CloudOps Engineer — Total ETO
CloudOps · CloudSecOps · DevOps · FinOps · SRE
About Total ETO and this role
Total ETO provides ERP software purpose-built for engineer-to-order (ETO) manufacturers — companies that design, build, and deliver highly customized products. Our customers rely on us to run mission-critical operations across engineering, procurement, production, and financials. We are a 27-year, 100% remote company with a culture of ownership.
We are seeking a CloudOps Engineer to implement, operate, and maintain the Azure platform behind our SaaS product, reporting to the CloudOps Director. Working collaboratively with senior architects to set the design, you make it real — building the infrastructure-as-code, shipping the pipelines, running the monitoring, responding to incidents, and keeping customer environments healthy across CloudOps, Cloud Security (CloudSecOps), DevOps, FinOps, and Site Reliability Engineering (SRE). This is a hands-on implementation and operations role.
You will work day-to-day in an established, heavily automated Azure estate — we work AI-first in CloudOps, so you can ship and operate faster — with room to grow toward senior and architect scope as you deepen across the disciplines.
This posting represents one existing vacancy. Total ETO is considering candidates at either the CloudOps Engineer or Senior CloudOps Architect level. One candidate will be hired, with the final position title, responsibilities and compensation determined based on the successful candidate’s experience and qualifications.
Job Type: Full-Time Remote, Permanent
Salary range: $90,000 – $110,000 CAD. This range reflects experience and the unique skills each candidate brings to the role.
Your First Year
- Secure customer-data platform — help build and roll out the on-demand, single-tenant environment for working with sensitive customer data (ephemeral, region-resident, egress-controlled, and fully audited) to the architects’ design.
- Compliance foundation — implement the technical controls behind our CMMC / CPCSC Level 1 self-assessment as we open regulated and defense markets.
Key Responsibilities
Cloud Operations (CloudOps)
- Implement and maintain infrastructure-as-code (Bicep / Azure Verified Modules) to established standards and patterns
- Provision, configure, scale, and operate customer hosting environments on Windows Server, IIS, and SQL Server
- Carry out routine operational work — deployments, patching, backups, and estate maintenance
Cloud Security (CloudSecOps)
- Apply and maintain the security baselines and edge/identity configuration: Azure Front Door + WAF, per-customer access controls, Key Vault, and managed identities
- Enforce least-privilege access and encryption in day-to-day operations; action security findings and access requests
- Implement the technical controls behind our compliance posture (CMMC, CPCSC, SOC 2-style)
DevOps
- Implement, run, and maintain CI/CD release pipelines (Azure DevOps) that ship infrastructure and application changes
- Automate operational work in PowerShell — deployments, provisioning, secret rotation, and scheduled jobs
- Follow “paved-road” workflows and code review so nothing ships by hand
FinOps
- Apply cost-control changes — right-sizing, tagging, budgets, and alerts — across subscriptions (Azure Cost Management)
- Keep spend visibility and reporting current, and flag anomalies
- Action agreed cost-optimization recommendations
Site Reliability Engineering (SRE)
- Operate the monitoring, alerting, and incident pipeline (Azure Monitor, Log Analytics, Logic Apps, Event Grid to Jira / PagerDuty)
- Take part in the on-call rotation — respond to alerts, drive incidents to resolution, and complete post-incident actions
- Run backup/restore and disaster-recovery procedures for customer-facing systems
Qualifications & Experience
- 4+ years in cloud operations, DevOps, SRE, or systems administration — in a hands-on implementation role
- Solid hands-on Microsoft Azure across compute, networking, identity, security, edge (Front Door / WAF), and event-driven services (Logic Apps, Event Grid)
- Comfortable writing and maintaining infrastructure-as-code (Bicep or Terraform) and CI/CD pipelines (Azure DevOps, GitHub Actions, or similar) to established patterns
- Proficiency automating in PowerShell (or equivalent) on a Windows / SQL Server / IIS stack
- Working knowledge across most of CloudOps, CloudSecOps, DevOps, FinOps, and SRE — and eagerness to grow in all five
- Hands-on with on-call, incident response, and production troubleshooting
Nice to Have
- Azure certifications (Administrator Associate, DevOps Engineer Expert, or Security Engineer Associate)
- Experience with compliance frameworks (CMMC, CPCSC, SOC 2, ISO 27001)
- Experience using AI-assisted engineering in daily operations
- ERP, manufacturing, or engineer-to-order domain exposure
Key Traits for Success
- Reliable and thorough — follows through, documents, and closes the loop
- Takes ownership of execution — drives tasks to done without being chased
- Calm under pressure — steady during incidents and on-call
- Communicates clearly — writes concise updates and runbooks others can act on
Work Environment
- Fully remote role open to candidates in Canada who are legally eligible to work in Canada
- Employees are expected to provide and maintain an appropriate home office setup; reliable internet and a professional remote workspace are required
- Participation in a shared on-call rotation, with occasional after-hours or weekend work for incident response and maintenance windows, as part of a standard 40-hour week
Application Process
We do our best to ensure every application is reviewed by a real person. Because of the number of applications we receive and the needs of our day-to-day work, we may use AI tools to support our review process as needed.
Candidates selected to move forward will begin with a phone screening, followed by a video interview and/or a role-related technical assessment, depending on the position.
We sincerely appreciate the interest of all applicants; however, we are only accepting applications from candidates authorized to work and residing in Canada. We are unable to support international applications or sponsorship for this role.