DevOps Platform Engineer
24 hours ago
Santiago de Compostela
pbAbout us /b /ppFor more than 20 years, our global network of passionate technologists and pioneering craftspeople has delivered cutting-edge technology and game-changing consulting to companies on the brink of AI driven digital transformation. Since 2001, we have grown into a full service digital consulting company with 5500+ professionals working on a worldwide ambition. Driven by the desire to make a difference, we keep innovating. Fuelling the growth of our company with our knowledge worker culture. When teaming up with Xebia, expect in-depth expertise based on an authentic, value-led, and high quality way of working that inspires all we do. /ppAt Xebia, we put ‘People First’—committed to attracting diverse talent and fostering an inclusive, respectful workplace where everyone is valued for their contributions. We welcome all individuals and evaluate solely on the quality of their work and teamwork. /ppbr/ppbAbout the Role /b /ppWe’re looking for a DevOps/Platform Engineer with hands-on experience implementing and operatingb DevOps modernization /band accelerating our software delivery lifecycle. You’ll design and maintain CI/CD pipelines, standardize deployment patterns, and improve reliability across services. You’ll partner closely with developers, SREs, security, and FinOps to deliver safe, fast, and cost-efficient‑ releases. /ppbr/ppbWhat You’ll Do /b /pullibHarness Platform Ownership /b /liliDesign, implement, and maintain pipelines (Kubernetes, ECS, serverless, VMs, bHarness CD /b) with multistage approvals, canary/‑blue-green strategies, and automated rollbacks. /liliAdminister bCI /b builds, shared build infrastructure, and caching to optimize developer feedback loops. /liliConfigure bFeature Flags /b for progressive delivery, experimentation, and kill switches‑. /liliIntegrate bHarness SRM/Chaos /b (if applicable) for SLOs, error budgets, verification steps, and resilience testing in the release process. /liliPartner with FinOps to leverage bCloud Cost Management /b (e.g. bHarness) /bdashboards, budgets, and guardrails. /lilibPipeline Environment Engineering /b /liliCreate reusable pipeline templates, modules, and governance policies; codify best practices as “paved roads.” /liliImplement secrets management, artifact versioning, and environment promotion (dev → test → staging → prod). /liliStandardize infrastructure provisioning with IaC (Terraform, Helm/Kustomize, CloudFormation, ARM/Bicep) and GitOps workflows (e.g., Argo CD/Flux where appropriate). /lilibReliability, Security Compliance /b /liliEmbed quality gates (unit/integration/security scans) and deployment verification (metrics/logs/traces) into pipelines. /liliEnforce least privilege, RBAC, SSO/SCIM, and audit readiness across pipelines and runtime environments. /liliContribute to incident response, post incident‑ reviews, and continuous improvement of SLIs/SLOs. /lilibObservability Performance /b /liliIntegrate APM/observability (e.g., Prometheus/Grafana, OpenTelemetry, Datadog, New Relic) with deployment verification and runtime dashboards. /liliDrive capacity, reliability, and performance optimizations in build and runtime platforms. /lilibCollaboration Enablement /b /liliPartner with product teams to onboard services to Harness, run enablement workshops, and document self-service‑ guides. /liliMeasure and report delivery metrics (lead time, deployment frequency, change fail rate, MTTR) and drive improvements. /li /ulpbr/ppbWhat You’ll Bring /b /ppbMust Haves /b /pulli3–7+ years in DevOps/Platform/SRE roles (or equivalent), including b2+ years hands on with ‑ with Harness.io /bCD and/or CI. /liliStrong CI/CD expertise: pipelines-as-code (YAML), templates, approvals, rollout strategies, and automated rollback. /liliSolid experience with bcontainers and Kubernetes /b (cluster operations, Helm/Kustomize, operators) and at least one major cloud (AWS/Azure/GCP). /liliInfrastructure as Code (Terraform preferred) and Git-centric workflows (GitHub/GitLab/Azure Repos/Bitbucket). /liliProficiency integrating security and quality gates: SAST/DAST, dependency scanning, image scanning, SBOM, and policy-as-code (Open Policy Agent/Conftest). /liliPractical knowledge of observability: metrics, logs, traces, alerting, and deployment verification. /liliStrong scripting skills (Bash, Python, or Go) and a builder’s mindset for automation. /liliHands‑on experience with bHashiCorp tooling /b (e.g., Terraform, Vault, Consul) to standardize infrastructure provisioning and secrets management. /liliProficiency with bGitHub Actions /b for CI/CD automation, workflow orchestration, and pipeline governance. /liliStrong working knowledge of bAnsible /b for configuration management, server orchestration, and environment automation. /liliExpert level‑level experience with bTerraform /b for Infrastructure‑as-Code (IaC), reusable modules, and ‑Code (IaC), reusable modules, and multicloud‑cloud provisioning. /li /ulpbr/ppbNice-to-Have /b /pulliExperience with bHarness.io /b, bHarness Feature Flags, SRM, Chaos, or Cloud Cost /b. /liliGitOps (Argo CD/Flux), service meshes (Istio/Linkerd), and progressive delivery (Argo Rollouts/Flagger). /liliSecrets management (Vault/Secrets Manager/Key Vault), PKI, and workload identity. /liliFinOps exposure and cost optimization in CI/CD and runtime. /liliCompliance frameworks (SOC 2, ISO 27001, HIPAA, PCI) and audit prep. /liliBackground in SRE practices, SLOs, and error budgets. /liliFamiliarity operating and integrating bKafka /b for event streaming, real‑time pipelines, and microservice communication. /liliExperience deploying and managing bElasticsearch /b clusters for log analytics, search, and observability use cases. /liliKnowledge of bRedis /b for caching, message brokering, session management, and performance optimization. /li /ul