DescriptionDivision: Group Technology Solutions (GTS)
About the role:
Were looking for an experienced OpenShift/Kubernetes Engineer to join a focused platform team that designs builds and operates OpenShift clusters in a highly secure disconnected environment. Youll own reliability automation and security endtoendpartnering with squads to onboard applications harden the platform and scale our container infrastructure for regulated workloads.
Responsibilities:
- Operate and maintain OpenShift clusters to ensure availability scalability and performance (including patching upgrades and capacity planning).
- Automate cluster installation and configuration using GitOps Ansible Helm and Operators; codify repeatable workflows and golden patterns.
- Implement platform security best practices and compliance controls; run vulnerability assessments and remediation in line with organizational policies
- Contribute to new cluster and network design including multitenant patterns and service connectivity.
- Support onboarding of new client applications and provide ongoing platform guidance and troubleshooting.
- Build and maintain clear living documentation for operations runbooks standards and reference architectures.
- Deliver within Agile/Scrum ceremonies; collaborate closely with developers SREs and security.
- Work effectively in highly secure disconnected environments including image and content mirroring.
- Provide 24/7 oncall support as part of a rotating team shift schedule including occasional weekend coverage
Requirements:
- Experience: a few years running OpenShift in production within banking or similarly regulated environments.
- Core OpenShift skills: cluster bootstrapping and lifecycle operations; Operator lifecycle management.
- Observability: Prometheus/PromQL and Grafana for metrics alerting and dashboards.
- Networking: Kubernetes/OpenShift NetworkPolicies and related traffic controls.
- Automation & IaC: GitOps Ansible Terraform Helm and custom Operators.
- CI/CD: Working with pipelines (Azure DevOps).
- Disconnected ops: oc-mirror for content mirroring and offline installs.
- Service Mesh: Red Hat Service Mesh (Istio) fundamentals and operations.
- Container tooling: Podman and Skopeo for build debug and image management.
- Everyday tooling: git YAML oc kubectl Visual Studio Code and bash.
Additional experience
- Experience in working as a power user or system administrator.
- Some basic knowledge in virtualization and HCI: VMware Nutanix/AHV.
- Observability & ITOM: Splunk; ServiceNow and IBM Netcool/Omnibus.
- Artifact management: JFrog Artifactory.
How you work
- Pragmatic SRE mindset with a bias to automate document and standardize.
- Comfortable pairing with developers and security to meet compliance without slowing down delivery.
- Thrives in Agile/Scrum communicates clearly and owns outcomes endtoend.
Please note that this is a permanent position and we do not offer freelance/contract arrangement for the role.
#LI-AK1
Required Experience:
IC
DescriptionDivision: Group Technology Solutions (GTS)About the role:Were looking for an experienced OpenShift/Kubernetes Engineer to join a focused platform team that designs builds and operates OpenShift clusters in a highly secure disconnected environment. Youll own reliability automation and secu...
DescriptionDivision: Group Technology Solutions (GTS)
About the role:
Were looking for an experienced OpenShift/Kubernetes Engineer to join a focused platform team that designs builds and operates OpenShift clusters in a highly secure disconnected environment. Youll own reliability automation and security endtoendpartnering with squads to onboard applications harden the platform and scale our container infrastructure for regulated workloads.
Responsibilities:
- Operate and maintain OpenShift clusters to ensure availability scalability and performance (including patching upgrades and capacity planning).
- Automate cluster installation and configuration using GitOps Ansible Helm and Operators; codify repeatable workflows and golden patterns.
- Implement platform security best practices and compliance controls; run vulnerability assessments and remediation in line with organizational policies
- Contribute to new cluster and network design including multitenant patterns and service connectivity.
- Support onboarding of new client applications and provide ongoing platform guidance and troubleshooting.
- Build and maintain clear living documentation for operations runbooks standards and reference architectures.
- Deliver within Agile/Scrum ceremonies; collaborate closely with developers SREs and security.
- Work effectively in highly secure disconnected environments including image and content mirroring.
- Provide 24/7 oncall support as part of a rotating team shift schedule including occasional weekend coverage
Requirements:
- Experience: a few years running OpenShift in production within banking or similarly regulated environments.
- Core OpenShift skills: cluster bootstrapping and lifecycle operations; Operator lifecycle management.
- Observability: Prometheus/PromQL and Grafana for metrics alerting and dashboards.
- Networking: Kubernetes/OpenShift NetworkPolicies and related traffic controls.
- Automation & IaC: GitOps Ansible Terraform Helm and custom Operators.
- CI/CD: Working with pipelines (Azure DevOps).
- Disconnected ops: oc-mirror for content mirroring and offline installs.
- Service Mesh: Red Hat Service Mesh (Istio) fundamentals and operations.
- Container tooling: Podman and Skopeo for build debug and image management.
- Everyday tooling: git YAML oc kubectl Visual Studio Code and bash.
Additional experience
- Experience in working as a power user or system administrator.
- Some basic knowledge in virtualization and HCI: VMware Nutanix/AHV.
- Observability & ITOM: Splunk; ServiceNow and IBM Netcool/Omnibus.
- Artifact management: JFrog Artifactory.
How you work
- Pragmatic SRE mindset with a bias to automate document and standardize.
- Comfortable pairing with developers and security to meet compliance without slowing down delivery.
- Thrives in Agile/Scrum communicates clearly and owns outcomes endtoend.
Please note that this is a permanent position and we do not offer freelance/contract arrangement for the role.
#LI-AK1
Required Experience:
IC
View more
View less