Skip to content
mimi

Senior Engineering Manager - Corporate Engineering

Grafana Labs

Remote (Global) Full-time Senior €133k – €167k/yr 2d ago

About the role

[Your Name]
[Your Address] – Remote (EMEA)
[Your Phone] • [Your Email] • [LinkedIn] • [GitHub/Portfolio]


Cover Letter – Senior Engineering Manager, Corporate Engineering

Grafana Labs – Remote (Germany / Sweden / Spain / Ireland / UK)

Dear Hiring Team,

I am excited to submit my application for the Senior Engineering Manager – Corporate Engineering role at Grafana Labs. With over 12 years of experience leading high‑performing engineering operations teams, building and automating enterprise‑grade IT platforms, and championing AI‑enabled workflows, I am uniquely positioned to help Grafana define the future of corporate systems in the AI age.

Why I’m a strong fit

Requirement My Experience & Impact
Run a software‑engineering operations team As Engineering Manager at [Current Company], I lead a 15‑person “Platform & Ops” squad that owns the end‑to‑end lifecycle of employee devices, SSO, MDM, and internal tooling. We reduced ticket‑resolution time by 45 % and cut hardware onboarding cost by 30 % through IaC and self‑service portals.
Deep hands‑on corporate IT automation Built a GitOps‑driven device‑provisioning pipeline using FleetDM, Intune, and Jamf, provisioning Windows, macOS, Linux, iOS, and Android devices from a single source of truth. Integrated Okta SSO, 1Password secret management, and Google Workspace provisioning via Terraform and custom Go services.
DevOps mindset for security & enablement Designed “guardrail‑as‑code” policies (OPA + Sentinel) that enforce DLP, EDR, and compliance checks automatically on every device enrollment, eliminating manual gate‑keeping while maintaining auditability.
AI‑native strategy & secure AI rollout Piloted an enterprise‑wide LLM sandbox (OpenAI & Anthropic) that exposed a self‑service API gateway with role‑based access, usage quotas, and automated prompt‑sanitization. Authored the AI‑Security Playbook that defines threat‑modeling, data‑privacy, and model‑version governance for non‑engineer personas.
Vendor management & SaaS contracting Negotiated multi‑year contracts with Microsoft, Okta, Salesforce, and Zoom, achieving an average 15 % cost reduction while expanding SLA coverage.
Visibility & cost transparency Implemented a Grafana‑backed cost‑dashboard that aggregates spend across SaaS subscriptions, cloud usage, and device lifecycle, enabling data‑driven budgeting and continuous process improvement.
Open‑source mindset Contributed Terraform‑provider plugins for internal MDM tooling to the open‑source community; published a GitHub Action that automates security‑guardrail checks, now used by > 2 k developers across multiple orgs.
Leadership & culture Conduct regular 1:1s, career‑development workshops, and “innovation sprints” that empower engineers to prototype new automation ideas. My teams consistently score 9/10 on engagement surveys and have a 0 % turnover rate over the past three years.
Eastern‑time oriented availability I work a core schedule of 08:00‑16:00 UTC+2, ensuring strong overlap with EMEA peers while supporting on‑call rotations for global incidents.

Vision for Grafana’s Corporate Engineering

  1. Finish the IT‑Ops Stack – Consolidate device‑lifecycle, help‑desk, and SaaS provisioning into a single GitOps platform built on Kubernetes, ArgoCD, and Grafana Mimir for observability.
  2. AI‑First Enablement – Roll out a self‑service LLM hub with built‑in policy enforcement, giving every employee (not just developers) safe access to generative AI while capturing usage metrics for continuous improvement.
  3. Guardrails‑as‑Code – Extend the “paved‑road” philosophy by codifying security, compliance, and cost‑control policies as reusable OPA bundles, automatically validated in CI/CD pipelines.
  4. Open‑Source Contributions – Package internal automation tools (e.g., device‑provisioning operator, AI‑sandbox controller) as Grafana‑compatible OSS projects, reinforcing Grafana’s community leadership and creating reusable assets for customers.

Why Grafana Labs?

Grafana’s open‑source DNA, transparent culture, and relentless focus on observability resonate deeply with my own professional values. I am inspired by the company’s commitment to high‑velocity yet sustainable engineering and see a clear alignment between my experience in platform automation, AI governance, and DevSecOps and the ambitious roadmap you outlined for the Corporate Engineering team.

I would love the opportunity to discuss how my background, leadership style, and vision for an AI‑native corporate platform can help Grafana Labs continue to set the standard for modern, empowered workplaces.

Thank you for considering my application. I look forward to the possibility of contributing to Grafana’s next chapter.

Warm regards,

[Your Name]
[Phone] • [Email] • [LinkedIn]


Quick‑Reference Resume Highlights (Tailored)

Experience Key Achievements
Engineering Manager – Platform & Ops
[Current Company] – Remote (2020‑Present)
• Built a GitOps‑driven device‑provisioning system for 4 k+ employees across Windows/macOS/Linux/iOS/Android.
• Integrated Okta, 1Password, Google Workspace, Jamf, Intune, FleetDM via Terraform & Go services.
• Reduced ticket volume by 45 % and onboarding cost by 30 %.
• Designed and launched an enterprise LLM sandbox (OpenAI, Anthropic) with role‑based access, usage quotas, and automated prompt sanitization.
• Negotiated SaaS contracts (Microsoft, Salesforce, Zoom) saving €1.2 M YoY.
Senior Site Reliability Engineer
[Previous Company] – Berlin (2016‑2020)
• Owned Kubernetes clusters (EKS, GKE) supporting 200+ micro‑services; introduced OPA policies for security guardrails.
• Developed Grafana‑based observability dashboards for SaaS spend, device health, and AI usage metrics.
• Contributed Terraform provider plugins to open‑source community (10 k+ downloads).
Software Engineer – Security Automation
[Earlier Company] – London (2012‑2016)
• Built Python/Go agents for EDR/DLP enforcement; integrated with Splunk and Grafana Loki for real‑time alerts.
• Authored internal “Security as Code” framework adopted company‑wide.

Technical Toolbox

  • Cloud: AWS, GCP, Azure (IaC with Terraform, Pulumi)
  • Containers / Orchestration: Kubernetes, Helm, ArgoCD, Flux
  • Programming: Go, Python, TypeScript, Bash
  • Device Management: Jamf, Intune, FleetDM, Kolide
  • Identity & Access: Okta, 1Password, Azure AD, SSO/OIDC
  • AI/ML Ops: OpenAI, Anthropic, LangChain, LLM sandboxing, Prompt‑guardrails
  • Observability: Grafana Mimir, Loki, Tempo, Prometheus, Grafana Cloud
  • Security: OPA, Sentinel, Snyk, Trivy, EDR/DLP solutions, Zero‑Trust networking

I am happy to provide references, detailed project artifacts, or a live demo of the automation platforms I have built.

Requirements

  • Experience running a software engineering operations team.
  • You have a strong engineering background and are capable of engaging in technical conversations and challenging teams to arrive at strong technical decisions themselves.
  • You understand at least one cloud provider well, and have a working knowledge of k8s.
  • Deep hands-on experience managing and automating corporate IT systems commonly used by modern tech companies, including the gamut of operating systems (Windows, MacOS, Linux, iOS, Android), SSO (Okta, 1Password), workplace productivity tools (Google Workspace, Office) MDM (Jamf, Intune, FleetDM, Kolide), EDR, DLP, typical corporate SaaS platforms (Salesforce, Zendesk), AI providers (OpenAI, Anthropic, Cursor, Google, etc), and managing employee laptops and devices.
  • You approach IT and corporate security with a DevOps mindset, preferring enablement, automation, and guardrails over gates and roadblocks.
  • You have experience providing internal platforms to other teams and see IT as a provider of tools, platforms, and automation, rather than a ticket-taking service provider.
  • Knowledge of the current AI state of the art, and strong ideas on how to leverage effectively and safely across the enterprise in a way that enables experimentation rather than locking the organization into yesterday’s technology.
  • You are deeply curious about software, security, and the current and future states of technology.
  • You keep your teams ahead of the curve.
  • You are an excellent written and verbal communicator who can articulate complex concepts to both technical and non-technical audiences.
  • You are comfortable working with engineering teams who have a strong sense of autonomy in their decision-making, and guiding via influence.
  • Work Eastern-time oriented hours.
  • Grafana Labs is a global company, and we need to maximize overlap time with our EMEA peers.

Responsibilities

  • Lead the team covering a range of existing areas, including corporate systems, employee device lifecycles, helpdesk queues, and internal tooling development.
  • Handle corporate security initiatives, deploying security and compliance checks in an employee-enabling way (guardrails and paved roads) in their daily workflows.
  • Help define our wider internal AI rollout, enablement, and security strategy across all teams, not just developers.
  • Manage the relationships, negotiation, and contracting with core SaaS vendors.
  • Make all work and costs visible, both internally to the team and enable stakeholder teams to understand their processes and work.
  • Understand and, where possible, leverage the Grafana product and ecosystem to solve corporate engineering challenges.
  • Open-source what we come up with for the good of other Grafana users.
  • Act as a leader within the larger Foundations department, including all other platform, business application, and security teams.
  • Conduct regular 1:1s, coaching, and mentoring to ensure your team members are motivated, happy and engaged.
  • Provide continuous feedback to ensure that they can add value while maintaining high standards.
  • Participate in team activities.
  • Be a participant in all work queues.
  • Contribute to and review design documents for upcoming projects, ensuring projects are well-defined and ready for development.
  • You will be part of your team’s and department's on-call rotation.

Benefits

Restricted Stock Units (RSUs)30 days annual leave3 Grafana Shutdown Days

Skills

1PasswordAIAnthropicCursorDockerEDREndpoint SecurityFleetDMGDPRGoogle WorkspaceIntuneiOSJamfk8sKolideLinuxMacOSMDMMicrosoft OfficeOktaOpenAIOSSSalesforceSSOZendesk

Don't send a generic resume

Paste this job description into Mimi and get a resume tailored to exactly what the hiring team is looking for.

Get started free