Careers
DevOps Engineer
Build and maintain the CI/CD pipelines, deployment automation, and on-prem platform infrastructure that take our products from development through production go-live inside highly regulated banking environments. You will work at the intersection of operations and security, embedding hardening, secrets management, and secure-by-default practices into everything you ship.
CI/CD, On-prem Platform Ops & Security
Role scope.
Own the infrastructure that takes cutting-edge AI from development to secure production go-live inside regulated banks.
What you will work on
- CI/CD pipelines for building, testing, and deploying services to on-prem environments
- Release, rollback, and environment provisioning automation with infrastructure-as-code (Terraform, Ansible, Helm)
- Deploying and operating workloads on Kubernetes/OpenShift or VM-based platforms on bank premises
- Deployment topology, network zoning, ingress/egress patterns, and runtime configuration
- Hardening baselines, secure configuration, secrets management (Vault/KMS/HSM), TLS/mTLS, and certificate lifecycle
- IAM patterns (OAuth2/OIDC/SSO), least privilege, and RBAC for infrastructure access
- Observability with logging, monitoring, metrics, and tracing (Prometheus/Grafana, ELK, OpenTelemetry); SLOs/SLAs and incident response
- Bank governance support: change management, ISO 27001 aligned controls, security questionnaires, and audit evidence
Strong candidates have
- 3–6 years of DevOps, platform, or infrastructure engineering, ideally in enterprise banking/fintech
- Strong hands-on experience deploying and operating workloads on-premises (Kubernetes/OpenShift or VM-based), not solely public cloud
- Proficiency with CI/CD pipelines and tooling (GitHub Actions/GitLab CI, Jenkins, ArgoCD)
- Solid Linux administration, containerization (Docker), and infrastructure-as-code (Terraform, Ansible, Helm)
- Security fundamentals applied to infrastructure: IAM, TLS/certificate and secrets management, network segmentation
- Scripting for automation (Bash, Python, or equivalent) and strong documentation and stakeholder communication
- Bonus: SIEM (Splunk/QRadar/ELK), vulnerability and supply-chain security (SAST/DAST/SCA, image scanning), GCP/AWS and hybrid models, CKA/CKS, Terraform Associate, or Security+