Why Work for KeHE?
Good people, working with good people, for our common good.
Sound good? KeHE-a natural, organic, specialty and fresh food distributor-is all about "good" and is growing, so there's never been a more exciting time to join our team. If you're enthusiastic about working in an environment with a people-first culture and an organization committed to good living, good food and good service, we'd love to talk to you!
Primary Responsibilities
The Cloud Engineer will lead the configuration and optimization of our enterprise cloud solutions. This role will be responsible for ensuring the security, standards, performance, and reliability of all cloud infrastructureincluding compute, networking, storage, and disaster recovery across the organization. This individual will be a strategic thinker with excellent technical acumen, project execution capability, and a commitment to continuous innovation and leadership. As with all positions at KeHE Distributors, we expect that all actions will be consistent with KeHE's Mission, Vision, and Values.
Essential Functions
DUTIES, TASKS AND RESPONSIBILITIES :
- Build and maintain scalable and secure multi-cloud environments across AWS and Azure.
- Configure core infrastructure components including :
- Compute : EC2, Lambda, ECS (AWS); Virtual Machines, App Services, Functions (Azure).
- Networking : VPCs, Transit Gateway, Route 53 (AWS); VNets, Private Endpoints, DNS Zones, Load Balancers (Azure).
- Storage : S3, EBS, EFS (AWS); Blob, File Share, Disk Storage (Azure).
- Databases : RDS, DynamoDB (AWS); Azure SQL, Cosmos DB (Azure).
- Develop and manage infrastructure-as-code (IaC) using Terraform, Bicep, or CloudFormation for repeatable, version-controlled deployments.
- Automate provisioning, patching, scaling, and maintenance tasks through Python, PowerShell, or Bash scripting.
- Configure and manage observability solutions using CloudWatch, CloudTrail, Azure Monitor, and Log Analytics.
- Implement centralized logging and alerting with Elastic Stack (ELK), Grafana, or Azure Sentinel.
- Conduct proactive cost optimization, rightsizing, and resource tagging across both clouds.
- Manage secrets and keys using AWS Secrets Manager, Azure Key Vault, and Parameter Store.
- Enforce compliance with organizational and regulatory standards (e.g., CIS, NIST, ISO 27001) through automated policies using AWS Config, Azure Policy, and Defender for Cloud.
- Conduct vulnerability scanning & remediation as well as patch management on cloud resources.
- Work with Security team to establish and enforce corporate policies, standards and frameworks, ensuring all products and solutions are aligned.
- Collaborate with Security teams to monitor and respond to threats and alerts.
- Design and maintain hybrid network connectivity between on-premises and cloud environments using VPN, ExpressRoute, and Direct Connect.
- Implement network segmentation, firewall rules, and private endpoints for secure data flows.
- Troubleshoot DNS, load balancing, and routing issues across both platforms.
- Design and test backup, replication, and failover strategies for mission-critical workloads.
- Configure multi-region and multi-availability zone architectures for redundancy and uptime SLAs.
- Design and document disaster recovery (DR) playbooks and test plans.
- Lead enterprise projects in area of responsibility from conception to completion.
- Manage timelines, resources, risk, and communication with stakeholders.
- Support serverless architectures using AWS Lambda and Azure Functions where applicable.
- Perform other duties as required to support the IT infrastructure team and overall business operations.
- Deliver scalable and secure infrastructure solutions aligned with business goals.
- Other duties and projects as assigned.
Skills, Knowledge and Abilities
Deep technical knowledge of cloud networking, IAM, VMs, storage, containers, and serverless services.Strong understanding of cloud security principles and frameworks.Familiarity with identity management and conditional access (Azure AD, MFA, SSO).Proficient in scripting (PowerShell, Python, or similar)Excellent communication, documentation, problem-solving, and analytical thinking skills.Proactive and adaptable with a continuous improvement mindset.Strong leadership and the ability to inspire team excellence with a commitment to fostering a collaborative, inclusive, and positive team culture that aligns with organizational values.Strong strategic thinking, operational execution, customer experience orientation, and cost and performance optimization.Proficiency in Terraform or equivalent IaC tools.Hybrid-based with occasional travel to other locations as needed and on-call rotation or after-hours support.Minimum Requirements, Qualifications, Additional Skills, Aptitude
EDUCATION AND EXPERIENCE :
Bachelor's degree in Computer Science, Information Technology, or equivalent experienceMinimum of 3 years of experience working with AWS and Azure cloud platforms in an engineering capacity.ITIL Foundation or PMP certification.Experience with Linux and Windows administration in cloud environments.Certifications such as AWS Certified Solutions Architect Associate / Professional, Microsoft Certified : Azure Administrator / Architect Expert preferred.Familiarity with Kubernetes (AKS / EKS) and containerization (Docker) preferred.Terraform Associate / Professional Certification preferred.PHYSICAL REQUIREMENTS :
These physical demands are representative of the physical requirements necessary for an employee to successfully perform the essential functions of the job.
Equal Employer Opportunity Statement : KeHE Distributors provides equal employment opportunities to all employees and applicants for employment and prohibits all forms of discrimination and harassment on the basis of race, color, religion or faith, sex, gender, age, ancestry, national origin, mental or physical disability or medical condition, sexual orientation, gender identity or expression, marital status, military or veteran status, genetic information, or any other category protected under federal, state, or local law. This policy applies to all terms and conditions of employment, including recruiting, hiring, placement, promotion, termination, layoff, recall, transfer, leaves of absence, compensation and training as well as the administration of all Human Resources and Talent Acquisition processes.