- Job type
- Not listed
- Work mode
- Hybrid
- Level
- Senior
- Department
- Engineering
- Experience
- 7+ years experience
- Posted
- Sep 14, 2026
About the role
Position Overview
Cloudflare is looking for a Senior Manager to lead a unified Infrastructure Operations function spanning physical network reliability, operational security, and global regulatory compliance across 750+ data center sites in 125+ countries. The leader in this role ensures 24x7 operational availability of Cloudflare's network infrastructure through incident response, hardware break-fix, circuit management, and physical hardware lifecycle operations. This leader also owns physical access control policy and administration, periodic access reviews, and evidence-based compliance delivery across SOC 2 Type II, ISO 27001, FedRAMP, ISMAP, and IRAP.
You will lead two teams, setting organizational direction, building talent, and being accountable for outcomes across the full lifecycle of Cloudflare's physical infrastructure: from how hardware is deployed and maintained, to how access is controlled and reviewed, to how assets are securely retired and evidenced for audit.
What You'll Do
Team Leadership
- Lead two teams, the Operations team and the Security and Compliance team.
- Set goals, develop talent, and build a culture of operational excellence and compliance-consciousness across both functions.
- Hold both teams to shared SLAs and quality standards, balancing the urgency of 24x7 incident response with the rigor of compliance audit cycles.
- Serve as the escalation point for cross-team issues, complex vendor negotiations, and decisions that touch both operational and regulatory domains.
Unified Decommissioning Lifecycle
- Own the end-to-end DECOM process as a single, governed workflow: physical collections and unracking, secure asset destruction with CoD issuance (ITAD vendor management), serial number verification, compliance evidence filing, and records closure.
- Eliminate the current handoff gap between Maintain's physical operations and DCSC's compliance oversight, building a single, auditable pipeline from "decom triggered" to "evidence archived”.
- Drive ITAD vendor relationships, escalation paths, and contractual SLAs for asset destruction across all regions (APAC, EMEA, NASA, South America).
- Maintain audit-readiness of decommissioning records for SOC 2, ISO 27001, PCI DSS, and FedRAMP control requirements.
Maintain Team Operational Accountability
- Accountable for 24x7 incident response coverage across all Cloudflare locations: carrier outages, DC facility issues, hardware degradation, and power/temperature events.
- Oversee hardware break-fix operations including coordination with Metro Technicians, third-party repair vendors and remote contractors.
- Drive maturity in circuit decommissioning, RMA management, and physical collections processes.
- Ensure on-call schedules, handover protocols, and incident SLAs are consistently met across APAC, EMEA, and NASA shifts.
DCSC Compliance & Access Control Accountability
- Accountable for quarterly and monthly access review cycles (QAR/MAR) across 750+ global data center sites covering SOC 2 Type II, ISO 27001, FedRAMP Moderate/High, ISMAP, and IRAP frameworks.
- Own the physical access provisioning and deprovisioning function, including SLA adherence and ACL integrity.
- Serve as the senior owner of the team’s automation initiatives.
- Maintain executive-level relationships with GRC leads across all active compliance frameworks; be the accountable voice for DCSC's control obligations in audit conversations.
- Represent DCSC at Monthly Business Reviews and executive infrastructure health checks.
Automation & Operational Efficiency
- Drive a meaningful reduction in manual operational burden across both teams, identifying and prioritizing automation opportunities in access reviews, decommissioning evidence collection, portal data extraction, and incident triage.
- Sponsor and guide the development of internal tooling (DCSC Portal, automation scripts, AI-assisted workflows) that multiplies team capacity without proportional headcount growth.
- Evaluate and adopt AI tooling for repetitive operational tasks, documentation acceleration, root-cause analysis, and compliance evidence generation.
Who You Are
An experienced infrastructure operations leader. You have managed engineering teams responsible for large-scale, globally distributed physical or network infrastructure. You know how to hold a team accountable to 24x7 operational standards while also driving longer-horizon strategic work.
Comfortable at the compliance/operations intersection. You don't need to be a GRC expert, but you understand why physical access controls matter for SOC 2 and FedRAMP, why the decommissioning chain of custody is an audit control, and why a missed quarterly access review has real consequences.
You ensure the teams you're inheriting are operationally capable but structurally manual. You see automation as a force multiplier and have a track record of reducing operational toil through process design, tooling investment, and thoughtful prioritization, not just through headcount.
A strong people leader with a coaching instinct. You manage managers. You know how to develop them, set clear expectations, give direct feedback, and create the conditions for high-performing teams. You build trust across functions and are comfortable representing your organization at the executive level.
Energized by global complexity. Your teams operate across APAC, EMEA, and NASA time zones, spanning hundreds of vendors, data center providers, and regulatory jurisdictions.
Required Experience
- 7+ years in infrastructure operations, data center operations, network operations, or a closely related field, with at least 3 years in a people management role.
- Demonstrated experience managing managers and holding multiple teams accountable to operational SLAs simultaneously.
- Direct experience with physical data center operations including hardware lifecycle management, decommissioning, colocation vendor management, or break-fix operations.
- Familiarity with compliance frameworks relevant to physical infrastructure: SOC 2, ISO 27001, FedRAMP, or equivalent — at an operational (not auditor) level.
- Strong program management instincts: comfortable running complex, multi-workstream initiatives with dependencies across teams, vendors, and time zones.
- Proven track record of driving operational efficiency through process redesign or automation adoption.
- Excellent written and verbal communication; able to translate technical operational details into executive-level reporting and vice versa.
Preferred Qualifications
- Experience managing 24x7 on-call operations teams, including PagerDuty or equivalent tooling and incident escalation frameworks.
- Familiarity with network infrastructure concepts (circuit management, cross-connect decommissioning, network operations).
- Experience with physical access control systems, access control list management, or vendor portal administration at scale.
- Knowledge of ITAD (IT Asset Disposition) vendor management and compliance requirements for secure destruction.
- Background in a rapidly scaling, global infrastructure environment (hyperscaler, cloud provider, major CDN, or similar).
- Experience driving SSO or identity federation projects across large third-party vendor ecosystems.
- Familiarity with Jira-based operational workflows, Netbox or similar DCIM tools, and Confluence-based documentation practices.
Reporting Structure
This role reports to the Director, Infrastructure Operations (AMER) and is part of the broader Infrastructure Operations leadership team.