Platform Principal Engineer
LSEGAbout the role
Summary of Business Unit/Function:
One Policy Engine (OPE) strives to provide standardized, valuable services to improve the developer experience and cloud enablement solutions. Through innovative ways, focused risk management, and a culture of continuous improvement, OPE delivers credible services to our customers. It offers an end-to-end solution to eliminate developer frustrations and delays when releasing code to our cloud platforms. OPE unifies and democratizes the digital policy lifecycle across all clouds, supporting Role-Based Access Control (RBAC), Custom Control Frameworks, and policy writing and application from central to specific Line of Business (LoB) controls. It integrates directly within the developer's Coordinated Development Environment (IDE) and pipeline stages to guide developers on digital policies and avoid violations. The OPE Deployment Compliance Gate certifies selected developers for compliance, enabling automated pre-approved releases.
Role Summary:
Position: Platform Principal Engineer
Specialization: In building enterprise solutions with hosted and SaaS-based services for cloud platforms.
As a Platform Principal Engineer, you will be at the forefront of crafting, implementing, and optimizing the unified policy engine platform. Your mission is to build seamless, secure, scalable, and efficient enterprise cloud compliance solutions. You will collaborate with multifunctional teams, embrace DevSecOps practices, leverage Infrastructure as Code (IaC) tools like Terraform, and nurture the shift-left approach. Your involvement spans the entire project lifecycle—from gathering requirements to production deployment—and includes generating and refining developer-focused resources such as cloud architecture patterns, CI/CD pipeline templates, automated testing, and code scanning.
Key Responsibilities and Accountabilities:
- Enterprise Operating Models:
- Develop and implement enterprise-level policy operating models, Single Sign-On (SSO), RBAC, and workflows.
- Control workflows
- Design Policy Ops model, Create/Implement security/risk control frameworks, develop build/run time policies using rego for Azure/AWS/GCP resources, good understanding on Azure/AWS/GCP policy frameworks/security.
- SDLC Integration:
- Build design patterns, modules, and libraries to integrate SDLC processes into the CI/CD pipeline.
- Provide technical expertise in automation engineering, coding, and architecture issues.
- Collaborate with Cloud Engineering/Ops and Dev Tools on DevSecOps automation-related issues.
- Cloud Infrastructure Design and Deployment:
- Architect and deploy cloud solutions with multifunctional teams.
- Select the appropriate cloud provider (AWS, Azure, GCP) based on project requirements.
- Apply IaC tools like Terraform to build and manage cloud resources.
- DevSecOps Integration:
- Implement security practices early in the development process (Shift Left Approach).
- Automate security checks, scan code, implement coding standards, and manage dependencies securely.
- Integrate security throughout the CI/CD pipeline.
- CI/CD Pipeline Management:
- Set up GitLab repositories and configure CI/CD for Terraform deployments.
- Understand GitLab Runners and Artifacts.
- IaC Best Practices (Preferably Terraform):
- Optimize Terraform files and structures.
- Follow Terraform coding conventions.
- Maintain version-controlled Terraform code.
- Open Policy Agent (OPA):
- Implement policies related to infrastructure, security, and compliance using OPA.
- Cloud Service Deployment:
- Oversee infrastructure monitoring and management.
- Set up monitoring, build alarms, and create dashboards for critical metrics.
- Manage logs efficiently.
- Automation Architecture:
- Conduct investigations and maturity assessments of current DevOps practices.
- Define and apply automation architecture principles.
- Develop automation solutions for Cloud (IaC - Terraform), CI/CD pipelines (YAML), and Quality Engineering (QE) processes.
Essential Technical Skills:
- Policy and Security:
- Proficiency in declarative policy language, context-aware and expressive, architectural flexibility, and integrated development tools.
- Experience with Azure policies and security guardrails.
- Cloud Technology:
- Knowledge of IaC concepts and cloud technology across CSPs (AWS, Azure, GCP).
- Implementation experience with DevOps,
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s