Cloud Infrastructure Engineer

Snowflake

US-CA-Dublin; US-CA-Menlo ParkHybridFull TimeSalary not listed

Job details

At Snowflake, we are powering the era of the agentic enterprise. To usher in this new era, we seek AI-native thinkers across every function who are energized by the opportunity to reinvent how they work. You don’t just use tools; you possess an innate curiosity, treating AI as a high-trust collaborator that is core to how you solve problems and accelerate your impact. We look for low-ego individuals who thrive in dynamic and fast-moving environments and move with an experimental mindset — who rapidly test emerging capabilities to discover simpler, more powerful ways to deliver results. At Snowflake, your role isn't just to execute a function, but to help redefine the future of how work gets done.

At Snowflake, we are powering the era of the agentic enterprise. To usher in this new era, we seek AI-native thinkers across every function who are energized by the opportunity to reinvent how they work. You don't just use tools; you possess an innate curiosity, treating AI as a high-trust collaborator that is core to how you solve problems and accelerate your impact. We look for low-ego individuals who thrive in dynamic and fast-moving environments and move with an experimental mindset — who rapidly test emerging capabilities to discover simpler, more powerful ways to deliver results. At Snowflake, your role isn't just to execute a function, but to help redefine the future of how work gets done.

This is a dedicated identity engineering role on our Enterprise Cloud Engineering team. You will own and operate the enterprise identity and access platforms — Okta, Microsoft Entra ID, and modern IGA systems — that govern how every employee, application, service, and AI agent authenticates and is granted access at scale. Our team builds the authentication, authorization, identity governance, and identity lifecycle capabilities that keep Snowflake secure and compliant, partnering closely with Security and Engineering to deliver secure-by-default, Zero Trust access. These identity platforms run on cloud infrastructure (AWS and Azure) and Kubernetes, so comfort operating in a cloud environment is valuable — but the core mission of this role is identity: SSO, MFA, identity lifecycle management, access governance, and provisioning.

AS A CLOUD INFRASTRUCTURE ENGINEER (IDENTITY FOCUS), YOU WILL:

  • Own and operate the enterprise identity platform — Okta and/or Microsoft Entra ID — including SSO, MFA, adaptive authentication, and directory integrations.

  • Design and run identity lifecycle management (joiner-mover-leaver) and automated provisioning/deprovisioning across applications using SCIM connectors and lifecycle workflows.

  • Implement authentication and authorization using federation standards including SAML, OAuth2, OIDC, and SCIM, applying Zero Trust and least-privilege principles.

  • Design identity and access controls for AI-powered systems, including controlled, audited, and governed agent workflows, and contribute to core security services such as service identity, secrets, and key management.

  • Develop automation and integrations for identity workflows using Python, PowerShell, Go, or Terraform, and partner with Security and Engineering to deliver secure-by-design solutions that reduce operational friction.

  • Support critical production identity services through monitoring, troubleshooting, incident response, and automation, and participate in architecture and code reviews.

OUR IDEAL CANDIDATE WILL HAVE:

  • 5+ years of Identity & Access Management / Identity Engineering experience designing and operating enterprise identity platforms.

  • Hands-on experience administering Okta and/or Microsoft Entra ID (Azure AD).

  • Hands-on experience with a modern IGA platform — SailPoint, Saviynt, or Okta Identity Governance.

  • Strong knowledge of identity lifecycle management (JML), provisioning/deprovisioning, access certification, and entitlement/role management (RBAC/ABAC).

  • Strong command of authentication, authorization, and federation protocols — SAML, OAuth2, OIDC, and SCIM.

  • Excellent collaboration and communication skills, with a proven ability to drive projects and influence technical decisions across teams.

Nice to have

  • Familiarity with Python, Powershell, Kubernetes and infrastructure-as-code (Terraform).

  • Experience building or operating production services on AWS, Azure, or GCP.

  • Identity certifications (Okta Certified, SailPoint IdentityNow, CIAM).

Every Snowflake employee is expected to follow the company's confidentiality and security standards for handling sensitive data. Snowflake employees must abide by the company's data security plan as an essential part of their duties. It is every employee's duty to keep customer information secure and confidential.

Snowflake is growing fast, and we're scaling our team to help enable and accelerate our growth. We are looking for people who share our values, challenge ordinary thinking, and push the pace of innovation while building a future for themselves and Snowflake.

Snowflake is growing fast, and we’re scaling our team to help enable and accelerate our growth. We are looking for people who share our values, challenge ordinary thinking, and push the pace of innovation while building a future for themselves and Snowflake.

How do you want to make your impact?

For jobs located in the United States, please visit the job posting on the Snowflake Careers Site for salary and benefits information: careers.snowflake.com