What We Do
At Goldman Sachs, our Engineers don’t just make things – we make things possible. Change the world by connecting people and capital with ideas. Solve the most challenging and pressing engineering problems for our clients. Join our engineering teams that build massively scalable software and systems, architect low latency infrastructure solutions, proactively guard against cyber threats, and leverage machine learning alongside financial engineering to continuously turn data into action. Create new businesses, transform finance, and explore a world of opportunity at the speed of markets. Goldman Sachs Engineers are innovators and problem-solvers, building solutions in Artificial Intelligence, risk management, big data, mobile and more.
Cloud Controls Engineering
As part of Core Engineering at Goldman Sachs, the Cloud Controls Engineering team is responsible for ensuring the safe, secure, and compliant use of public cloud services across the firm. You will be working as part of a multi-disciplinary team responsible for designing, implementing, and managing cloud governance frameworks, security controls, and compliance automation. We are at an early stage of modernizing our cloud control mechanisms around cloud-native principles, and you will be directly contributing to platforms that programmatically enforce safety, security, and compliance—enabling engineers to innovate faster while maintaining regulatory standards.
The organization is seeking highly collaborative, creative, and intellectually curious engineers who are passionate about cloud security, governance, and compliance automation. The ideal candidate will thrive in a DevOps culture and contribute to customer-centric product development. They will work closely with cross-functional teams and will be creative collaborators who evolve, adapt to change, and thrive in a fast-paced global environment.
Responsibilities and Qualifications
As part of our global Cloud Controls Engineering team, you will work on various components as a Controls Engineer. Your role includes specification, development, testing, and releasing of new control mechanisms and governance features. The team owns the control platforms throughout the lifecycle. You are expected to contribute to the vision, understand our customers' needs, business goals, product roadmap, and contribute to building an engineering culture within the team. We expect the successful candidate to deliver high-quality software and to be passionate about cloud security and compliance engineering.
Key Responsibilities
- Design, develop, and manage cloud security controls and governance frameworks in public cloud environments.
- Build and maintain automated compliance monitoring and enforcement mechanisms.
- Develop policy-as-code solutions to programmatically enforce security and compliance standards.
- Write technical specifications, work with several teams, manage technical dependencies, and drive design meetings with various stakeholders for consensus.
- Collaborate with security, risk, and compliance teams to translate regulatory requirements into technical controls.
- Engage with the larger Core Engineering organization to create and deliver usable, safe cloud-native engineering patterns with associated guardrails and operational practices.
- Create, communicate, and promote best practices for cloud security and compliance across the firm.
- Partner with cloud providers such as Amazon Web Services (AWS), Google Cloud Platform (GCP), and Microsoft Azure to implement and optimize cloud-native security services.
Basic Qualifications
- Strong technical ability, willingness to learn, and evolve your skills with advances in technology.
- Bachelor's or Master's Degree in Computer Science or related field with at least 2 years of relevant professional experience.
- Proficiency in designing, developing, and testing software in one or more of Java, JavaScript, or Python; open to using and learning multiple languages.
- Expertise with Linux, containers, system security, and automation with scripting languages.
- Experience architecting, designing, administering, or developing applications in Amazon Web Services.
- Understanding of cloud security principles, identity and access management, and compliance frameworks.
- Ability to communicate technical concepts effectively, both written and orally, as well as the interpersonal skills required to collaborate effectively with colleagues across diverse technology teams.
- Ability to reason about performance, security, and process interactions in complex distributed systems.
- Ability to understand and effectively debug both new and existing solutions.
Preferred Qualifications
- Bachelor's or Advanced Degree in Computer Science or related field.
- 2+ years of work experience with TypeScript, Java, Python, and AWS.
- Knowledge and experience of software development lifecycle and infrastructure-as-code tooling, such as CloudFormation, Terraform, CDK, or Kubernetes.
- Experience with policy-as-code frameworks such as Open Policy Agent (OPA), AWS Config Rules, or similar tools.
- Familiarity with cloud security services (AWS IAM, Security Hub, GuardDuty, Config, CloudTrail).
- Experience with security, isolation, and multi-tenant design of distributed cloud services.
- Understanding of compliance frameworks relevant to financial services (SOC 2, PCI-DSS, etc.).
- Familiarity with software artifact and container image lifecycle management and governance.
- Understanding of RESTful API design best practices and experience in developing them.
- Familiarity with cloud network architectures and the integration with hybrid cloud networking.
- Experience with serverless platforms such as AWS Lambda and Google Cloud Functions.
About Goldman Sachs
At Goldman Sachs, we commit our people, capital and ideas to help our clients, shareholders and the communities we serve to grow. Founded in 1869, we are a leading global investment banking, securities and investment management firm. Headquartered in New York, we maintain offices around the world.
We believe who you are makes you better at what you do. We're committed to fostering and advancing diversity and inclusion in our own workplace and beyond by ensuring every individual within our firm has several opportunities to grow professionally and personally, from our training and development opportunities and firmwide networks to benefits, wellness and personal finance offerings and mindfulness programs. Learn more about our culture, benefits, and people at GS.com/careers.
We’re committed to finding reasonable accommodation for candidates with special needs or disabilities during our recruiting process. Learn more: https://www.goldmansachs.com/careers/footer/disability-statement.html