Role Overview:
We are looking for a strong, hands-on, highly motivated Senior DevOps Engineer to design, build, secure, and operate the cloud platform that powers the Service Layer (SL-QTC) ecosystem supporting Quote-to-Cash (QTC), customer lifecycle, and enterprise integration workloads.
You will be responsible for building and operating a cloud-native, event-driven platform based on AWS, Kafka/MSK, serverless technologies, databases, observability platforms, and DevSecOps toolchains. You will work closely with Engineering, Architecture, Security, and Product teams to ensure the platform is reliable, scalable, secure, cost-efficient, and operationally resilient.
The ideal candidate combines strong expertise in AWS, Infrastructure-as-Code, CI/CD, networking, cloud security, observability, and platform engineering with experience supporting mission-critical distributed systems at scale.
Key responsibilities:
-
Design, build, and maintain AWS cloud infrastructure supporting highly available event-driven workloads based on Kafka, serverless services, databases, APIs, and enterprise integrations.
-
Design and implement Infrastructure-as-Code (IaC) solutions using Terraform and automation frameworks to enable repeatable, scalable, and secure platform provisioning.
-
Build and maintain secure CI/CD pipelines, deployment automation, release strategies, automated testing, and environment management practices.
-
Design, implement, and manage AWS networking architecture, including VPCs, subnets, route tables, NAT Gateways, Transit Gateway, PrivateLink, security groups, and hybrid connectivity.
-
Design and manage application ingress, traffic routing, and content delivery using Route53, API Gateway, Application Load Balancers (ALB), Network Load Balancers (NLB), and CloudFront.
-
Implement and maintain cloud security controls using AWS WAF, AWS Shield, IAM, encryption, secrets management, vulnerability management, audit logging, and compliance frameworks.
-
Configure and support enterprise identity and access management integrations using Microsoft Entra ID (Azure AD), SAML, OAuth2, OpenID Connect (OIDC), and Single Sign-On (SSO).
-
Implement and manage observability solutions, including monitoring, centralized logging, tracing, alerting, dashboarding, and operational analytics.
-
Support Kafka/MSK platform operations, including topic management, access controls, capacity planning, monitoring, scaling, and disaster recovery.
-
Partner with Engineering teams to improve platform reliability, scalability, security, performance, and operational supportability.
-
Drive DevSecOps practices through integration of security scanning, policy enforcement, infrastructure validation, container security, dependency management, and compliance checks within CI/CD pipelines.
-
Perform platform performance tuning, capacity planning, backup and recovery validation, disaster recovery testing, and business continuity readiness activities.
-
Drive FinOps initiatives by monitoring cloud consumption, optimizing resource utilization, improving cost efficiency, and implementing governance controls.
-
Troubleshoot production issues, perform root cause analysis, and drive corrective and preventive actions for business-critical systems.
-
Contribute to platform standards, operational runbooks, automation initiatives, engineering best practices, and continuous improvement programs.
Must Have Skills:
-
Strong experience designing and operating AWS cloud platforms, including Lambda, API Gateway, EC2, EKS/ECS, S3, RDS/Aurora PostgreSQL, DynamoDB, SQS, SNS, EventBridge, IAM, CloudWatch, and VPC services.
-
Strong experience designing and managing AWS networking, including VPCs, subnets, route tables, security groups, NAT Gateways, Transit Gateway, PrivateLink, Route53, VPNs, and hybrid connectivity solutions.
-
Strong experience with Route53, Application Load Balancers (ALB), Network Load Balancers (NLB), CloudFront, API Gateway, AWS WAF, and AWS Shield.
-
Strong experience with Infrastructure-as-Code (IaC) using Terraform and infrastructure automation at enterprise scale.
-
Strong experience building and managing CI/CD and DevSecOps pipelines, including automated deployments, code quality validation, security scanning, vulnerability management, and release automation using GitLab CI, Jenkins, GitHub Actions, or similar tools.
-
Strong experience supporting event-driven architectures and messaging platforms, including Kafka, AWS MSK, RabbitMQ, or equivalent technologies.
-
Strong experience with Docker, Kubernetes, EKS, container orchestration, and cloud-native operational practices.
-
Strong understanding of Identity and Access Management, including IAM, RBAC, OAuth2, OpenID Connect (OIDC), SAML, Single Sign-On (SSO), and enterprise federation patterns.
-
Experience implementing observability, monitoring, logging, tracing, and alerting solutions using CloudWatch, Grafana, Datadog, Prometheus, OpenTelemetry, ClickHouse, or equivalent platforms.
-
Strong understanding of distributed systems, platform resiliency, disaster recovery, high availability, scalability, and performance optimization.
-
Strong scripting and automation experience using Python, Bash, PowerShell, or similar technologies.
-
Experience with FinOps practices, including cloud cost optimization, resource utilization analysis, tagging strategies, budget governance, and cost reporting.
-
Strong understanding of cloud security and compliance frameworks, including encryption, secrets management, vulnerability management, audit logging, security monitoring, and secure software delivery practices.
-
Strong problem-solving and troubleshooting skills with experience supporting business-critical production platforms and large-scale distributed environments.
Qualifications:
-
Bachelor's degree in Computer Science, Engineering, Information Technology, or related discipline.
-
7+ years of experience in DevOps, Platform Engineering, or Cloud Infrastructure roles.
-
4+ years of hands-on experience designing and operating AWS-based cloud platforms.
-
Experience supporting highly available, secure, and scalable distributed systems in production environments.
-
Experience working in Agile delivery environments with cross-functional engineering teams.
Nice to have:
-
AWS Certified DevOps Engineer Professional, AWS Solutions Architect, AWS Security Specialty, Kubernetes (CKA/CKAD), or equivalent certifications.
-
Experience implementing SRE practices, SLIs, SLOs, error budgets, and operational excellence frameworks.
-
Experience with FinOps and cloud cost optimization practices.
-
Experience with multi-account AWS governance, Control Tower, landing zones, and enterprise cloud operating models.