09/17/2026

Manager, Cloud Automation Engineering

Job Description

Together we fight for everyone’s opportunity for a better financial future.

We will do this together — with customers, partners and colleagues. We will fight for others, not against: We will stand up for and champion everyone’s access to opportunities. The status quo is not good enough … we believe every individual and every community deserves access to financial opportunities. We are determined to support both individuals and communities in reaching a better financial future.  We know that reaching this future depends on our actions today.

Like our Purpose Statement, Voya believes in being bold and committed to action.  We are committed to a work environment where the differences that we are born with — and those we acquire throughout our lives — are understood, valued and intentionally pursued. We believe that our employees own our culture and have a responsibility to foster an environment where we all feel comfortable bringing our whole selves to work. Purposefully bringing our differences together to positively influence our culture, serve our clients and enrich our communities is essential to our vision.

Are you ready to join a company with a strong purpose and a winning culture? Start your Voyage – Apply Now

Manager, Cloud Automation Engineering

Role Overview

Voya's Infrastructure Engineering organization is modernizing how cloud infrastructure gets built, changed, and governed across Azure, AWS, and OCI. Terraform and Ansible/AAP automation already run production workloads today — VM lifecycle and disaster-recovery failover, capacity management, and GitOps-driven application delivery — but much of that automation grew organically, without the version control, peer review, and audit trail that a regulated financial services environment requires. This role owns closing that gap: replacing ungoverned, direct-to-production automation patterns with a secure, auditable, and genuinely usable cloud automation platform.

Get to Know the Opportunity

As Manager, Cloud Automation Engineering, you are a builder-operator hybrid: hands-on architect and contributor to the pipelines and platforms your team runs, and the people leader accountable for their delivery and growth. You will personally design and help build the CI/CD architecture for Terraform, Ansible/AAP, and GitOps (ArgoCD) — version-pinned artifact promotion, policy-as-code gates, and DTAP segregation — while also running forensic audits of the current estate to quantify risk and build the evidence base for remediation. You'll partner directly with security, compliance, and audit stakeholders to map every pipeline gate to a named control (SDLC-2, CP-054, CP-064, ITAM-3, SOC-12, Source Code Protection Standard), and you'll lead and grow a team of cloud/platform engineers who share that same builder mindset.

The Contributions You'll Make

Cloud Automation Architecture & Engineering

  • Architect and personally build the Terraform (anchored on the shared-module repo) and Ansible/AAP pipelines spanning Azure, AWS, and OCI, replacing live branch-sync and direct-apply patterns with version-pinned, gated promotion.
  • Design and implement GitOps delivery via ArgoCD/OpenShift GitOps, moving self-syncing application patterns onto a discrete build-and-gate stage.
  • Define reference architectures, module/role standards, and reusable shared-module conventions — CI, CODEOWNERS, branch protection, semantic version tagging — enforced across every consumer repository.

SDLC Pipeline & Compliance Engineering

  • Own end-to-end remediation of the Terraform uplift and Ansible greenfield rebuild: committer-limit enforcement, branch protection and peer review, version-pinned promotion across Dev/Test/Acceptance/Prod, and independent release-owner approval gates ahead of production.
  • Build and mature the security tooling stack: static analysis and policy-as-code for Terraform (linting, cloud-config scanning, OPA) and for Ansible (lint, Molecule, container/CVE scanning), plus software composition analysis and secret scanning across the estate.
  • Stand up SIEM and audit-trail coverage for Git activity, plan/apply and job-execution events, and secrets access; own the formal exception process where tooling choices deviate from the enterprise standard.
  • Close artifact-provenance gaps: SBOM generation and signed-artifact publishing for every build that reaches production.

Governance, Audit & Risk Reduction

  • Run forensic, evidence-based audits of live IaC estates — repository inventory, collaborator and committer counts, CI coverage, secrets hygiene, tag and version currency — to quantify governance gaps and build the business case for remediation or rebuild.
  • Identify and close shadow-repo and personal-namespace automation risk; consolidate automation onto sanctioned, org-owned repositories.
  • Partner with Change Management, Release Management, and the Change Advisory Board to map pipeline gates to formal change records, approval boards, and code-freeze/pre-production lockdown windows.

Cross-Platform Cloud Operations

  • Own the automation supporting live production workloads across Azure, AWS, and OCI — VM lifecycle, disaster-recovery failover, and capacity management — ensuring changes flow through gated, auditable pipelines rather than console, SSH, or unreviewed branch-sync paths.
  • Partner with automation-platform owners to move control-plane configuration (job templates, RBAC, credential scopes) to config-as-code with the same version-pinning discipline applied to application code.

Leadership & Talent Development

  • Build, lead, and grow a team of cloud and platform engineers, balancing hands-on architecture and code contribution with people leadership — hiring, performance, and career development.
  • Serve as the escalation point and technical authority for cloud automation architecture decisions; mentor engineers on secure pipeline design and infrastructure-as-code practices.
  • Represent cloud automation engineering in enterprise architecture, security, and compliance forums; translate technical risk and roadmap into terms senior technology and business stakeholders can act on.

Minimum Knowledge and Experience

  • Bachelor's degree in Computer Science, Engineering, or a related field, or equivalent practical experience.
  • 10+ years in infrastructure, platform, or cloud engineering, with deep hands-on infrastructure-as-code experience.
  • 5+ years in a leadership role directly managing engineers delivering cloud infrastructure automation.

Infrastructure as Code & Automation

  • Expert-level Terraform: module design, state management, provider and version pinning, multi-environment workspace/state strategy.
  • Expert-level Ansible: roles, collections, execution environments, and production experience with Ansible Automation Platform (Job Templates, Workflow Templates, RBAC, credential management).
  • Hands-on GitOps experience with ArgoCD or an equivalent tool on Kubernetes/OpenShift.

CI/CD & Pipeline Engineering

  • Deep experience building CI/CD pipelines (GitHub Actions or equivalent), including version-pinned artifact promotion across Dev/Test/Acceptance/Prod.
  • Hands-on with policy-as-code and static/composition-analysis tooling — OPA or equivalent policy engines, infrastructure linting and configuration scanners, Ansible lint/testing frameworks, and CVE/software composition analysis scanners.
  • Experience with artifact management platforms (e.g., JFrog Artifactory), including SBOM generation and artifact signing.

Cloud & Security

  • Multi-cloud hands-on experience across Azure, AWS, and/or OCI, including compute, networking, and disaster-recovery/failover automation.
  • Experience with enterprise secrets-management platforms (e.g., CyberArk Conjur, HashiCorp Vault) and eliminating secrets-in-code patterns.
  • Working knowledge of SIEM/observability integration for audit logging and security-event retention requirements.

Governance & Regulated Environments

  • Demonstrated experience operating in a regulated, audited environment — financial services strongly preferred — including SDLC governance frameworks, segregation-of-duties controls, and formal change/release management.
  • Experience running or contributing to control audits (branch protection, committer/collaborator review, secrets scanning, CI coverage) and translating findings into a prioritized remediation roadmap.

Soft Skills

  • Excellent written and verbal communication; able to translate deep technical and compliance findings into a business-risk narrative for senior stakeholders.
  • Strong stakeholder management across security, compliance, and application engineering teams.
  • Comfortable operating as both an individual contributor writing production code and pipelines, and a people leader accountable for team output.

Nice to Have

  • Experience with modern SIEM/observability stacks beyond traditional log-management tools.
  • Familiarity with Red Hat OpenShift GitOps or equivalent enterprise Kubernetes platforms.
  • Experience standing up a greenfield automation platform from scratch, not only uplifting an existing one.
  • Background contributing to, or leading formal IT control audits or SOX-adjacent evidence packages.

Compensation Pay Disclosure:

Voya is committed to pay that’s fair and equitable, which means comparable pay for comparable roles and responsibilities.

The below annual base salary range reflects the expected hiring range(s) for this position in the location(s) listed. In addition to base salary, Voya offers incentive opportunities (i.e., annual cash incentives, sales incentives, and/or long-term incentives) based on the role to reward the achievement of annual performance objectives. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Voya Financial is willing to pay at the time of this posting.

Actual compensation offered may vary from the posted salary range based upon the candidate’s geographic location, work experience, education, licensure requirements and/or skill level and will be finalized at the time of offer. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked.

$114,480 - $170,070 USD

Be Well. Stay Well.

Voya provides the resources that can make a difference in your lives. To us, this means thriving physically, financially, socially and emotionally. Voya benefits are designed to help you do just that. That’s why we offer an array of plans, programs, tools and resources with one goal in mind: To help you and your family be well and stay well.

What We Offer

  • Health, dental, vision and life insurance plans
  • 401(k) Savings plan – with generous company matching contributions (up to 6%)
  • Voya Retirement Plan – employer paid cash balance retirement plan (4%)
  • Tuition reimbursement up to $5,250/year
  • Paid time off – including 20 days paid time off, nine paid company holidays and a flexible Diversity Celebration Day.
  • Paid volunteer time — 40 hours per calendar year

Learn more about Voya benefits (download PDF)

Critical Skills

At Voya, we have identified the following critical skills which are key to success in our culture:

  • Customer Focused: Passionate drive to delight our customers and offer unique solutions that deliver on their expectations.
  • Critical Thinking: Thoughtful process of analyzing data and problem solving data to reach a well-reasoned solution.
  • Team Mentality: Partnering effectively to drive our culture and execute on our common goals.
  • Business Acumen: Appreciation and understanding of the financial services industry in order to make sound business decisions.
  • Learning Agility: Openness to new ways of thinking and acquiring new skills to retain a competitive advantage.

Learn more about Critical Skills

Equal Employment Opportunity

Voya Financial is an equal-opportunity employer. Voya Financial provides equal opportunity to qualified individuals regardless of race, color, sex, national origin, citizenship status, religion, age, disability, veteran status, creed, marital status, sexual orientation, gender identity, genetic information, or any other status protected by state or local law.

Reasonable Accommodations

Voya is committed to the inclusion of all qualified individuals. As part of this commitment, Voya will ensure that persons with disabilities are provided reasonable accommodations. If reasonable accommodation is needed to participate in the job application or interview process, to perform essential job functions, and/or to receive other benefits and privileges of employment, please reference resources for applicants with disabilities.

Misuse of Voya's name in fraud schemes


Apply Now