CV WorkCV Work
Lọc
Tỉnh / thành
Ngành nghề
Mức lương
Phường Hải Châu, Đà Nẵng

Senior DevOps

Tin này đã hết hạn nhận hồ sơ (hạn nộp: 25/06/2026). Công ty có thể đã tuyển xong. Bạn vẫn đọc được mô tả bên dưới để tham khảo yêu cầu và mức lương của vị trí này.

1,500 - 3,000 USD📍 Phường Hải Châu, Đà NẵngXem việc đang tuyển tại công ty →

Mô tả công việc

  • Own and evolve cloud infrastructure across multiple environments using infrastructure-as-code; ensure environments are consistent, auditable, and reproducible.
  • Design and maintain automated deployment pipelines covering all platform services, from build and test through security scanning to production rollout.
  • Operate and scale the container orchestration platform; maintain cluster health, resource efficiency, and workload reliability across heterogeneous node types.
  • Own the networking and routing layer: traffic management, authentication delegation, and secure private connectivity between services.
  • Lead security engineering across the platform — IAM least-privilege, secrets lifecycle, network hardening, and security gates in CI/CD.
  • Define and maintain observability standards: structured logging, metrics, alerting, and incident response runbooks for all critical components.
  • Set infrastructure standards and enforce them through automation and code review; mentor engineers on cloud and operations best practices.
  • Participate in architecture reviews and contribute infrastructure trade-off analysis to product and engineering decisions.

Yêu cầu ứng viên

Experience

  • 4-6 years of hands-on DevOps, platform engineering, or SRE experience in production cloud environments.
  • Proven track record managing multi-account, multi-environment AWS infrastructure at production scale.

Infrastructure as Code

  • Expert-level Terraform: modules, workspaces, remote backends, state management, resource import, and lifecycle management.
  • Strong Ansible: role authoring, Jinja2 templating, inventory management, tag-scoped deployments, and Docker Compose integration.

AWS

  • Deep hands-on experience with: EKS, RDS, ElastiCache, ECR, VPC, NLB, IAM, Secrets Manager, S3, EC2.
  • AWS SSO / IAM Identity Center: managing multiple account access with named profiles.
  • Comfortable switching between accounts and regions without cross-contaminating state or credentials.

Kubernetes

  • Production EKS operations: node group management (x86, GPU, Graviton), workload deployments, Helm, and cluster upgrades.
  • Proficient with Kubernetes CLI tooling at the workload, service, and cluster level; disciplined about environment context verification before any operation.
  • Experience with NVIDIA GPU workloads or heterogeneous node scheduling is a strong plus.

Networking & Security

  • VPC design: subnets, routing tables, NAT Gateway, NLB with EIP, security groups, and VPN integration.
  • Reverse-proxy / API gateway experience: Traefik or NGINX with TLS, middleware chains, and OIDC auth delegation.
  • IAM security: least-privilege policy design, role assumption, and SCPs.
  • Secrets management: AWS Secrets Manager, HashiCorp Vault, or equivalent — no plaintext credentials in repos.
  • Familiarity with Zero Trust networking principles.

Authentication & Identity

  • Identity provider administration (Keycloak or equivalent): realm configuration, OIDC client setup, and forward-auth integration.
  • OAuth2/OIDC protocol fluency: understands token flows, redirect URIs, and JWKS endpoints well enough to debug silently broken auth.

CI/CD & Observability

  • GitLab CI or GitHub Actions: multi-stage pipelines with environment promotion and security scan gates.
  • Prometheus + Grafana or equivalent observability stack: metric scraping, dashboards, and alerting rules.
  • Structured logging pipeline (ELK, Loki, or equivalent).

Soft Skills

  • Team-first mindset — documents everything, communicates blast radius before acting, and treats runbooks as a team asset.
  • Active ownership — raises blockers early, follows through on on-call issues without being prompted, and closes the loop.
  • Honesty and transparency — surfaces risks and misconfigurations quickly; never dismisses a "this looks wrong" instinct.
  • Hard-working and dependable — maintains high operational standards under high-pressure situations without taking shortcuts that create future risk.

Nice to Have

  • HashiCorp Vault in production: dynamic credentials, PKI secrets engine, HA setup.
  • GitOps tooling: ArgoCD or Flux for Kubernetes delivery.
  • Security certifications: AWS Security Specialty, CKS (Certified Kubernetes Security Specialist), or OSCP.
  • Experience with GPU-accelerated workloads and NVIDIA device plugin for Kubernetes.
  • Compliance framework exposure: SOC 2, ISO 27001, or GDPR operational controls.

Soft Skills

  • Team-first mindset — shares knowledge proactively, unblocks colleagues, and treats code review as a teaching opportunity rather than gatekeeping.
  • Active ownership — raises concerns early, follows through on commitments, and closes the loop without being reminded.
  • Honesty and transparency — surfaces bad news quickly, acknowledges mistakes, and documents lessons learned so the team does not repeat them.
  • Hard-working and dependable — comfortable sustaining high-quality output under delivery pressure without cutting corners on security, testing, or maintainability.

Quyền lợi được

Nhà tuyển dụng

CÔNG TY TNHH FEDERATE GROUP · 📍 Phường Hải Châu, Đà Nẵng

Việc khác tại CÔNG TY TNHH FEDERATE GROUP

Senior DevOps1,500 - 3,000 USD · 📍 Phường Hải Châu, Đà Nẵng
Xem việc đang tuyển tại công ty →