> Markdown version of [/jobs/ext/2725465-cloud-operator](https://www.wearedevelopers.com/jobs/ext/2725465-cloud-operator). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cloud Operator - **Company:** SENEC GmbH - **Location:** Germany - **Experience:** Experienced - **Contract:** Permanent contract - **Skills:** Amazon Web Services, Amazon S3, Microsoft Azure, Backup Devices, Bash Shell, Cloud Computing, Continuous Integration, Identity and Access Management, Python (Programming Language), Octopus Deploy, Role-Based Access Control, Cloud Services, Prometheus, Runbook, Vault (Revision Control System), Policy as Code, Data Logging, Scripting, Grafana, Git, Gitlab-ci, Kubernetes, Hashicorp, Terraform, Pagerduty - **Published:** September 5, 2026 - **Apply:** https://startup.jobs/cloud-operator-m-w-d-bei-senec-gmbh-8172683 ## About the Role * Mindestens 3 Jahre Erfahrung in Cloud Operations (AWS/Azure) mit Terraform & CI/CD (z. B. GitLab CI) * Fundierte Kenntnisse in Kubernetes (AKS/EKS) inkl. Netzwerk/Ingress, Helm/Deployments * Praxis in Observability (Prometheus/Grafana, OpenTelemetry, Alerting) und Runbook-getriebenem Betrieb * Sicherer Umgang mit Identity & Access Management (IAM/RBAC), Tagging/Guardrails und Landing-Zone-Patterns * FinOps-Grundlagen (Kostenanalyse, Forecasting, Rightsizing) * Erfahrung mit Security & Compliance in regulierten Umfeldern (z. B. NIS2/KRITIS, ISO 27001-nahe Kontrollen) * Scripting (z. B. Bash/Python), Git-basierte Arbeitsweise, Infrastructure- & Docs-as-Code * Sehr gute Deutschkenntnisse * Bereitschaft zu On-Call in geregeltem Rahmen * Idealerweise Zertifizierungen (Terraform, AWS/Azure, CKA/CKAD, FinOps) * Idealerweise Erfahrung mit Argo CD/Flux, HashiCorp-Stack (Vault, Packer) * Idealerweise KRITIS-Erfahrung im Energiesektor und Auditvorbereitung ## Description * Aufbau und Pflege modularer Terraform-Stacks (Modules/Providers) für Azure/AWS Landing Zones, Netzwerk, Security, Kubernetes & Plattform-Dienste * CI/CD-Pipelines für Validierung (Linting, Policy-Checks), Drift-Erkennung und automatisierte Rollouts (Plan/Apply wo sinnvoll) * Qualitätsstandards (Versions-/State-Management, "immutable" Patterns, Testbarkeit, Docs-as-Code) * Bereitstellung von Self-Service-Katalogen (Terraform + GitLab CI), inkl. klarer Guardrails und abgestufter Genehmigungsprozesse * Enablement für "You build it, you run it!", inkl. Templates, Best Practices und Onboarding-Material * Multi-Account/Subscription-GovernanceStrukturierung von Azure Subscriptions inkl. SCPs, Richtlinien, Kosten-/Zuständigkeitszuordnung * Landing-Zone-Konzept mit Trennung von Dev/Stage/Prod, Least Privilege & Segregation of Duties erstellen * Durchgängige Logs/Traces/Metriken (z. B. OpenSearch, OpenTelemetry, Prometheus/Grafana) * Alerting (Alertmanager/Opsgenie) mit sinnvollen Schwellen, Runbooks und SLO/SLA-Definition (z. B. Pyrra) * Transparenz über Kosten & Kostentreiber (z. B. OpenCost für Kubernetes), Tagging/Allocation.Forecasting, Budgets & Optimierung (Rightsizing, RI/Savings Plans, Scaling-Policies) * Reporting & Empfehlungen für Teams ("Showback/Chargeback" wo passend) * Policy-as-Code (z. B. Kyverno für K8s), Härtung und Verschlüsselung (KMS) * Logging/Revision (CloudTrail), Auditfähigkeit entlang definierter Kontrollen (z. B. ISO 27001-nahe Baselines).Secrets-Management, Schwachstellen-Management, Change-Kontrollen und Notfallprozesse * Backups für S3 und relevante Cloud-Services, Cross-Region-Strategien * Dokumentierte RTO/RPO, regelmäßige Restore-Tests (z. B. Velero für K8s) * BCDR-Runbooks & Übungen mit Teams * Technische Dokumentation: Runbooks, Playbooks, ADRs, Diagramme und Betriebsprozesse * Schulungen/Enablement für Teams, klare Übergabepunkte (Definition of Ready/Done), Prozessdisziplin ## Related Videos - [Enabling automated 1-click customer deployments with built-in quality and security](https://www.wearedevelopers.com/videos/83-enabling-automated-1-click-customer-deployments-with-built-in-quality-and-security) - [Technical Documentation - How Can I Write Them Better and Why Should I Care?](https://www.wearedevelopers.com/videos/681-technical-documentation-how-can-i-write-them-better-and-why-should-i-care) - [5 steps for running a Kubernetes environment at scale](https://www.wearedevelopers.com/videos/88-5-steps-for-running-a-kubernetes-environment-at-scale) - [How a Small Team Shrank a Microsoft Monorepo by 94%](https://www.wearedevelopers.com/videos/1236-how-a-small-team-shrank-a-microsoft-monorepo-by-94) - [Securing secrets in the GitOps Era](https://www.wearedevelopers.com/videos/852-securing-secrets-in-the-gitops-era) - [Bridging AI and Nomad: a Go-based MCP Server for Cluster Control](https://www.wearedevelopers.com/videos/2063-bridging-ai-and-nomad-a-go-based-mcp-server-for-cluster-control) ## Related Articles - [Best Coding Boot Camps in Germany](https://www.wearedevelopers.com/magazine/237-best-coding-boot-camps-in-germany) - [The Biggest German Tech Companies](https://www.wearedevelopers.com/magazine/424-the-biggest-german-tech-companies) - [Where to Find German Tech Jobs](https://www.wearedevelopers.com/magazine/366-where-to-find-german-tech-jobs) - [Finding Jobs in Germany](https://www.wearedevelopers.com/magazine/375-finding-jobs-in-germany) - [System change: restart as developer?](https://www.wearedevelopers.com/magazine/39-system-change-restart-as-developer) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers)