Senior Engineer, DevOps & Assurance

bain

New Delhi 4 Years Exp Posted 31d ago

Job Description

Infrastructure & Automation – 30%

  • Design, provision, and manage cloud infrastructure using Terraform and Terraform Cloud. Automate deployments to ensure scalability, consistency, and security across environments.
  • Architect and manage Azure networking: VNet/subnet design, private endpoints, DNS resolution, NSG rules, and Front Door Premium configuration.
  • Provision and maintain Azure platform services: App Services, Azure SQL, Azure OpenAI, Azure Container Registry (ACR), Key Vault, Entra ID, and Storage Accounts (ADLS Gen2).

 

Cloud & Platform Management (Azure) – 25%

  • Manage Azure Kubernetes Service (AKS) clusters, including node pools, scaling, spot instances, and workload connectivity to dependent services (databases, storage, AI services).
  • Manage identity and access: Entra ID app registrations, managed identities, RBAC, and integration with external IdPs (Okta).
  • Administer database platforms from an infrastructure perspective: Azure SQL Serverless, PostgreSQL Flexible Server, Cosmos DB — including connectivity, Entra auth, firewall rules, and private endpoints.
  • Ensure robust access controls and platform reliability across dev, demo, and production environments.

 

CI/CD & Software Delivery – 20%

  • Build, optimize, and maintain CI/CD pipelines using GitHub Actions for container builds, infrastructure deployments, and application releases.
  • Manage container image lifecycle: build, scan, push to ACR, and deploy to AKS or App Services.
  • Implement environment promotion workflows with appropriate gating, secrets management (Key Vault), and rollback strategies.
  • Design and operate GitHub-hosted private runners where required, including network integration with Azure VNets.

 

Monitoring, Security & Assurance – 15%

  • Implement and operate observability using Datadog and Azure Application Insights. Monitor performance, resolve issues proactively, and optimize cost and reliability.
  • Respond to security findings: triage, containment, IAM scoping, container image CVE remediation, and endpoint hardening.
  • Handle L2/L3 incident escalations, including root-cause analysis, user journey tracing, and log analysis.
  • Enforce solution compliance across products: network isolation, least-privilege access, secrets hygiene, and deployment guardrails.

 

Leadership & Collaboration – 10%

  • Partner with architects, product engineers, and security teams to align on infrastructure standards and platform roadmaps.
  • Promote DevOps culture, automation-first thinking, and continuous improvement across the NGSS engineering organization.
  • Contribute to technical discovery, POCs, and innovation work streams to validate new tools, technologies, and architectural patterns.
  • Support team recruiting activities: resume screening, technical interviews, and candidate evaluation.

ABOUT YOU

Education & Experience

  • Bachelor’s or Master’s degree in Computer Science, Engineering, or a related technical field.
  • 4–7 years of experience in DevOps, infrastructure engineering, or cloud platform engineering roles.
  • Proven track record of designing and operating cloud infrastructure in production environments.
  • Demonstrated experience working with cross-functional engineering teams in fast-paced product organizations.

Professional Skills & Mindset

  • Excellent communication and collaboration skills, with the ability to translate complex technical topics for diverse stakeholders.
  • Proactive, analytical, and systematic — strong problem-solving skills with the ability to trace issues across multiple layers (DNS, networking, identity, application).
  • Results-driven with a bias for automation and continuous improvement.
  • Familiarity with Agile methodologies and a commitment to team enablement.

Technical Expertise

  • Hands-on experience with Terraform and Terraform Cloud (or equivalent) — workspace management, state, modules, and remote backends.
  • Strong proficiency in Azure services, including AKS, Networking (VNets, subnets, private endpoints, NSGs, DNS zones), App Services, Key Vault, Container Registry, and Storage Accounts.
  • Experience with containerization technologies (Docker, Kubernetes)

Similar Openings for You