Sourcing by role
How to find a cloud engineer.
Certifications are easy to collect and weakly predictive. Published infrastructure code tells you more in thirty seconds than a list of badges tells you at all.
Cloud hiring has a signal problem. Certifications are the obvious filter, they are heavily marketed, and most of them are written exams that a determined person passes through study alone. Meanwhile the thing that actually predicts performance — whether someone manages infrastructure as versioned code or clicks through a console — appears nowhere on the CV.
A second assumption costs more than it should: that cloud experience transfers freely between providers. The concepts do transfer, but IAM models, networking primitives, and managed service behaviour differ enough that an AWS expert is an intermediate Azure engineer for months. Whether that matters depends entirely on whether the role has ramp capacity.
Job titles worth searching
Grouped by what the person actually does, because searching all42 at once produces a result set you cannot triage. Decide which group you need first — that decision does more for the search than any string below.
Core cloud titles
Broad and largely interchangeable, and increasingly overlapping with platform and DevOps engineering. The important question these titles do not answer is whether the person builds infrastructure or operates it, and at what scale.
- Cloud Engineer
- Cloud Infrastructure Engineer
- Cloud Architect
- Solutions Architect
- Cloud Solutions Engineer
- Infrastructure Engineer
- Systems Engineer
Provider-specific
More informative than the generic titles, because depth does not transfer as freely as recruiters assume. Basic concepts map across providers, but IAM models, networking primitives, and managed service behaviour differ substantially — an AWS expert is a competent AWS engineer and an intermediate Azure one.
- AWS Engineer
- AWS Solutions Architect
- Azure Engineer
- Azure Cloud Architect
- GCP Engineer
- Google Cloud Architect
- Multi-Cloud Architect
- OCI Engineer
Infrastructure as code and automation
Where modern cloud work actually happens. An engineer who provisions through a web console and one who manages everything in Terraform are doing different jobs at different maturity levels, and the tooling names are the most reliable filter for this.
- Infrastructure as Code Engineer
- Terraform Engineer
- Platform Engineer
- DevOps Engineer
- Automation Engineer
- Configuration Management Engineer
- GitOps Engineer
Container and orchestration
Kubernetes has become its own specialisation, deep enough that people build careers on it. Running workloads on a managed cluster and operating the cluster itself are very different levels of expertise, and job adverts rarely distinguish them.
- Kubernetes Engineer
- Container Platform Engineer
- Site Reliability Engineer
- SRE
- Cloud Native Engineer
- Service Mesh Engineer
- OpenShift Engineer
Security and governance
A distinct and scarce specialisation. Cloud security requires understanding both the provider's security model and general security practice, and the identity and access side in particular is where most real-world cloud breaches originate.
- Cloud Security Engineer
- Cloud Security Architect
- IAM Engineer
- Cloud Compliance Engineer
- CSPM Specialist
- Zero Trust Architect
Cost and operations
A genuinely new discipline that emerged once cloud bills became a board-level concern. FinOps practitioners combine engineering knowledge with commercial analysis, and the population is small because the role barely existed five years ago.
- FinOps Engineer
- Cloud Cost Analyst
- Cloud Operations Engineer
- CloudOps Engineer
- Cloud Capacity Engineer
- Cloud Migration Engineer
- Cloud Support Engineer
Certifications, and which ones mean something
The distinction worth making is written versus practical. Performance-based exams conducted in a live environment cannot be memorised; multiple-choice associate-level certifications can, and are held by a very large population.
| Credential | Full name | Region | What it tells you |
|---|---|---|---|
| AWS SAA | AWS Solutions Architect Associate | International | The most widely held cloud certification by a large margin. Easy enough to obtain through study alone that it indicates familiarity rather than operational experience. |
| AWS SAP | AWS Solutions Architect Professional | International | Substantially harder and much less commonly held. A meaningful signal, though still a written exam rather than a practical one. |
| AZ-104 / AZ-305 | Azure Administrator / Solutions Architect Expert | International | The Azure equivalents. AZ-305 is the architect-level credential and is the more informative of the two. |
| GCP PCA | Google Professional Cloud Architect | International | Well regarded and less commonly held than the AWS equivalents, partly reflecting GCP's smaller enterprise footprint. |
| CKA / CKAD | Certified Kubernetes Administrator / Application Developer | International | Genuinely practical — performance-based exams in a live cluster with a time limit. Among the most meaningful certifications in this field precisely because they cannot be memorised. |
| CKS | Certified Kubernetes Security Specialist | International | Requires CKA first and covers cluster hardening. Rare, practical, and a strong signal for cloud security roles. |
| Terraform Associate | HashiCorp Certified Terraform Associate | International | Entry-level but indicates infrastructure-as-code working style rather than console-driven administration. |
| FinOps Certified | FinOps Foundation certification | International | New and thinly held. Useful mainly as evidence of deliberate interest in cost engineering, which is itself a differentiator. |
Where cloud engineers actually are
Published infrastructure code is the fastest maturity signal in this field. Terraform and Pulumi modules on GitHub show someone who versions, reviews, and tests their infrastructure, which separates modern practice from console-driven administration invisibly on a CV. This single check resolves a large share of mismatches before an interview.
Open source contribution identifies the deepest practitioners. The tools that run modern platforms — Kubernetes, Prometheus, Grafana, the HashiCorp stack — are open, and contributors to the projects your platform depends on are both highly capable and rarely contacted. They expect outreach demonstrating familiarity with their actual work.
The conference circuit splits usefully between vendor events and practitioner ones. KubeCon and SREcon attract people who operate systems and publish speaker lists worth mining; the large provider conferences skew more commercial. For the emerging cost discipline, FinOps practitioners are a small enough population that searching quantified savings claims produces a workable shortlist.
Boolean search strings
Written to be pasted as-is. Each one is built around an intent rather than a platform, since the useful question is what you are trying to find, not which site you happen to be on.
LinkedIn profiles, direct X-ray
Google (LinkedIn)site:linkedin.com/in/ ("cloud engineer" OR "cloud architect" OR "platform engineer") (Terraform OR Kubernetes OR AWS OR Azure) "{city}"Among the better-performing X-ray searches in this cluster, since cloud engineers list certifications and tooling in headlines and some headline text remains indexed. Titles and locations are no longer exposed to crawlers, so the tool and certification terms carry the search rather than the title.
Infrastructure as code practitioners
Google (GitHub)site:github.com ("terraform" OR "pulumi" OR "cloudformation") ("module" OR "provider" OR "stack") -awesome -tutorialThe clearest maturity signal available. Published Terraform modules indicate someone who manages infrastructure as versioned code rather than clicking through a console, which is the distinction most job descriptions fail to probe.
Kubernetes operators, not just users
Google("CKA" OR "CKS" OR "kubernetes operator" OR "custom resource" OR "etcd") ("production" OR "cluster") -jobs -courseRunning workloads on a managed cluster is common; operating clusters, writing operators, or dealing with etcd is not. The deeper terms separate the two populations reliably.
Cloud cost and FinOps specialists
Google("FinOps" OR "cloud cost optimization" OR "reserved instances" OR "savings plans") ("reduced" OR "saved" OR "%") -jobs -vendorA small and genuinely scarce population. Quantified savings claims are searchable and verifiable in conversation, and cost engineering has become a board-level concern in most cloud-heavy organisations.
Cloud security specialists
Google("cloud security" OR "CSPM" OR "IAM policy" OR "least privilege") (AWS OR Azure OR GCP) -jobs -vendor -webinarExcluding 'vendor' and 'webinar' is essential — cloud security terms are saturated with marketing content from tooling companies. Identity and access depth is what matters most, since that is where real breaches originate.
Conference speakers and community
Google("speaker" OR "talk" OR "session") ("KubeCon" OR "re:Invent" OR "HashiConf" OR "SREcon") 2024..2026 -jobsKubeCon and SREcon in particular attract practitioners rather than vendors, and speaker lists identify people with genuine operational depth in a given region.
Migration and modernisation experience
Google("cloud migration" OR "lift and shift" OR "data centre exit" OR "modernization") ("led" OR "delivered" OR "completed") -jobs -consultingMigration experience is specific and valuable, and quite different from building cloud-native systems from scratch. If the role is a migration, this experience matters more than general cloud depth.
Open source infrastructure contributors
Googlesite:github.com ("contributor" OR "maintainer") ("kubernetes/" OR "hashicorp/" OR "prometheus/" OR "grafana/")Contributors to the infrastructure tools your platform runs on are the strongest candidates available and are approached rarely, though they expect outreach that demonstrates familiarity with their actual work.
Mistakes that cost the most time
Assuming cloud skills transfer freely between providers
The concepts transfer; the depth does not. IAM models, networking primitives, and managed service behaviour differ substantially between AWS, Azure, and GCP, and an expert in one is realistically an intermediate practitioner in another for some months. For roles requiring immediate depth, provider match matters. For roles with ramp capacity, general infrastructure ability matters more.
Reading certifications as operational experience
Most cloud certifications are written exams that can be passed through study alone, and certification counts correlate weakly with ability to run production systems. The exceptions are the practical ones — CKA, CKAD, and CKS are performance-based exams in a live cluster under time pressure, which cannot be memorised. Weight those far more heavily than the written associate-level credentials.
Not distinguishing builders from operators
Designing cloud architecture and keeping it running at 3am are different jobs that attract different people. Architects who have never carried a pager tend to design systems that are unpleasant to operate, and operators may lack the design breadth for greenfield work. Establish which the role actually needs, since job adverts routinely ask for both.
Overlooking console-versus-code maturity
An engineer who provisions infrastructure through a web console and one who manages everything through Terraform in version control are at different maturity levels, and the difference is invisible on a CV that lists the same services. Published infrastructure code is the fastest way to tell, and it predicts working style better than any interview question.
Ignoring the cost dimension
Cloud spend has become a board-level concern, and FinOps has emerged as a genuine discipline combining engineering with commercial analysis. Engineers who understand reserved capacity, rightsizing, and architectural cost trade-offs are scarce and increasingly sought. Roles that need this rarely say so, and candidates who have it rarely lead with it.
Requiring every cloud in the job advert
Adverts asking for deep AWS, Azure, and GCP experience simultaneously attract people with shallow experience of all three. Genuine multi-cloud depth is rare and usually means one primary provider with working knowledge of another. Naming the primary provider honestly produces far better applicants than listing all three.
Common questions
- What job titles should I search for when hiring a cloud engineer?
- Provider-specific titles are more informative than generic ones, so search AWS Engineer, Azure Engineer, GCP Engineer, and their architect variants alongside Cloud Engineer and Cloud Architect. Modern practice is better identified by tooling than by title: Terraform Engineer, Platform Engineer, GitOps Engineer, and Infrastructure as Code Engineer. Kubernetes has become its own specialisation with titles such as Kubernetes Engineer, Cloud Native Engineer, and SRE. For cost work, FinOps Engineer and Cloud Cost Analyst identify a small but growing population.
- Do cloud skills transfer between AWS, Azure, and GCP?
- The concepts do, the depth does not. An engineer who understands networking, identity, storage, and compute abstractions will grasp the equivalent services on another provider quickly, but the specifics differ substantially — IAM models, networking primitives, and the behaviour of managed services are genuinely different, and expertise takes months to rebuild. For a role needing immediate production depth, match the provider. For one with ramp capacity, general infrastructure engineering ability is the better predictor, and requiring deep experience across all three providers usually attracts people with shallow experience of each.
- Which cloud certifications actually indicate capability?
- The practical ones. CKA, CKAD, and CKS are performance-based exams conducted in a live Kubernetes cluster under time pressure, which makes them genuinely hard to pass without hands-on ability. Professional-level cloud certifications such as AWS Solutions Architect Professional and Azure AZ-305 are meaningfully harder than associate-level ones and much less commonly held. Associate-level certifications like AWS Solutions Architect Associate are widely held and obtainable through study alone, so they indicate familiarity rather than operational experience. Certification count is a poor proxy for ability generally.
- What is the difference between a cloud engineer, a DevOps engineer, and an SRE?
- The boundaries are genuinely blurred and vary by organisation. Broadly, a cloud engineer builds and manages cloud infrastructure; a DevOps engineer focuses on the delivery pipeline and the automation connecting development to production; and a site reliability engineer applies software engineering to operations, owning reliability targets, error budgets, and production incident response. In smaller organisations one person does all three. What matters more than the label is whether the role is primarily building new systems or operating existing ones, since those attract different people.
- Where can I find cloud engineers outside LinkedIn?
- GitHub is the strongest signal, particularly published Terraform or Pulumi modules, which demonstrate that someone manages infrastructure as versioned code rather than through a console — a maturity distinction invisible on a CV. Contributors to Kubernetes, Prometheus, Grafana, and HashiCorp projects are exceptional candidates and rarely approached. The conference circuit is productive too: KubeCon and SREcon attract practitioners rather than vendors, and their speaker lists identify people with genuine operational depth.
The method behind the strings
Sourcing, in full.
Full Stack Recruiter devotes its first seven chapters to search: Boolean fundamentals, search engines beyond Google, research sources, contact discovery, and responsible public-source research. The titles change by role; the method under them does not.