Staff Platform EngineerActive
The opportunity
We’re big believers in the power of IRL, so for most roles we ask Campers to work from their local Culture Amp office an average of 2 days a week to unlock connection, pace and culture together.
What you'll do
Architect, secure and maintain the root configuration, tenancy guardrails and: system integrity of our core enterprise platforms, including Okta, Google Workspace, Jamf, Slack, Claude Enterprise and Glean, with clear boundaries between foundational platform ownership and day-to-day administration.
Design and continuously improve workforce identity, access management, device: trust and endpoint controls using Infrastructure as Code, primarily Terraform, and related automation tooling.
Eliminate ClickOps by managing platform configuration, identity policies and: system state through pull requests, tested CI/CD pipelines and approved scripting patterns, with rigorous Git workflows, branch protections and peer review.
Own the end-to-end identity lifecycle across joiner, mover and leaver: workflows, including HRIS-to-identity integrations, provisioning rules, group structures and downstream access patterns.
Build and productise reusable modules, administrative tooling, standard: operating procedures and runbooks so Workplace Technology can safely manage routine support and provisioning without senior engineering intervention.
Own the baseline architecture of office networks across our Melbourne hub and: satellite locations, while partnering with Security, Enterprise Architecture and Automation to deliver compliant, secure platforms and providing technical leadership across Infrastructure & Identity.
What they're looking for
- Strong systems-thinking and architecture skills, with the ability to design: resilient identity, SaaS and network architectures as an interconnected enterprise control plane.
- Sound judgment in defining platform boundaries between foundational: engineering and delegated Workplace Technology operations.
- A strong anti-ClickOps mindset, instinctively favouring code, automation and: reusable modules over manual console changes and actively reducing configuration drift and operational risk.
- The ability to turn complex infrastructure into safe tooling, clear runbooks: and least-privilege operating models that help others move quickly without compromising control.