DevOps Platform Engineer
sanofi
Job Description
CI/CD and Delivery Pipelines
- Design, build, and maintain reusable CI/CD pipelines and pipeline templates using GitHub Actions and Azure DevOps.
- Consolidate and migrate legacy Jenkins and GitLab pipelines onto the strategic toolchain.
- Integrate automated testing, code quality, and security scanning into every stage of the delivery lifecycle.
Infrastructure as Code and Cloud Automation
- Build and maintain Terraform modules and Ansible content for repeatable, peer-reviewed infrastructure provisioning across Azure and AWS.
- Implement policy as code to enforce security, tagging, cost, and configuration standards at deployment time.
- Replace ticket-based requests with self-service automation that product teams can consume directly.
Container and Kubernetes Platforms
- Engineer and operate container platforms on Kubernetes, AKS, EKS, and OpenShift.
- Build and maintain Helm charts, GitOps workflows, ingress, autoscaling, and workload onboarding patterns.
- Support product teams containerizing and migrating applications onto the platform.
Developer Experience and Self-Service
- Contribute to the internal developer platform and developer portal, including Backstage templates, scaffolding, and golden paths.
- Write and maintain clear documentation, reference implementations, and onboarding guides.
- Turn recurring pain points raised by product teams into prioritized platform improvements.
Security, Compliance, and Supply Chain
- Embed static and dynamic analysis, dependency scanning, and SBOM generation into pipelines using SonarQube, Snyk, and equivalent tooling.
- Implement secrets and certificate management using HashiCorp Vault, CyberArk, and cloud-native key services.
- Remediate vulnerabilities and misconfigurations surfaced by cloud security posture tooling.
Reliability and Operational Support
- Own the availability, performance, and capacity of the platform services in scope.
- Instrument platform services using Datadog, Dynatrace, Prometheus, Grafana, Splunk, and OpenTelemetry.
- Contribute to incident response, root-cause analysis, problem management, and corrective actions.
Technical Craft and Engineering Practices
- Write clean, tested, peer-reviewed automation code managed in Git using trunk-based practices.
- Use AI-assisted engineering tools such as GitHub Copilot and Claude Code to accelerate development, testing, and documentation, applying appropriate review and technical judgement.
- Continuously reduce toil, technical debt, and duplication across the platform estate.
Collaboration and Ways of Working
- Work within an agile product team with a shared backlog, defined customers, and service-level objectives.
- Partner with Cybersecurity, Cloud, Architecture, and Operations teams on approved engineering patterns.
- Mentor less experienced engineers and share knowledge through demonstrations, guilds, and documentation.