> Markdown version of [/jobs/ext/2886848-cloud-platform-engineer-agentic-ai](https://www.wearedevelopers.com/jobs/ext/2886848-cloud-platform-engineer-agentic-ai). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cloud Platform Engineer (Agentic Ai) - **Company:** Luxoft Spain - **Location:** Campo, Spain - **Contract:** Permanent contract - **Skills:** Application Programming Interfaces (APIs), Artificial Intelligence, Amazon Web Services, Amazon S3, Cloud Engineering, Computer Networks, Information Engineering, Software Debugging, DevOps, Amazon DynamoDB, Github, Identity and Access Management, Python (Programming Language), OpenID, Role-Based Access Control, Prometheus, Azure Machine Learning, Load Balancing, Cloud Platform System, System Availability, Kubernetes, Deployment Automation, Machine Learning Operations, Route53, Virtual Agents, Terraform, Dynatrace - **Published:** September 13, 2026 - **Apply:** https://www.buscojobs.com.es/cloud-platform-engineer-agentic-ai-en-campo-ID-371162170 ## About the Role Certifications:Required: AWS Solutions Architect (Associate or Professional)Preferred: DevOps Engineer, Security Specialty Kubernetes & EKS ExpertiseStrong hands-on experience with:EKS cluster provisioning and operationsManaged node groups and KarpenterHelm chart managementKubernetes RBAC and network policies Infrastructure as Code (Terraform)Advanced Terraform capabilities:Modular designRemote state management (S3 + DynamoDB)Multi-environment configurationSecurity scanning (Checkov, tfsec) AWS Services ProficiencyDeep knowledge of:EKS, ECR, ALB, Route 53, ACMIAM, KMS, Secrets ManagerIAM Identity CenterCloudTrail, AWS ConfigGuardDuty, Security Hub, AWS WAF AI/ML ExposurePractical experience with:Amazon Bedrock (model invocation, agent APIs)SageMaker (model deployment and endpoints)Comprehend (NLP and PII detection) DevOps & IdentityExperience with:GitOps tools (ArgoCD or Flux)CI/CD pipelines for container workloadsOIDC federation:GitHub Actions ? AWSEKS OIDC provider integration Observability & DebuggingFamiliarity with:Prometheus, GrafanaOpenTelemetryAWS X-RayCloudWatch Logs Insights Kubernetes SecurityStrong understanding of:Pod Security StandardsNetwork PoliciesAdmission webhooksService account least-privilege principlesNice to haveExperience with AI agent frameworks:LangChain, Claude Agent SDK, or similarKnowledge of emerging protocols:A2A (Agent-to-Agent)MCP (Model Context Protocol)Familiarity with:Amazon Bedrock Agents, Knowledge Bases, GuardrailsChaos engineering exposure:AWS Fault Injection Service (FIS)Multi-tenant platform design:Namespace isolationSelf-service provisioningProgramming/debugging skills:Python, Go, or Node.JsFinOps experience:AWS Cost ExplorerCompute OptimizerTagging governanceSavings Plan managementLanguagesEnglish: B2 ## Description Project descriptionThe project is for one of the worlds famous science and technology companies in pharmaceutical industry, supporting initiatives in AWS, AI and data engineering, with plans to launch over 20 additional initiatives in the future.We are seeking a highly skilled Cloud Engineer to lead the infrastructure design, deployment, and operations of the AI agent orchestration platform on AWS.This role is responsible for building and managing a Kubernetes-native, enterprise-grade platform that supports scalable AI agent workloads across development, QA, and production environments.ResponsibilitiesAWS Infrastructure & Architecture.Design, provision, and manage AWS infrastructure using Terraform, aligned with the AWS Well-Architected Framework.Core services include:Amazon EKSVPCIAMApplication Load Balancer (ALB)Route 53AWS Certificate Manager (ACM)Kubernetes (EKS) Platform OperationsOwn and operate EKS clusters end-to-endManaged node group lifecycle management:Karpenter-based autoscalingCluster add-on lifecycle upgradesIRSA (IAM Roles for Service Accounts) configurationMulti-AZ high availability and resilienceCI/CD & GitOpsBuild and maintain automated deployment pipelines using:GitHub ActionsArgoCD (GitOps)Enable multi-environment deployments:Dev ? QA ? ProductionImplement release strategies:Blue/Green deploymentsCanary releasesSecurity & ComplianceIntegrate AWS-native security and governance controls:AWS WAFGuardDutySecurity HubKMS (encryption)Secrets ManagerExternal Secrets OperatorEnforce policy controls using:OPA / Kyverno (admission controllers)Observability & MonitoringImplement and manage observability stack:Amazon Managed PrometheusAmazon Managed GrafanaCloudWatch Container InsightsAWS X-Ray (distributed tracing)AI/ML IntegrationLeverage AWS AI/ML services to support agent orchestration:Amazon Bedrock (model inference, agent APIs)SageMaker (model hosting, endpoints)Comprehend (NLP, PII detection)Cost Optimization (FinOps)Implement cost-efficient architecture practices:Spot InstancesSavings PlansKarpenter bin-packing strategiesScheduled scale-to-zero for non-production environmentsPlatform & Engineering CollaborationPartner with platform and ML teams to:Onboard new AI agent workloadsIntegrate MCP servers and execution frameworksSupport extensibility of the agent ecosystemSkillsMust have4+ years of hands-on AWS experienceAWS Certifications:Required: AWS Solutions Architect (Associate or Professional)Preferred: DevOps Engineer, Security Specialty Kubernetes & EKS ExpertiseStrong hands-on experience with:EKS cluster provisioning and operationsManaged node groups and KarpenterHelm chart managementKubernetes RBAC and network policies Infrastructure as Code (Terraform)Advanced Terraform capabilities:Modular designRemote state management (S3 + DynamoDB)Multi-environment configurationSecurity scanning (Checkov, tfsec) AWS Services ProficiencyDeep knowledge of:EKS, ECR, ALB, Route 53, ACMIAM, KMS, Secrets ManagerIAM Identity CenterCloudTrail, AWS ConfigGuardDuty, Security Hub, AWS WAF AI/ML ExposurePractical experience with:Amazon Bedrock (model invocation, agent APIs)SageMaker (model deployment and endpoints)Comprehend (NLP and PII detection) DevOps & IdentityExperience with:GitOps tools (ArgoCD or Flux)CI/CD pipelines for container workloadsOIDC federation:GitHub Actions ? AWSEKS OIDC provider integration Observability & DebuggingFamiliarity with:Prometheus, GrafanaOpenTelemetryAWS X-RayCloudWatch Logs Insights Kubernetes SecurityStrong understanding of:Pod Security StandardsNetwork PoliciesAdmission webhooksService account least-privilege principlesNice to haveExperience with AI agent frameworks:LangChain, Claude Agent SDK, or similarKnowledge of emerging protocols:A2A (Agent-to-Agent)MCP (Model Context Protocol)Familiarity with:Amazon Bedrock Agents, Knowledge Bases, GuardrailsChaos engineering exposure:AWS Fault Injection Service (FIS)Multi-tenant platform design:Namespace isolationSelf-service provisioningProgramming/debugging skills:Python, Go, or Node.JsFinOps experience:AWS Cost ExplorerCompute OptimizerTagging governanceSavings Plan managementLanguagesEnglish: B2 ## Related Videos - [Shipping Faster with Less: Render on Cloud Hosting, AI Workloads, and the Future of DevOps](https://www.wearedevelopers.com/videos/1894-shipping-faster-with-less-render-on-cloud-hosting-ai-workloads-and-the-future-of-devops) - [From DevOps to Scaled DevOps: How We’re Rebuilding Continuous Delivery as a Platform](https://www.wearedevelopers.com/videos/100018-from-devops-to-scaled-devops-how-we-re-rebuilding-continuous-delivery-as-a-platform) - [Innovating Developer Tools with AI: Insights from GitHub Next](https://www.wearedevelopers.com/videos/1268-innovating-developer-tools-with-ai-insights-from-github-next) - [Keeping applications secure by evolving OAuth 2.0 and OpenID Connect](https://www.wearedevelopers.com/videos/100152-keeping-applications-secure-by-evolving-oauth-2-0-and-openid-connect) - [CI/CD with Github Actions](https://www.wearedevelopers.com/videos/856-ci-cd-with-github-actions) - [Building a Multi-Agent Orchestration Engine That Actually Follows the Rules](https://www.wearedevelopers.com/videos/100159-building-a-multi-agent-orchestration-engine-that-actually-follows-the-rules) ## Related Articles - [From Prototype to Production: Build AI Agents with This Free 4-Course Learning Path](https://www.wearedevelopers.com/magazine/655-from-prototype-to-production-build-ai-agents-with-this-free-4-course-learning-path) - [Dev Digest 121 - AI goes offline](https://www.wearedevelopers.com/magazine/456-dev-digest-121-ai-goes-offline) - [Dev Digest 120 - Apple and peers](https://www.wearedevelopers.com/magazine/455-dev-digest-120-apple-and-peers) - [Dev Digest 132 - Binging WADFlix?](https://www.wearedevelopers.com/magazine/473-dev-digest-132-binging-wadflix) - [Navigating the AI Shift](https://www.wearedevelopers.com/magazine/629-navigating-the-ai-shift) - [Dev Digest 137 - AI'm not sure about this](https://www.wearedevelopers.com/magazine/485-dev-digest-137-ai-m-not-sure-about-this)