About this role:
Wells Fargo is seeking a Lead Infrastructure Engineer on the Cloud Policy and Data Protection Engineering team within Core Infrastructure Services (CIS). CIS accelerates enterprise application transformation by empowering engineers to build and run secure, scalable applications on cloud platforms. This role requires strong software engineering fundamentals, extensive automation experience, and the ability to design, build, and lead delivery of enterprise cloud compliance and data protection capabilities. Must have extensive experience with scripting and automation practices.
In this role, you will:
Full-stack product engineering:
Cloud policy engineering:
Data protection engineering:
Platform, IaC & DevOps:
Leadership & collaboration:
Required Qualifications:
Desired Qualifications:
Job Expectations:
Wells Fargo is seeking a Lead Infrastructure Engineer on the Cloud Policy and Data Protection Engineering team within Core Infrastructure Services (CIS). CIS accelerates enterprise application transformation by empowering engineers to build and run secure, scalable applications on cloud platforms. This role requires strong software engineering fundamentals, extensive automation experience, and the ability to design, build, and lead delivery of enterprise cloud compliance and data protection capabilities. Must have extensive experience with scripting and automation practices.
In this role, you will:
Full-stack product engineering:
- Design and build internal applications, dashboards, and APIs for cloud policy, firewall, and data-protection services using ReactJS, Python, Django, Postgres SQL and Azure SQL Managed Instance (SQL MI).
- Create secure, testable backend services (REST), integrate with cloud policy/KMS platforms, and automation systems.
- Build reusable UI components and front-end frameworks that support consistent user experiences across policy, firewall, and data-protection dashboards.
- Own the full API lifecycle, including design, versioning, documentation, and long-term maintenance, to support scalable integration patterns across engineering teams.
- Implement monitoring and observability for applications and services using tools such as Application Insights, Azure Monitor, and Cloud Logging to ensure reliability and performance.
- Ensure strong developer experience (DX) through intuitive APIs, documentation, self-service workflows, and responsive support patterns.
Cloud policy engineering:
- Engineer and operationalize policy frameworks across Azure and GCP (e.g., Azure Policy, GCP Organization Policy, HashiCorp Sentinel), including remediation, exemptions, compliance mapping.
- Resolve complex cloud-control challenges such as VPC-SC errors and guardrail conflicts.
- Contribute to companywide standards/best practices, landing-zone patterns, and "secure-by-default" resource templates.
Data protection engineering:
- Engineer, operate, and automate key and secret management and data protection services (e.g., Azure Key Vault, Managed HSM, Cloud KMS; rotation, audit, monitoring) for Azure and GCP platforms.
- Provide Tier-3 engineering support, incident response, and vendor escalation for encryption technologies to ensure resiliency and alignment with enterprise security requirements.
Platform, IaC & DevOps:
- Design, code, test, and ship cloud infrastructure using Terraform (modules, registries, versioning, policy-as-code) with GitHub and CI/CD (GitHub Actions, Jenkins, Harness).
- Implement event-driven automation (Functions/Logic Apps/Event Grid; Pub/Sub equivalents), IaC testing (tflint, compliance tests), and Terraform Enterprise workflows for scale.
Leadership & collaboration:
- Lead complex, cross-org cloud initiatives; act as an escalation point; mentor engineers; and collaborate with partner teams and vendors in a globally distributed environment.
- Define architectural patterns and technical strategy for cloud policy, compliance automation, and data-protection services, ensuring solutions scale across multiple cloud platforms and engineering teams.
Required Qualifications:
- 5+ years of Software Engineering experience, or equivalent demonstrated through one or a combination of the following: work experience, training, military experience, education
- 3+ years full-stack development (ReactJS, Python, Django, MI/ SQL Server)
- 3+ years IaC with Terraform and GitHub (module development, versioning, reusable patterns, and compliance controls)
- 3+ years cloud platform security services
- 3+ years DevOps/CI-CD engineering (GitHub Actions, Jenkins, Harness)
Desired Qualifications:
- 3 yrs with Azure or GCP platform security services
- Scripting in PowerShell/Bash
- Experience with key/secret management and encryption technologies
- IAM/Entra ID, service accounts, managed identities, least-privilege
- Experience automating and managing Palo Alto cloud firewall policies through Terraform, GitHub workflows, or other CI/CD platforms
- Cloud networking fundamentals
- Terraform Enterprise, remote state/workspaces, policy-as-code
- Event-driven automation and modern authentication
- CSPM and Cloud Control Matrix familiarity
- Azure data services experience (Private Link, Key Vault, Data Factory, Purview, Databricks, Synapse)
- Experience with paved-path/internal platform module development
- Azure and/or GCP certifications (preferred professional level)
- DLP, data masking, tokenization
- AI/GenAI for cloud automation
Job Expectations:
- This position is not eligible for visa sponsorship
- This is a hybrid position that requires working on-site at one of the specified locations, with no fully remote option available.
- This position does not have relocation allowance available.
Top Skills
Application Insights
Azure
Azure Key Vault
Azure Monitor
Azure Sql Managed Instance
Bash
Ci/Cd
Cloud Logging
Django
GCP
Git
Hashicorp Sentinel
Managed Hsm
Postgres
Powershell
Python
React
Terraform
Wells Fargo New York, New York, USA Office
150 E 42nd Street, New York, NY, United States, 10017
Wells Fargo New York, New York, USA Office
500 West 33rd Street Manhattan, New York, NY, United States, 10001
Similar Jobs at Wells Fargo
Fintech • Financial Services
Wells Fargo seeks a Senior Lead Product Manager to define and implement AI strategies for the Observe to Agent capability, focusing on product vision, operational efficiency, and responsible AI practices across the enterprise.
Top Skills:
Ai EngineeringApi GenerationAutomationCloud PcData ScienceGenerative AiMlSemantic Graph ConstructionVideo-To-Code
Fintech • Financial Services
Wells Fargo seeks a Branch Operations Coordinator to enhance customer experience, manage transactions, resolve operational issues, and support the branch manager, ensuring compliance and customer satisfaction.
Top Skills:
Banking ProceduresDigital SolutionsMobile Banking
Fintech • Financial Services
The Supervisory Control Associate supports compliance supervision, conducts reviews, designs risk processes, and collaborates with branch personnel to ensure regulatory adherence.
Top Skills:
ExcelMicrosoft Office (WordOutlook)
What you need to know about the NYC Tech Scene
As the undisputed financial capital of the world, New York City is an epicenter of startup funding activity. The city has a thriving fintech scene and is a major player in verticals ranging from AI to biotech, cybersecurity and digital media. It also has universities like NYU, Columbia and Cornell Tech attracting students and researchers from across the globe, providing the ecosystem with a constant influx of world-class talent. And its East Coast location and three international airports make it a perfect spot for European companies establishing a foothold in the United States.
Key Facts About NYC Tech
- Number of Tech Workers: 549,200; 6% of overall workforce (2024 CompTIA survey)
- Major Tech Employers: Capgemini, Bloomberg, IBM, Spotify
- Key Industries: Artificial intelligence, Fintech
- Funding Landscape: $25.5 billion in venture capital funding in 2024 (Pitchbook)
- Notable Investors: Greycroft, Thrive Capital, Union Square Ventures, FirstMark Capital, Tiger Global Management, Tribeca Venture Partners, Insight Partners, Two Sigma Ventures
- Research Centers and Universities: Columbia University, New York University, Fordham University, CUNY, AI Now Institute, Flatiron Institute, C.N. Yang Institute for Theoretical Physics, NASA Space Radiation Laboratory

