Cloud Platform Engineer (Agentic Ai)
hace 4 días
Córdoba
Cloud Platform Engineer (Agentic AI) Luxoft Spain•Córdoba, córdoba (comarca); provincia de córdoba; andalucía, Spain The project is for one of the world's famous science and technology companies in pharmaceutical industry, supporting initiatives in AWS, AI and data engineering, with plans to launch over 20 additional initiatives in the future. • AWS Infrastructure & Architecture., • Design, provision, and manage AWS infrastructure using Terraform, aligned with the AWS Well-Architected Framework., • Amazon EKS, • VPC, • IAM, • Application Load Balancer (ALB), • Route 53, • AWS Certificate Manager (ACM), • Kubernetes (EKS) Platform Operations, • Own and operate EKS clusters end-to-end, • Managed node group lifecycle management, • Karpenter-based autoscaling, • Cluster add-on lifecycle upgrades, • IRSA (IAM Roles for Service Accounts) configuration, • Multi‑AZ high availability and resilience, • GitHub Actions, • ArgoCD (GitOps) Dev → QA → Production • Blue/Green deployments, • Canary releases, • AWS WAF, • GuardDuty, • Security Hub, • KMS (encryption), • Secrets Manager, • External Secrets Operator, • OPA / Kyverno (admission controllers), • Amazon Managed Prometheus, • Amazon Managed Grafana, • CloudWatch Container Insights, • AWS X-Ray (distributed tracing), • Amazon Bedrock (model inference, agent APIs), • SageMaker (model hosting, endpoints), • Comprehend (NLP, PII detection), • Spot Instances, • Savings Plans, • Karpenter bin‑packing strategies, • Scheduled scale‑to‑zero for non‑production environments, • Onboard new AI agent workloads, • Integrate MCP servers and execution frameworks, • Support extensibility of the agent ecosystem, • 4+ years of hands‑on AWS experience, • AWS Certifications: Required: AWS Solutions Architect (Associate or Professional), • Preferred: DevOps Engineer, Security Specialty Kubernetes & EKS Expertise, • Strong hands‑on experience with: EKS cluster provisioning and operations, • Managed node groups and Karpenter, • Helm chart management, • Kubernetes RBAC and network policies Infrastructure as Code (Terraform), • Advanced Terraform capabilities: Modular design, • Remote state management (S3 + DynamoDB), • Multi-environment configuration, • Security scanning (Checkov, tfsec) AWS Services Proficiency, • Deep knowledge of: EKS, ECR, ALB, Route 53, ACM, • IAM, KMS, Secrets Manager, • IAM Identity Center, • CloudTrail, AWS Config, • GuardDuty, Security Hub, AWS WAF, • AI/ML Exposure, • Practical experience with: Amazon Bedrock (model invocation, agent APIs), • SageMaker (model deployment and endpoints), • Comprehend (NLP and PII detection), • DevOps & Identity Experience with: GitOps tools (ArgoCD or Flux), • CI/CD pipelines for container workloads, • OIDC federation: GitHub Actions → AWS, • EKS OIDC provider integration Observability & Debugging, • Familiarity with: Prometheus, Grafana, OpenTelemetry, AWS X-Ray, CloudWatch Logs Insights, Kubernetes Security, • Strong understanding of: Pod Security Standards, Network Policies, Admission webhooks, Service account least-privilege principles, • Experience with AI agent frameworks: LangChain, Claude Agent SDK, or similar, • Knowledge of emerging protocols: A2A (Agent-to-Agent), • MCP (Model Context Protocol), • Familiarity with: Amazon Bedrock Agents, Knowledge Bases, Guardrails, • Chaos engineering exposure: AWS Fault Injection Service (FIS), • Multi-tenant platform design: Namespace isolation, • Self-service provisioning, • Programming/debugging skills: Python, Go, or Node.js, • FinOps experience: AWS Cost Explorer, • Compute Optimizer, • Tagging governance, • Savings Plan management English: B2 #J-18808-Ljbffr