Lead the design and implementation of secure AWS infrastructure, ensuring VPC patterns, peering, and transit gateways follow strict security segmentation.
Architect and manage production-grade EKS clusters using Docker and Kubernetes, implementing advanced security controls including OPA/Gatekeeper and workload identity.
Design and maintain secure automation pipelines using GitHub Actions, ensuring security checks are integrated into the deployment lifecycle.
Build and maintain central identity and access systems using Keycloak, integrating OIDC/OAuth and LDAP across the enterprise.
Develop modular, reusable Terraform templates and YAML configurations that incorporate automated compliance checks and security best practices.
Manage and secure Postgres DB instances, including encryption strategies and secret management workflows (AWS KMS) to ensure zero-trust data handling.
Develop custom Python-based tooling to automate infrastructure audits, remediation of drift, and security response workflows.
Requirements
10+ years in Infrastructure or Systems Engineering with a proven track record of designing secure large-scale environments.
Expert-level mastery of AWS, Kubernetes, and Docker.
Mandatory proficiency in Python for infrastructure automation and security tool development.
Hands-on experience building and managing pipelines with GitHub Actions.
Expert-level Terraform experience and mastery of YAML for configuration management.
Practical experience designing and deploying Keycloak and OIDC/OAuth protocols.
Experience managing and securing Postgres relational databases.