As Lead DevOps &
at CLOUDSUFI, you will be the primary technical architect and execution leader responsible for modernising, unifying, and scaling our enterprise engineering infrastructure. You will drive high-stakes consolidation programs—migrating fragmented source control management systems (GitHub, Bitbucket, GitLab) into a single enterprise standard, and rationalising diverse CI/CD toolstacks (Jenkins, Azure DevOps, GitHub Actions) into automated, zero-trust delivery pipelines.
🎯 Core Responsibilities
1.
Source
Control &
- Enterprise Consolidation: Design and execute end-to-end migration strategies to unify multi-platform code bases (e.g., Bitbucket, GitLab, legacy SVN/Git) into a single enterprise GitHub/Azure DevOps ecosystem.
- History &
Ensure zero-loss migrations preserving commit history, branches, tags, pull request metadata, and access permission structures
Branching Strategy &
Define, document, and enforce standardized branching strategies (GitFlow, Trunk-Based Development) and unified access management across all global delivery teams.
2. CI/CD Pipeline Rationalisation &
- Toolchain Consolidation: Audit legacy CI/CD infrastructure (e.g., Jenkins, Travis, custom scripts) and transition projects onto modern, scalable engines like GitHub Actions and Azure DevOps Pipelines.
- Reusable Pipeline Frameworks: Build centralized, modular YAML template libraries and shared actions to ensure consistent build, test, scan, and deployment patterns across multi-cloud applications.
- Release Predictability: Implement automated deployment strategies (Blue/Green, Canary, Progressive Delivery) with dynamic rollback mechanisms to maintain high availability and target a $\ge 95\%$ build success rate.
3. DevSecOps &
- Security Quality Gates: Embed automated Static/Dynamic Application Security Testing (SAST/DAST), dependency vulnerability scanning (Snyk, Dependabot, Trivy), and secret detection directly into developer pull requests.
- Compliance &
Establish automated traceability mapping every deployment back to specific commit hashes, Jira tickets, and pull-request approvals.
4.
Technical
Leadership &
- Cross-Functional Mentorship
- Developer Experience (DevEx): Measure and optimize lead time for changes, deployment frequency, and mean time to recovery (MTTR), removing infrastructure friction for developers.
- Best Practices Coaching: Partner with Engineering Managers, Architects, and Delivery Leads to train engineering teams on modern cloud-native practices, Infrastructure as Code (Terraform, Pulumi), and automated release workflows.
🛠️ Required Skills &
- Experience: 8+ years in DevOps, Site Reliability Engineering (SRE), or Platform Engineering, with at least 3+ years in a senior/lead capacity driving large-scale migrations.
- Migration Mastery: Demonstrated experience migrating large-scale, multi-repo enterprise setups (e.g., Bitbucket Server/Data Center to GitHub Enterprise or Azure DevOps) using automated migration scripts and tools (e.g., GitHub Enterprise Importer,
git-filter-repo).
- CI/CD Platform Expertise: Deep hands-on mastery of GitHub Actions, Azure DevOps Pipelines, and Jenkins. Must have experience authoring complex, matrix-based, reusable pipeline workflows.
- Infrastructure as Code (IaC) &
Advanced proficiency in Terraform or Bicep for cloud provisioning (AWS, Azure, or GCP) and container orchestration (Kubernetes, Helm, Docker).
Scripting &
Strong scripting expertise in Python, Bash, or PowerShell for building custom CLI migration helpers and API integrations.
Security &
Proven track record integrating automated quality gates (SonarQube, OWASP Dependency Check) into deployment pipelines.
📊 Key Performance Indicators (KPIs)
Objective Area
Target Metric / Deliverable
Repository Consolidation
100% of legacy code repositories (Bitbucket/GitLab) migrated to the target enterprise platform with zero history loss.
Toolchain Efficiency
Decommissioning of legacy Jenkins instances in favor of standardized GitHub Actions / Azure DevOps templates.
Deployment Speed
Measurable reduction in overall build and pipeline execution times through automated caching and job parallelization.
Security Compliance
Zero unhandled critical security vulnerabilities or secrets committed to production builds.