Remote · North America
Software Engineer, Platform Access (L2)
- Hiring location
- North America
About the role
See yourself at Twilio
Join the team as Twilio’s next Software Engineer, Platform Access (L2).
About the job
This position is an engineering role within Twilio’s Cloud Native Foundations Team, suited to an engineer focused on identity, governance, and automated access control across multi-cloud environments.
Our team manages identity federation, least-privilege access, and automated provisioning for hundreds of accounts across Amazon Web Services (AWS), Microsoft Azure, and Google Cloud Platform (GCP). As an L2 engineer, you will help design, build, and operate access controls and platform security tools at scale. You'll get hands-on with multi-cloud IAM, contribute to Terraform-based infrastructure automation, and write code to ensure secure, seamless developer access—using modern AI-assisted tooling to move faster and ramp up your skills.
Responsibilities
In this role, you’ll:
- WEAR THE CUSTOMER'S SHOES: Help design, build, and operate automations and access tools that streamline developer workflows while keeping multi-cloud environments secure. Work with security and technical leadership to turn well-scoped tasks into working code.
- BE AN OWNER (CODE QUALITY): Participate in code reviews and follow established patterns, testing standards and policy-as-code frameworks across the platform.
- BE AN OWNER (INFRASTRUCTURE & OBSERVABILITY): Support multi-cloud access infrastructure spanning AWS, Azure, and GCP accounts using Infrastructure as Code (Terraform). Help maintain least-privilege IAM policies, identity federation, role provisioning, and automated lifecycle workflows across hundreds of cloud accounts. Help maintain observability coverage, including metrics, alerts, and basic distributed tracing, across core data pipelines.
- CHAMPION ENGINEERING HEALTH: Build awareness of secure architectural practices and IAM best practices. Flag access drift, technical debt, security vulnerabilities, and platform issues to your team as you encounter them.
- GROW AND COLLABORATE: Actively seek feedback and mentorship from senior engineers, participate in sprint planning, and share what you learn with peers as you grow into a more senior role.
Qualifications
-
Twilio values diverse experiences from all kinds of industries, and we encourage everyone who meets the required qualifications to apply. If your career is just starting or hasn't followed a traditional path, don't let that stop you from considering Twilio. We are always looking for people who will bring something new to the table!
- Experience: 1–2+ years of professional software engineering or DevOps/Platform engineering experience, with practical exposure to multi-cloud environments, Identity & Access Management (IAM), or platform automation.
- Modern Development Workflow: Practical experience with, or a strong desire to learn, AI-assisted development tools (e.g., Claude Code, GitHub Copilot) to help write code, automate testing, and support debugging workflows.
- Infrastructure as Code & Automation: Practical experience or familiarity with Terraform, Harness, or similar IaC tools to manage cloud resources and access permissions programmatically.
- Multi-Cloud Infrastructure: Experience with cloud environments, including basic exposure to account management, IAM permissions, or core services in at least one major provider—AWS (e.g., IAM, Organizations, SSO/Identity Center), Microsoft Azure (e.g., Microsoft Entra ID/Azure AD, RBAC, Subscriptions), or Google Cloud Platform (GCP) (e.g., Cloud IAM, Workload Identity, Projects). General familiarity with multi-account/multi-project cloud architecture is a plus.
- Language Proficiency: Working knowledge of at least one of Shell, Terraform, YAML, or Go (Golang), with a willingness to build proficiency across the rest.
- Security & Governance Mindset: Solid understanding of core security concepts (authentication, authorization, least-privilege principles, secrets management) and an eagerness to build self-service, developer-friendly platform tooling.
Desired:
- Familiarity with centralized identity federation, SAML, OIDC, or Okta integration with cloud service providers.
- Hands-on experience with containerized workloads (Docker, Kubernetes) or managing access to Kubernetes clusters (EKS/AKS/GKE RBAC).
- Interest in automated cloud governance tools, account vending machines, or identity lifecycle management at scale.
- Coursework or personal projects involving distributed systems, cloud security, or API development.
- Enthusiasm for working across multi-cloud environments and expanding hands-on depth across AWS, Azure, and GCP over time.
Location
- This role will be remote, but is not eligible to be hired in CA, CT, NJ, NY, PA, WA.
Travel
We prioritize connection and opportunities to build relationships with our customers and each other. For this role, you may be required to travel occasionally to participate in project or team in-person meetings.
What We Offer
Working at Twilio offers many benefits, including competitive pay, generous time off, ample parental and wellness leave, healthcare, a retirement savings program, and much more. Offerings vary by location.
Compensation
The estimated pay ranges for this role are as follows:
-
Based in Colorado, Hawaii, Illinois, Maryland, Massachusetts, Minnesota, Vermont or Washington D.C. : $116,960.00 - $146,200.00Based in New York, New Jersey, Washington State, or California (outside of the San Francisco Bay area): 123,760.00-154,700.00Based in the San Francisco Bay area, California: 137,520.00-171,900.00.This role may be eligible to participate in Twilio’s equity plan and corporate bonus plan. All roles are generally eligible for the following benefits: health care insurance, 401(k) retirement account, paid sick time, paid personal time off, paid parental leave.
The successful candidate’s starting salary will be determined based on permissible, non-discriminatory factors such as skills, experience, and geographic location.
Applications for this role are intended to be accepted until 10/31/2026 but may change based on business needs.
You apply on the company’s own site. Remoteli never sits in between.