Senior Engineer - Azure DevOps Agent Containers (ID

STAFIDE
Amsterdam, Netherlands
3 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Languages
English
Experience level
Senior

Job location

Amsterdam, Netherlands

Tech stack

Kubernetes Security
Java
.NET
Azure
Ubuntu (Operating System)
Cloud Computing
Continuous Delivery
Continuous Integration
Debian Linux
DevOps
Image Management
Node.js
Tripwire
Management of Software Versions
Virtual Machines
Software Vulnerability Management
Caching
Containerization
Kubernetes
Optimization Algorithms
Build Process
Azure
Docker
Service Stack
Vulnerability Analysis

Job description

  • Design, build, optimize, and maintain Docker images for Azure DevOps self-hosted build agents.
  • Review and modernize existing build-agent Docker images by removing unnecessary dependencies, duplicate layers, caches, and unused tooling.
  • Define a scalable and maintainable image strategy for Azure DevOps build agents used across multiple CI/CD workloads.
  • Create purpose-built build agent images for different technology stacks such as Dot NET, Java, Node.js, Kubernetes, and security scanning.
  • Improve Docker image build time, pull time, startup time, and overall CI/CD pipeline performance.
  • Support the migration of Azure DevOps build agents from virtual machines to AKS-hosted containerized agents.
  • Establish image standards, naming conventions, versioning, lifecycle management, and patching processes.
  • Implement secure image management practices, including vulnerability scanning, SBOM generation, and supply-chain security controls.
  • Collaborate with platform engineering and development teams to deliver standardized developer self-service build environments.
  • Continuously enhance the reliability, maintainability, and security of the organization's build platform., * Design lean, secure, and reusable Docker images for Azure DevOps build agents.
  • Optimize container images by eliminating unnecessary dependencies and reducing image complexity.
  • Create multiple task-specific build agent images instead of maintaining oversized generic images.
  • Improve CI/CD pipeline efficiency through optimized image pull times, caching strategies, and toolchain packaging.
  • Standardize Docker image architecture across multiple development teams.
  • Build and manage containerized Azure DevOps agents running on AKS or Kubernetes.
  • Implement automated image scanning, vulnerability management, and SBOM generation.
  • Define image versioning, governance, lifecycle management, and patching strategies.
  • Troubleshoot Docker, Kubernetes, and Azure DevOps build platform issues effectively.
  • Collaborate with cross-functional engineering teams to enhance developer productivity and platform reliability.

What we bring to the table:

  • Opportunity to work on modernizing a large-scale Azure DevOps build platform.
  • Exposure to cloud-native technologies including Docker, Kubernetes, and Azure Kubernetes Service (AKS).
  • Opportunity to build scalable, secure, and high-performance CI/CD infrastructure.
  • A collaborative engineering environment focused on automation, platform engineering, and developer enablement.
  • Hands-on experience with modern container security, image governance, and supply-chain security practices.
  • Opportunity to work with cutting-edge DevOps and cloud technologies including BuildKit, Azure Container Registry, KEDA, and Kubernetes.

Requirements

  • 6+ years of experience in Platform Engineering, DevOps, Build Engineering, or Infrastructure Engineering.
  • Strong hands-on experience designing and maintaining Docker images for CI/CD environments.
  • Experience working with Azure DevOps self-hosted agents running inside Docker containers.
  • Solid expertise with Azure Kubernetes Service (AKS) or Kubernetes-based build agent environments.
  • Experience building and managing ephemeral build agents.
  • Strong understanding of Azure Container Registry (ACR) and container image lifecycle management.
  • Hands-on knowledge of Docker BuildKit and container image optimization techniques.
  • Experience with image security tools such as Trivy, Grype, Syft, SBOM generation, or similar solutions.
  • Good understanding of minimal base image strategies including Alpine, Distroless, Debian Slim, or Ubuntu Minimal.
  • Experience implementing CI/CD supply-chain security and secure container image governance.
  • Knowledge of KEDA-based agent scaling and Kubernetes-native CI/CD execution is highly preferred.

Apply for this position