Senior DevOps Engineer - AWS
VeonIT · Pune district, India
FULL TIME
Job Description
We are seeking an experienced Senior DevOps Engineer (8+ years) to design, implement, and manage infrastructure and deployment pipelines across hybrid environments (on-prem data centers + cloud). The role requires expertise in AWS, Azure, Kubernetes, IaC, CI/CD , and monitoring tools, along with strong troubleshooting and security practices.
Key Responsibilities
• Cloud & Infrastructure Management
- Manage and support hybrid infrastructure including physical data centers, AWS (EC2, S3, RDS, Aurora, Route53, ACM, Lambda, ElastiCache, Amazon MSK, EKS, ECS/Fargate, Elastic Beanstalk, SageMaker/Bedrock, Secrets Manager, WAF, CloudWatch), and Azure services.
- Design and implement Infrastructure-as-Code (IaC) using Terraform, Pulumi, CloudFormation with Sceptre, and Helm; manage GitOps deployments with ArgoCD/Flux.
- Configure and maintain Kubernetes clusters (EKS) — including Karpenter autoscaling, Bottlerocket nodes, Helm, and the Strimzi operator for Kafka — ensuring scalability and high availability.
• CI/CD & Automation
- Build, maintain, and optimize CI/CD pipelines with Jenkins, GitLab CI, Bitbucket, and GitHub (including the ongoing Jenkins to GitLab CI migration), using Docker and Kaniko for container image builds.
- Automate deployment, scaling, and monitoring processes.
• Monitoring & Troubleshooting
- Set up and maintain observability using Grafana, Prometheus, Alertmanager, Loki, CloudWatch, Kibana, and OpenSearch; manage on-call alerting and escalation via PagerDuty.
- Perform root cause analysis of performance issues, scaling bottlenecks, and high utilization scenarios.
- Participate in on-call support , ensuring timely resolution of incidents.
• Security & Compliance
- Manage SSL/TLS and code signing certificates (issuing, renewing, deploying) via AWS Certificate Manager (ACM), including DNS (CNAME) and email validation workflows.
- Implement best practices for infrastructure security, secrets and password management (AWS Secrets Manager, HashiCorp Vault, 1Password), and access control (IAM, AWS SSO/Okta, Organizations SCP).
- Support compliance and audit requirements through documentation and monitoring.
• Collaboration & Knowledge Sharing
- Work with cross-functional teams to improve infrastructure reliability and delivery processes.
- Maintain clear documentation in Confluence, track work in Jira, communicate via Slack, and contribute to knowledge sharing.
- Write root cause analysis (5 Whys) and incident post-mortems to prevent future issues.
Required Skills & Experience
- 8+ years of experience in DevOps, Site Reliability Engineering, or related roles.
- Strong hands-on expertise with AWS services (EC2, S3, RDS, Aurora, Route53, ACM, Lambda, ElastiCache, MSK, EKS, ECS/Fargate, Elastic Beanstalk, Secrets Manager, WAF, CloudWatch) and Azure cloud.
- Solid experience with Infrastructure-as-Code tools (Terraform, Pulumi, CloudFormation/Sceptre, Helm) and GitOps (ArgoCD/Flux).
- Proven experience with Kubernetes/EKS setup and operations (Helm, Strimzi, Karpenter, Bottlerocket, Docker).
- Proficiency in CI/CD pipelines (Jenkins, GitLab CI, Bitbucket, GitHub) and GitOps (ArgoCD/Flux).
- Strong knowledge of monitoring and observability tools (Grafana, Prometheus, Alertmanager, Loki, CloudWatch, Kibana, OpenSearch) and incident/on-call tooling (PagerDuty).
- Scripting and automation skills in Python, TypeScript, and Bash/shell .
- Good understanding of networking (IP, subnetting, VPC, security groups, ALB/ELB, Nginx, DNS/Route53, OpenVPN), Linux/Windows Server administration, and troubleshooting.
- Hands-on experience with data streaming and CDC pipelines: Apache Kafka, Kafka Connect, Amazon MSK, and Debezium ; familiarity with Databricks (Delta Lake, Asset Bundles, Unity Catalog) is a plus.
- Experience administering relational and in-memory data stores: MySQL, SQL Server, MariaDB, Amazon Aurora, and Redis/ElastiCache (major/minor version upgrades and Blue/Green deployments).
- Configuration management and server automation with SaltStack and/or Ansible .
- Experience managing SSL/code signing certificates (AWS ACM).
- Knowledge of security best practices in infrastructure and access control, and familiarity with compliance/audit frameworks (SOC 2, ISO 27001 ) and AWS security tooling (Trusted Advisor, IAM Access Analyzer).
Location: Pune
If interested, kindly share your resume on
Details
| Company | VeonIT |
| Location | Pune district, India |
| Type | FULL TIME |
| Niche | tech |
