Job Description
Title: Senior Kubernetes Engineer
Location: 100% Remote
Position Overview
We are seeking a highly skilled Senior Kubernetes Engineer to architect, secure, and operate enterprise-grade, multi-cloud Kubernetes platforms across major cloud providers. This role will own the delivery of a “secure-by-default” multi-tenant platform designed for regulated healthcare environments, integrating Git-based delivery, automated policy enforcement, and advanced platform engineering practices.
Key Responsibilities
Design & Platform Operations
- Architect, deploy, upgrade, and scale managed Kubernetes clusters with HA control planes and autoscaling.
- Operate secure private clusters (private API, NAT egress, bastion access, private connectivity).
- Design multiple node groups for performance, isolation, GPU/CPU pools, spot vs on-demand strategies, taints/tolerations.
- Define golden patterns for ingress, storage classes, private networking, and load balancers.
Configuration & Delivery
- Maintain declarative manifests with templating and environment overlays.
- Enable Git-based progressive delivery with automated policy validations and promotion workflows.
Security & Compliance
- Enforce least-privilege RBAC, namespace isolation, Pod Security Standards, and admission controls.
- Implement mTLS and workload identity, enforce image provenance and signed/scan-gated deployments.
- Apply deny-by-default network policies and secure secrets with KMS encryption and rotation.
- Ensure audit-ready logging with centralized routing and detection of risky behavior.
Observability & Reliability
- Integrate metrics, logs, traces, and events with defined SLOs/error budgets.
- Enable auto-scaling on reliable/custom metrics and conduct chaos/resilience drills.
- Implement backup/restore strategies for cluster state and application data.
Governance & Cloud Hygiene
- Apply organizational guardrails, allowed region policies, tagging/labeling standards, and drift remediation.
- Maintain traceability, failover readiness (RTO/RPO), and audit evidence for compliance.
Required Skills
- Hands-on Kubernetes operations across AWS/Azure/GCP
- Private/Restricted cluster deployments and secure networking architecture
- Multi-node group optimization (performance, isolation, efficiency)
- Workload identity, mTLS, certificate automation, and service authZ
- GitOps workflows, YAML templating, and progressive delivery
- RBAC, Pod Security, admission controllers, network policies
- CNI, ingress/egress, L4/L7 traffic management
- Multi-tenancy and noisy-neighbor mitigation
- IaC-driven cluster + cloud resource provisioning with guardrails
- Deep runtime debugging (DNS, CNI, scheduler, control-plane)
- Strong understanding of HIPAA/HITRUST and audit-ready practices
Nice to Have
- Internal developer portals / service catalog
- Cost optimization and capacity forecasting
- Disaster recovery strategy design
- Scripting (Bash / Python)
Similar Jobs
Explore other opportunities that match your interests