Lead DevOps Engineer
Віддалений* формат співпраці з території - Україна
*Ви можете працювати віддалено з території країни (або країн), для яких відкрита ця позиція.
DevOps& інші навички
We are seeking an experienced Lead DevOps Engineer to design, build, and maintain scalable, secure, and highly available cloud infrastructure on AWS. In this role, you will drive automation, observability, and operational excellence across environments, while mentoring the team and shaping best practices for infrastructure and deployment workflows.
Чим ви будете займатися у цій ролі
- Design and manage AWS IAM roles and policies based on the principle of least privilege, including cross-account access, federation (SSO/SAML), and access auditing
- Architect VPC network topology with public/private subnets, route tables, NAT/Internet Gateways, security groups, NACLs, VPC peering, and endpoints
- Provision and maintain EC2 instances, Launch Templates, Auto Scaling Groups, AMI pipelines, and Spot/On-Demand strategies for cost optimization
- Configure ELB (ALB/NLB), target groups, health checks, routing rules, TLS termination, and ACM certificate integration
- Deploy and maintain container platforms (ECS/Fargate or EKS), including Helm, node groups, IRSA, task definitions, and autoscaling
- Manage ECR image repositories with lifecycle policies, vulnerability scanning, and pipeline access permissions
- Organize S3 buckets with access policies, versioning, lifecycle rules, encryption, and archival strategies such as Glacier
- Deploy RDS/Aurora databases with Multi-AZ, read replicas, backups, snapshots, and point-in-time recovery
- Implement observability through CloudWatch metrics, logs, dashboards, alarms, and SNS-based alerting
- Manage encryption keys and secrets using KMS and Secrets Manager, integrating them securely into applications and pipelines
- Configure CloudFront CDN distributions, caching policies, and Route 53 DNS zones with weighted, latency-based, and failover routing
- Build and maintain Infrastructure as Code and CI/CD pipelines to automate provisioning and deployment workflows
Навички
- 5+ years of experience in DevOps or infrastructure engineering roles, with a strong focus on AWS cloud environments
- At least 1 year of relevant leadership experience
- Expertise in AWS IAM, VPC, and EC2 with Auto Scaling, including network topology, CIDR planning, and environment isolation
- Proficiency in ELB (ALB/NLB), CloudFront, and Route 53, with an understanding of L4 vs L7 routing and edge delivery
- Background in container orchestration using ECS/Fargate or EKS, Docker, and Kubernetes in production environments
- Skills in managing ECR, S3, and RDS/Aurora, including lifecycle policies, encryption, and high-availability configurations
- Competency in observability using CloudWatch for metrics, logs, dashboards, and alerting
- Knowledge of KMS and Secrets Manager for encryption key management and secure secret storage
- Proficiency in Infrastructure as Code with Terraform or CloudFormation, including modular design and state management
- Qualifications in building CI/CD pipelines with GitLab CI, GitHub Actions, or Jenkins
- Capability to automate operational tasks using Bash and/or Python
- Strong analytical and problem-solving skills, with a structured and proactive approach to work
- Proficiency in English at an Upper-Intermediate level (B2) or higher
Буде перевагою
- Familiarity with EBS/EFS, DynamoDB, and ElastiCache (Redis or Memcached) for storage and caching needs
- Experience building serverless solutions with Lambda, including triggers and integrations
- Understanding of hybrid connectivity through Direct Connect and Site-to-Site VPN
- Knowledge of AWS security best practices, WAF/Shield, and SSM Parameter Store for perimeter protection and configuration management
- Background in cost optimization, high availability, and disaster recovery, along with monitoring tools such as Prometheus, Grafana, or Datadog/ELK Stack