We are seeking a Senior DevOps Engineer to drive the design and implementation of self-service templates, security guardrails, code quality standards and custom development initiatives. In this role, you will collaborate with SRE and development teams to enable GitOps-driven deployments, strengthen security posture and deliver custom integrations for hybrid cloud environments.
Responsibilities
- Definition of baseline Terraform, Flux and Crossplane templates for GitOps-driven deployments
- Creation of curated application deployment templates for pilot and custom apps
- Publication of a self-service catalog for SRE and development teams
- Integration of templates into pipeline automation and transition of template ownership to relevant teams
- Implementation of an Azure AD-based IAM strategy for centralized authentication
- Setup of admission control with Kyverno or OPA Gatekeeper and expansion of security guardrails for vendor deployments
- Finalization of cluster-to-cluster network policies and encryption in transit, along with holistic security reviews and penetration tests
- Alignment of code quality checks (linting, unit tests) with CI/CD pipelines and establishment of core coding guidelines for microservices, helm charts and Terraform scripts
- Introduction of peer review and gating processes for PRs, including integration of code scanning tools (Snyk, SonarQube)
- Launch of an internal leaderboard or dashboard to visualize code quality violations and coverage
- Development of bridging services for hybrid cloud requirements, custom DR automation scripts and core data integrity checks
- Execution of integration tests with pilot vendor's application and hardening of custom components for production readiness
Requirements
- 3+ years of experience in a DevOps or SRE role
- Expertise in Terraform, Flux and Crossplane for GitOps-driven deployments
- Proficiency in CI/CD pipeline automation and self-service catalog publication
- Knowledge of Azure AD-based IAM strategies for centralized authentication
- Background in admission control tooling such as Kyverno or OPA Gatekeeper
- Skills in vulnerability scanning and code scanning tools including Snyk and SonarQube
- Competency in defining code quality benchmarks, peer review processes and gating policies
- Familiarity with microservices, helm charts and Terraform scripting standards
- Understanding of network policies, encryption in transit and penetration testing
- Capability to develop custom DR automation scripts, data integrity checks and bridging services for hybrid cloud requirements