| Location | Minneapolis, MN (Remote) |
Multi-Cloud Architect
Employment type Full-time
Level Senior Staff
Reports to Engagement Delivery Lead
Location Remote
Role summary
Design secure, isolated, cost-efficient landing zones for each customer on Google Cloud and AWS so the team
can deploy pre-built CCAI voice and chat applications and operate customer RAG / knowledge pipelines. You
define reusable architecture and Infrastructure-as-Code patterns
What success looks like
Every customer receives an isolated GCP project and/or AWS account set that meets
security and compliance standards.
Reusable IaC modules exist for networking, IAM, logging, secrets, knowledge/RAG stores, and service
enablement on both clouds.
Architecture reviews catch isolation, cost, and compliance issues before go-live.
Key responsibilities
Design per-customer multi-cloud architecture: GCP resource hierarchy and AWS account/OU patterns,
VPC/VPC-SC or equivalent, Private Service Connect / PrivateLink as needed.
Define IAM models
Design the landing zone for RAG / knowledge services (for example Vertex AI Search / RAG, Agent Assist
knowledge, Amazon Bedrock Knowledge Bases, OpenSearch, or an approved vector store) including
isolation, encryption, and data residency.
Produce architecture diagrams, decision records, and reference implementations.
Partner with DevOps to encode patterns in Terraform and/or AWS CDK.
Review cost, logging, encryption, audit, and data-residency posture for each new environment.
Required qualifications
8+ years in cloud architecture or senior infrastructure engineering, including production designs on both
GCP and AWS.
Ability to produce IaC-ready designs
Preferred qualifications
VPC Service Controls, Private Google Access, AWS PrivateLink, Control Tower, or Landing Zone
Accelerator.
Sourcing keywords for recruiting