Job Description
Position Summary:
We are seeking a highly technical Cloud Engineer with deep experience in infrastructure-as-code (IaC), automated provisioning, and hybrid cloud environments. This role is central to designing, maintaining, and securing our cloud-native and legacy workloads across AWS and on-premise Kubernetes clusters.
Key Responsibilities:
- Design and maintain scalable, resilient, and secure cloud infrastructure primarily on AWS (EC2, ECS, EKS, RDS, S3, Lambda) with integrations to on-prem systems.
- Develop and manage Infrastructure-as-Code (IaC) using Terraform (v1+) with modularized architecture and automated state management.
- Build and maintain CI/CD pipelines using GitHub Actions and ArgoCD for application deployment to Kubernetes.
- Configure and manage Kubernetes clusters (self-hosted and EKS) including custom controllers, RBAC policies, service meshes (Istio or Linkerd), and network policies.
- Implement centralized logging, monitoring, and alerting solutions using Prometheus, Grafana, ELK/EFK stack, and AWS CloudWatch.
- Perform cost optimization through resource right-sizing, reserved instance planning, and architectural improvements.
- Harden systems using cloud-native security services (AWS Security Hub, GuardDuty), custom IAM policies, and automated compliance enforcement (e.g., using OPA/Gatekeeper).
- Collaborate with development teams to containerize legacy apps and migrate them to Kubernetes or ECS.
- Participate in on-call rotation for production incidents and provide RCA with automation recommendations.
Required Qualifications:
- 5+ years of hands-on cloud engineering experience with at least 3 years focused on AWS (not limited to console usage).
- Expert-level proficiency in Terraform, including managing workspaces, remote state backends, and module versioning.
- Strong experience with Kubernetes in production (not EKS-only), including Helm chart authoring and custom CRDs.
- Experience with GitOps workflows and CI/CD tools such as GitHub Actions, ArgoCD, or FluxCD.
- Proficiency in Linux (Bash scripting, systemd, networking, performance tuning).
- Familiarity with container runtime internals (containerd or CRI-O) and debugging container performance issues.
- Strong understanding of networking (VPC, subnets, route tables, security groups, VPN, NAT, DNS).
- Experience managing secrets via tools like Vault or AWS Secrets Manager.
- Ability to troubleshoot deeply (e.g., kernel-level diagnostics, iptables, cgroup behavior).
- Comfortable with auditing and maintaining compliance with SOC 2 or ISO 27001 standards.
Are you interested in this position?
Apply by clicking on the “Apply Now” button below!
#GraphicDesignJobsOnline#WebDesignRemoteJobs #FreelanceGraphicDesigner #WorkFromHomeDesignJobs #OnlineWebDesignWork #RemoteDesignOpportunities #HireGraphicDesigners #DigitalDesignCareers#Dynamicbrandguru