Infrastructure Software Engineer, Core Platform
Lumbra Inc.
Arlington, VA, United States
23 days ago
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Apply on www.clearancejobs.com
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Job source
Tech stack
Amazon S3
Computer Networks
Databases
Continuous Integration
Software Debugging
Distributed Systems
Domain Name System (DNS)
Graph Database
Key Management
Neo4j
Networking Basics
OpenID
+12 more
Public Key Infrastructure
Prometheus
Zero Trust Network Access
Workflow Management Systems
Load Balancing
Okta
Grafana
Kubernetes Helm Charts
Caching
Kubernetes
Terraform
Microservices
Job description
Lumbra is building Nebula, an agentic harness running as a set of microservices on managed Kubernetes, backed by managed databases, caching, and workflow orchestration, all provisioned with OpenTofu and deployed with Helm via CI/CD. We currently run on GCP but are not wed to any single provider. Weβre looking for an infrastructure engineer to own the reliability, scalability, and developer experience of the harness across dev, demo, and production environments.
Requirements
- Author and maintain Infrastructure as Code (OpenTofu/Terraform) modules for cloud resources including networking, managed Kubernetes clusters, databases, caching, and container registries. Strong IaC skills and experience with GCP (or equivalent) are essential.
- Design and manage Kubernetes cluster configurations including node pool autoscaling, workload identity, private connectivity for database access, and network policies. You need deep Kubernetes knowledge, not just manifest authoring.
- Build and optimize Helm charts for a shared service template consumed by multiple services, managing environment-specific overrides across dev, demo, staging, and production. Experience with Helm inheritance patterns and chart libraries is important.
- Own the CI/CD pipeline architecture: multi-stage builds, conditional triggers based on file-change detection, and deployment orchestration. You should be comfortable authoring and debugging complex pipeline configurations.
- Implement and maintain the observability stack (metrics, traces, logs) across all services using Grafana, Prometheus, and OpenTelemetry. Experience instrumenting distributed systems and building actionable dashboards is needed.
- Manage secrets lifecycle and credential rotation with automated syncing to Kubernetes, plus identity provider configuration. Understanding of zero-trust patterns and secrets management at scale is essential.
- Configure and maintain production networking including load balancing, TLS termination, DNS, and authentication proxies. Solid networking fundamentals are a must.
- Optimize the container build pipeline for speed and security: multi-stage builds, layer caching, image hardening, and size reduction for faster, safer deployments.
- Continuously profile and optimize platform performance: query latency, pod startup times, resource utilization, and network throughput. You care about measurable improvements and treat sluggish infrastructure as a bug, not a tradeoff.
- Maintain developer experience tooling including local development environments, task automation, and environment bootstrapping that lets engineers go from clone to running system quickly., * Experience operating Temporal or similar workflow orchestration systems in production
- Familiarity with graph databases (Neo4j) and object storage (MinIO, S3-compatible) on Kubernetes
- Experience with Keycloak or similar identity providers: administration, realm configuration, and OIDC management
- Background in cloud cost optimization: committed use discounts, node pool right-sizing, spot instances
- Familiarity with GitOps patterns (ArgoCD, Flux) as an evolution from push-based CI/CD
- Understanding of public key infrastructure: certificate management, mTLS, CA hierarchies, and trust chain validation
Experience with hybrid networking between cloud and on-prem environments
Benefits & conditions
- Comprehensive medical, dental, and vision plans
- Premiums 100% covered by Lumbra for all employees
- Exceptionally low premiums for spouses and dependents
- Basic life insurance and disability 100% covered for all employees by Lumbra
- Option to purchase additional life insurance available
- Take the time off that you need, when you need itβ paid time off, not accrual based
- Generous company holiday calendar including a holiday shutdown in December
- Supportive leave of absence program including time off for military service, medical events, and parental leave
- Full 401(k) retirement plan for all full-time eligible employees
- Company-funded commuter benefits
- Free access to on-site gym at office
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Apply on www.clearancejobs.com
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role β technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
IK
Igor Khokhriakov
16 days ago
Learning Kubernetes made easy with KubeCampus
over 2 years ago
CS
Christina Schaireiter
Best US AI Conferences for CTOs in 2026: Build vs. Buy, Vendor Evaluation, and Peer Intelligence
3 months ago
EM
Eli McGarvie
Highest Paying Tech Companies for Developers
over 3 years ago
CH
Chris Heilmann
Dev Digest 120 - Apple and peers
about 2 years ago
AJ
Austin Joy
What Are The Top Skills Required For Azure Developers?
over 4 years ago