99
- Apraksts
- Pamatinformācija
- Uzņēmums
WHAT WE ARE EXPECTING
Kubernetes
- 3+ years running production Kubernetes on-prem; hands-on with RKE/RKE2 and Rancher (node & hypervisor management)
- Cluster lifecycle: zero-downtime upgrades, etcd and stateful workload backups, capacity planning, PDB-aware node operations
- Helm in production; Kustomize a plus
- Linux (Ubuntu/RHEL) at a debugging level: systemd, networking, storage
Networking
- Production Cilium: eBPF datapath, kube-proxy replacement, IPAM, NetworkPolicy/CiliumNetworkPolicy (L3–L7, FQDN), Hubble-based troubleshooting
- Production Istio: traffic management (VirtualService, DestinationRule, canary/blue-green), mTLS, diagnosing mesh latency and misconfiguration
- Kubernetes-side service exposure (Service, Ingress, Cilium config);
CI/CD & GitOps
- GitLab CI/CD pipelines at scale: runners, caching, artifacts, multi-stage
- ArgoCD: ApplicationSets, sync policies, drift management; immutable-image GitOps flow
- Deployment strategies: canary, blue/green, rollback including DB migration safety
Supply Chain Security
- Built or ran image vulnerability management: scanning in CI and scheduled (Trivy/Harbor), CVE triage (KEV/EPSS), remediation planning with dev teams
- Practical fixes: base image upgrades, multi-stage/distroless, pinned dependencies
- Admission policies: Kyverno/Gatekeeper (block critical CVEs, non-root, read-only rootfs)
- SBOM and image signing a plus
Storage & Observability
- Operating S3-compatible storage: MinIO and/or Garage — replication, versioning, lifecycle, backup/restore testing
- VictoriaMetrics/Prometheus + Grafana: dashboards, vmalert/Alertmanager, SLO-based alerting
- App-level metrics for PHP (PHP-FPM) and Java (JVM, GC, memory)
Working with Developers
- Consult product teams on Dockerfiles, image optimization, in-container performance; enough PHP/Java depth to diagnose OOMs, tune resources, and explain why a pod died
- Run incidents end-to-end; write postmortems and docs; onboard teams onto the platform
Nice to Have
- Cilium Cluster Mesh; multi-cluster operations
- Vault / External Secrets
- Security incident response, pentest remediation, threat modeling
- DR planning and restore drills
- 100+ node clusters; CKA/CKAD
RESPONSIBILITIES AND DUTIES
- Own and evolve our on-prem Kubernetes platform (RKE/Rancher, Cilium, Istio):
cluster lifecycle, networking, GitLab CI/CD + ArgoCD delivery stack, S3 storage (MinIO/Garage),
VictoriaMetrics/Grafana observability.
- Own image vulnerability management: scanning, CVE triage, remediation with dev teams, admission policies (Kyverno).
- Be the escalation point for incidents, mentor engineers, and onboard product teams shipping PHP and Java services.
WHAT WE CAN OFFER
Professional Development Opportunities: We invest in the growth of our employees, providing training, mentoring, and networking opportunities.
Fast-paced and Dynamic Work Environment: Challenge yourself and be inspired by our innovative projects.
Technology-driven and Innovative: Work with cutting-edge technology and contribute to developing new products and services.
Collaborative and Team-oriented Culture: Join a supportive environment where we work together to achieve common goals.
Career Advancement Opportunities: As we grow, so do the opportunities for career advancement and taking on new roles.
This job opportunity offers a hybrid work model, allowing a combination of office and remote work.
If you're seeking a company that invests in its employees, fosters a dynamic work environment, and offers opportunities for growth and advancement, we welcome you to join our team. Apply now!
€
5500 - 6500
Atrašanās vieta
- Mārupe, Mārupes novads, Latvija
- Hibrīddarbs
Darba veids
- Pilna slodze
Valodas
- Angļu
- Latviešu
- Krievu
Kontaktpersona
HR Moneliq
HR Moneliq
Moneliq is a licensed payment institution operating on an international level. Our mission is to increase economic freedom around the world, and we couldn’t do this without hiring the best people.
We are looking for a highly skilled and motivated Senior DevOps Engineer to join our team and contribute to the development and operation of modern, scalable and future-ready IT solutions.
Tev varētu interesēt arī:
AI un automatizācijas platformu inženieris/-e
AI & automatizācijas projektu vadītājs/-a
Senior Data Engineer - Data Solutions