Public Cloud Senior Infrastructure Engineer
hace 18 horas
Halifax
Job Description JOB TITLE: Public Cloud Infrastructure Engineer SALARY: £70,929 - £78,810 LOCATION(S): Halifax or Leeds WORKING PATTERN: Our work style is hybrid, which involves spending at least two days per week, or 40% of our time, at our locations noted above. About this Opportunity: Modernising by adopting cloud, a platform that is quick, secure and resilient for customers and easy, modern and green for developers. Our core technology focus is on Microsoft Azure and Google Cloud Platform. We're on a mission to build the bank of the future, and we need your expertise to help us get there. Continuing our extensive transformation program, we're redefining what a bank is from the inside out. Our technology, our culture, and our mind-set is changing to craft a true engineering-led organisation. Our Cloud Engineering team is seeking a passionate Senior Cloud Engineer with deep hands-on development experience. As a Cloud Engineer you'll be an active and leading member of a cloud-focused team of engineers - working on one of the Group's flagship projects to deliver a strategic platform on Google Cloud Platform (GCP) & Azure that will enable the business to realise the next generation of services that form the Bank's vision. This role requires taking part in an on-call rotation. Key Responsibilities: • Collaborate across multi-functional teams to architect, implement, and maintain a highly resilient and scalable Kubernetes environment in the cloud., • Engineer and optimise Kubernetes infrastructure to support multitenant workloads, ensuring strong isolation, resource efficiency, and operational scalability., • Implement and manage robust security controls, including OPA gatekeeper policies and fine-grained RBAC policies, to safeguard infrastructure and implement least-privilege access across environments., • Build and manage CI/CD pipelines to enable automated testing, seamless deployment, and continuous integration across environments., • Diagnose and resolve sophisticated system-level issues related to scalability, performance, and automation, ensuring optimal infrastructure health. Essential Skills & Experience: • Extensive experience in a DevOps or Site Reliability Engineering role, ideally across both consumer and SaaS technology landscapes., • Validated expertise in deploying and maintaining production-grade Kubernetes clusters and services., • Hands-on experience with Kubernetes (k8s) and Containers in live environments., • Strong background in designing and implementing CI/CD pipelines for automated build, test, and deployment workflows., • Proficient in programming with Python, Go, and Bash for automation and tooling., • Demonstrated ability to take ownership of projects and drive them to successful delivery., • Proven capability to assume responsibility for projects and guide them to successful completion., • Thrives in dynamic environments-adaptable, collaborative, and effective when navigating change and uncertainty. Desirable Skills: • Hands-on experience with cloud infrastructure and services across Google Cloud Platform (GCP)/Azure., • Proficient in writing Infrastructure as Code (IaC) using Terraform, with a strong understanding of modular and reusable code practices., • Experience with Service Mesh technologies such as Istio and Anthos for managing microservices communication and observability., • Strong grasp of networking concepts in Cloud like Hybrid Connectivity, VPN, NAT, IPAM, DNS and routing., • Comprehensive knowledge of Cloud Security, Key Management Service (KMS), Public Key, • Infrastructure (PKI), Encryption, and the principles of least privilege., • Deep understanding of Linux operating systems, including system internals, networking, and performance tuning., • Exposure to high-throughput environments with experience implementing observability stacks. Prometheus /Dynatrace for logging and metrics, and OpenTelemetry for distributed tracing., • Strong security approach with a track record of crafting and implementing secure, resilient systems., • Excellent verbal, written, and interpersonal communication skills, with the ability to convey complex technical concepts clearly., • Comfortable operating in fast-paced, dynamic environments-able to adapt quickly, embraceambiguity, and remain effective through change., • Understanding of shared services such as CoreDNS, cert-manager, Dynatrace, Cloudability, and Infoblox., • Familiarity with Aqua Security for container runtime protection., • Knowledge of OPA Gatekeeper for policy enforcement and tenant isolation., • Experience with Harness CI/CD pipelines for secure and scalable deployments., • Exposure to Backstage GitOps workflows for automation., • Hands-on experience with Anthos Config Management for GitOps-driven provisioning., • Understanding of Istio telemetry and observability integration., • Proficiency in carrying out mTLS and leading sidecar injection in Istio service mesh., • Experience with Istio ingress and egress gateways for secure service communication. About working for us Our focus is to ensure we're inclusive every day, building an organisation that reflects modern society and celebrates diversity in all its forms. We're committed to creating a consciously inclusive workplace where our colleagues can be themselves, thrive and perform at their best. We were one of the first major organisations to set goals on diversity in senior roles, create a menopause health package, and a dedicated Working with Cancer Initiative. As an inclusive employer, we offer Workplace Adjustments for colleagues experiencing disability (which may include long-term health and neurodivergent conditions) where it is reasonable to do so. This could include flexibility with regards to office attendance, location, and working pattern. Proud to hold the status of a Disability Confident Leader. If you have a disability, you can also apply via our Disability Confident Scheme (DCS). Through the DCS, we guarantee to interview a fair and proportionate number of applicants with a disability, whose application meets the minimum criteria for the advertised job role. We also provide adjustments that are reasonable throughout the recruitment process to reduce or remove barriers for applicants with a disability, long-term health condition or neurodivergent condition. If you'd like an adjustment to the recruitment process just let us know. We also offer a wide-ranging benefits package, which includes: • A generous pension contribution of up to 15%, • An annual performance-related bonus, • Share schemes including free shares, • Benefits you can adapt to your lifestyle, such as discounted shopping, • 30 days' holiday, with bank holidays on top, • A range of wellbeing initiatives and generous parental leave policies