Senior DevOps Engineer
Description
Project responsibilities
- Operate and maintain on-premise infrastructure environments across DEV, TEST, STAGING, UAT, and PROD.
- Ensure network zoning and environment segregation in line with External / DMZ / Internal architecture.
- Configure and support web application firewalls (WAFs) and controlled traffic flows between zones.
- Operate and maintain external and internal API gateways.
- Support enterprise integrations via the Software AG integration platform.
- Operate identity and access management infrastructure, including miniOrange IdP, MFA, and OIDC integrations.
- Design, maintain, and operate CI/CD pipelines using Azure DevOps, including secure release promotion.
- Implement and operate secure SDLC controls (SAST, SCA, DAST).
- Implement and maintain monitoring, logging, and audit capabilities (Prometheus, Grafana, Graylog, Sentry, SIEM forwarding).
- Support backup, replication, and disaster recovery activities, including DR testing.
Requirements
Must-haves
- 5+ years of experience in DevOps or Infrastructure Engineering.
- Experience with on-premise infrastructure deployment and operations in enterprise environments.
- Experience managing multiple isolated environments (DEV, TEST, STAGING, UAT, PROD).
- Knowledge of network security zoning architectures (External / DMZ / Internal).
- Hands-on experience working with web application firewalls (WAFs).
- Experience configuring and supporting external and internal API gateways.
- Experience working with enterprise integration / ESB platforms (Software AG).
- Experience integrating and operating identity providers (IdP) (miniOrange).
- Knowledge of OIDC / OAuth2 authentication flows and multi-factor authentication (MFA).
- Experience with TLS / mTLS secure communication and PKI-based certificate management.
- Hands-on experience with CI/CD pipelines using Azure DevOps.
- Experience implementing secure SDLC practices, including SAST, SCA, and DAST.
- Knowledge of threat modeling techniques, specifically STRIDE.
- Experience with monitoring and observability tools (Prometheus, Grafana).
- Experience with centralized logging and application monitoring (Graylog, Sentry, SIEM integration).
- Experience supporting backup, replication, and disaster recovery processes, including DR testing.