Skip to main content

DevOps / Platform Engineer (Cloud)

Technology
VM.PL
Wrocław, Polska2 tygodni temuDo 17.09.2026

Opis stanowiska

About the projectYou will join a project delivered for a client from the DACH region that is developing a compliance services platform for telecommunications companies. We are building a greenfield, multi-tenant, cloud-native SaaS platform that will support the processing of data production and preservation orders in accordance with the EU e-Evidence Regulation. The system will process sensitive data related to criminal proceedings, which means that it must meet strict security, data immutability, and EU data residency requirements from day one.Your main responsibility will be to build the project’s entire infrastructure layer from scratch before the development team begins its core work.

This will include setting up the Kubernetes cluster, infrastructure as code, Keycloak, secure S3 WORM storage, and CI/CD pipelines with automated security controls. The role will be most intensive during the first four weeks of the project. Once the infrastructure foundations have been established, the allocation will decrease to approximately half-time and will focus on platform maintenance and supporting the development team.Allocation:full-time during the first 4 weeks of the projectapproximately 0.5 FTE during the following 11 weeksWorking model: remote, with the option to work from or occasionally visit the VM.PL office in WrocławProject start: July/August 2026Duration: approximately 15 weeks, with the possibility of further cooperationResponsibilitiesAs part of the project, you will be responsible for designing, implementing, and maintaining the entire infrastructure layer and DevOps processes, including:building and configuring a cloud-based Kubernetes environment using OVHcloud or IONOS, including dev, test, staging, and sandbox environmentsimplementing infrastructure as code using Terraform or Pulumi and eliminating manual resource configurationconfiguring secure S3-compatible storage, including Object Lock and WORM mechanismsimplementing and configuring an identity and access management system using Keycloak, including multi-tenant support and application integrationsdesigning and implementing CI/CD pipelines covering build, test, security scanning, and deployment processesintegrating SAST and SCA tools and implementing mechanisms that block deployments when critical vulnerabilities are detectedconfiguring a container registry and processes for building and signing container imagesensuring secure access to external services, such as AWS Bedrock, in line with project requirementsmaintaining infrastructure stability and availability, including resource management, scaling, and environment isolationimplementing security policies at the network and cluster levels, such as Network Policiesmanaging secrets and configuring tools such as HashiCorp Vault or equivalent cloud-based solutionsmaintaining and developing CI/CD pipelines and supporting the development team with environments, containerization, and deployment processesmonitoring platform performance and costs, including configuring alerts and basic system monitoringRequirementsMinimum 4 years of experience in DevOps or Platform EngineeringHands-on experience administering Kubernetes clustersExperience with managed Kubernetes services such as GKE, EKS, OVHcloud Managed Kubernetes, or IONOSVery good knowledge of Terraform or PulumiExperience designing complete CI/CD pipelines in GitLab CI or GitHub ActionsExperience managing S3-compatible storageKnowledge of S3 Object Lock or WORM mechanismsVery good knowledge of Docker, container registries, and multi-stage buildsExperience integrating security scanning tools for source code and dependenciesKnowledge of at least some of the following tools: Semgrep, CodeQL, SonarQube, Snyk, Trivy, or OWASP Dependency CheckExperience configuring Keycloak or another identity provider based on OIDC and OAuth 2.0Knowledge of secure secrets management practicesExperience with HashiCorp Vault, AWS Secrets Manager, or a similar solutionVery good English and PolishIndependence and readiness to take ownership of the entire infrastructure layer of the projectNice to haveExperience with European sovereign cloud providers such as OVHcloud, IONOS, or HetznerHands-on knowledge of AWS Bedrock and regional API endpoint configurationExperience with Kubernetes Network PoliciesKnowledge of Istio, Cilium, or other service mesh solutionsExperience working in environments subject to ISO 27001, BSI C5, or similar standardsKnowledge of eBPF-based security tools such as Falco or TetragonExperience with GitOps and tools such as ArgoCD or FluxKnowledge of Prometheus and GrafanaGerman language skills, which may be helpful when communicating with cloud provider support teamsWhat we offerA remote project with occasional visits to our office or the client’s locationClear communication and a flat organizational structure, as well as a close-knit team - we value openness, mutual support, and trust in our projectsThe opportunity to join future projects and work on interesting and meaningful solutions across different industries, including e-learning, energy, finance, manufacturing, and logisticsInternational teams and clients, allowing you to develop your English or German skills in real project situationsLanguage classes - we provide our project teams with English and German lessons, including classes with native speakers

Keywords
GitLabKeycloakOption keyCloud computingImmutable objectSonarQubeDevOpsCluster analysisOauthCryEngineCI / CDData clusterBridge patternBedrockBridgingAWSDockerGithubKubernetesTerraform

Interesuje Cię ta oferta?