-solving, and root cause analysis skills. - Familiarity with cloud monitoring and observability tools such as CloudWatch, Prometheus, or Datadog. - 2+ years of experience working within ITSM and change management processes. - Strong verbal and written communication skills, including the ability to create and maintain technical documentation. - Bachelor's degree in Computer Science, Information Systems, Computer Engineering, or equivalent practical experience. Must Have - AWS Certified Solutions Architect Associate, AWS Certified CloudOps Engineer, or equivalent cloud certification. - 3+ years of experience in two or more of the following areas: - AWS Organizations, Control Tower, and multi-account governance. - AWS networking, including VPC, IPAM, WAF, and hybrid network architectures. - GitHub Actions, self-hosted runners, or CI/CD platform administration. - Cloud observability, infrastructure security, or regulated environments. - Implementing cloud controls aligned with SOC 2, ISO 27001, NIST CSF 2.0, or FedRAMP Moderate requirements. - Experience using AI-assisted engineering tools, such as GitHub Copilot, Claude Code, or equivalent solutions, to improve development and operational efficiency. Better Together Diversity. Inclusion. They’re more than just words for us. They are the guiding values of how we build our teams, cultivate leaders, and create a culture where people feel connected. We take care of our employees so they can take care of our customers. Customers who come from all walks of life just like us. We hire incredible people from diverse backgrounds because when we are different together, we are stronger together. ## About Us BeyondTrust is the global identity security leader protecting Paths to Privilege™. Our identity-centric approach goes beyond securing privileges and access, empowering organizations with the most effective solution to manage the entire identity attack surface and neutralize threats, whether from external attacks or insiders. BeyondTrust is leading the charge in transforming identity security to prevent breaches and limit the blast radius of attacks, while creating a superior customer experience and operational efficiencies. We are trusted by 20,000 customers, including 75 of the Fortune 100, and our global ecosystem of partners. Learn more at [www.beyondtrust.com](http://www.beyondtrust.com/). ## #LI-BS1 ## About BeyondTrust ## Company Overview - **One-liner**: BeyondTrust provides a unified identity and access security platform that protects identities, remediates threats, and delivers dynamic access across human, non-human, and AI identities. - **Entity Type**: Private (backed by private equity; no public ticker) - **Headquarters**: Not publicly available in provided sources (global company with offices in the US, Canada, UK, Germany, Netherlands, Switzerland, India, Indonesia, Philippines, Australia, and more) - **Founded**: Not publicly available (roots trace to earlier companies; current entity formed through mergers and acquisitions) - **Founders**: Not publicly available ## Core Business - **Primary industry**: Cybersecurity – Identity and Access Security (Privileged Access Management, Identity Threat Detection and Response, Secrets Management, Cloud Infrastructure Entitlement Management, Secure Remote Access) - **Target customers**: B2B, primarily large enterprises (75% of the Fortune 100 are customers), also government, mid-market, and SMBs - **Mission**: "Fight every day to secure identities, intelligently remediate threats, and deliver dynamic access to empower and protect organizations around the world." Vision: "A world where all identities and access are protected from cyber threats." ## Products & Services - **BeyondTrust Pathfinder Platform**: Unified platform that integrates PAM, ITDR, Secrets Management, CIEM, and Secure Remote Access. Enforces least privilege, zero standing privilege, just-in-time access, and discovers hidden privilege paths. - **Endpoint Privilege Management**: Removes local admin rights and enforces least privilege on endpoints. - **Password Safe**: Enterprise password and secrets vault with rotation and just-in-time access. - **Secure Remote Access**: Zero-trust remote support and vendor access (including Remote Support), with session management and credential vaulting. - **Identity Security Insights**: Analytics and reporting on identity risk. - **AI Analysis & AI Chat**: AI-powered threat detection and conversational interface for incident response. - **Entitle**: Cloud infrastructure entitlement management (CIEM) for multi-cloud environments. - **MCP Integration**: Integration with Model Context Protocol for controlling AI agent privileges. ## Market Standing - **Valuation/Market Cap**: Not publicly available (private company) - **Key Metric**: Not disclosed; recognized as a Leader in the Gartner Magic Quadrant for PAM (7 years in a row), Forrester Wave Leader for PIM, KuppingerCole Leader for ITDR, and GigaOm Leader for CIEM. - **Notable Investors/Partners**: Private equity owned (Francisco Partners and others per general knowledge, not explicitly in provided sources). Key partners include ServiceNow (integration with service desk workflows). - **Growth Signals**: 75% of the Fortune 100 are customers; continuously hiring across 45+ open positions globally; named Inc. Best Workplaces 2023, Nova Scotia's Top Employer 2022, Best Workplaces in Tech UK 2022. ## Competitive Advantages - **Unified Pathfinder Platform**: Single platform covering all identity security use cases (human, non-human, AI) rather than disconnected tools. - **True Privilege™ Technology**: Maps actual identity attack paths (lateral movement, shadow access, inherited entitlements) to uncover hidden Paths to Privilege. - **Analyst Validation**: Consistently ranked as a Leader by Gartner, Forrester, KuppingerCole, and GigaOm. - **AI Governance**: First-to-market governance for AI agent identities across multiple cloud and SaaS environments (AWS, Azure, Google, OpenAI, Salesforce, ServiceNow). - **Zero Standing Privilege**: Automates just-in-time access and auto-revokes privileges to reduce attack surface. ## Strategic Focus - **Convergence of Identity Security**: Moving beyond siloed PAM to a connected, privilege-centric identity security strategy. - **AI Identity Governance**: Enforcing privilege controls on rapidly growing AI agents and non-human identities. - **Cloud and OT Expansion**: Protecting identities across cloud, SaaS, and operational technology environments. - **Integrating with Service Management**: Streamlining workflows through integrations with ServiceNow and other IT service management tools. - **Customer Experience**: Maintaining industry-leading customer satisfaction scores through exceptional support and customer success. ## Why Work Here - **Remote-First Culture**: Most roles are fully remote with flexible work arrangements; offices exist in multiple countries. - **Award-Winning Workplace**: Recognized by Inc., Nova Scotia's Top Employer, and Best Workplaces in Tech UK. - **Core Values**: Teamwork, Integrity, Humility, Passion, Accountability, Results. Emphasis on continuous learning and growth, with training resources and career development programs. - **Diversity & Inclusion**: BeyondTrust Resource Groups (BTRGs) for affinity groups, community building, and educational events. - **Transparency**: Monthly all-hands town halls where executives share business priorities and success metrics. - **Community Impact**: BeyondGiving program supports employee-led sponsorships and global fundraising. - **Benefits**: Competitive benefits package (details not fully disclosed but includes development tools). - **Recruitment Authenticity**: The company warns about recruitment fraud, indicating a high focus on candidate safety. ## Sources 1. [beyondtrust.com - Company Overview](https://www.beyondtrust.com/company/overview) 2. [beyondtrust.com - Employee Life](https://www.beyondtrust.com/company/overview/employee-life) 3. [beyondtrust.com - Careers](https://www.beyondtrust.com/company/overview/careers) 4. [beyondtrust.com - Homepage](https://www.beyondtrust.com/) 5. [greenhouse.io - Current Openings](http://job-boards.greenhouse.io/beyondtrust) ## Other roles at BeyondTrust - [Business Development Representative](https://feeny.ai/job/business-development-representative-beyondtrust-atlanta-g1rrkmkvpfmt) — Atlanta, GA - [Business Development Representative](https://feeny.ai/job/business-development-representative-beyondtrust-atlanta-07vccj4438pw) — Atlanta, GA - [Solutions Engineer](https://feeny.ai/job/solutions-engineer-beyondtrust-calgary-fpfkcc49bhxg) — Calgary, Canada / British Columbia, Canada - [Sr SOC Analyst](https://feeny.ai/job/sr-soc-analyst-beyondtrust-canada-united-states-qc3k8g7rxgm7) — Canada / United States - [Business Development Representative - Italian Speaking](https://feeny.ai/job/business-development-representative-italian-speaking-beyondtrust-manchester-2v2ngd0y06en) — Manchester, United Kingdom - [Sr Software Development Engineer](https://feeny.ai/job/sr-software-development-engineer-beyondtrust-canada-united-states-spqedr4s2t1a) — Canada / United States - [Business Development Representative](https://feeny.ai/job/business-development-representative-beyondtrust-manchester-hvta3veashjk) — Manchester, United Kingdom - [Account Executive II - Riyadh (Saudi National)](https://feeny.ai/job/account-executive-ii-riyadh-saudi-national-beyondtrust-riyadh-fvbs1avsw66x) — Riyadh, Saudi Arabia - [Customer Retention Executive](https://feeny.ai/job/customer-retention-executive-beyondtrust-united-states-us-east-coast-hfpkxt9pc784) — United States / US East Coast - [Migrations Account Executive](https://feeny.ai/job/migrations-account-executive-beyondtrust-atlanta-38f3z5a883zt) — Atlanta, GA / Boston, MA / Halifax, Canada