Kubernetes Infrastructure Developer

Sigma Inc.
Rome, NY, United States
7 days ago
Apply on www.thejobnetwork.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
8 years minimum
Compensation
$135,000.0 - $165,000.0
Working hours
Regular working hours

Tech stack

Kubernetes Security Application Layers User Authentication Microsoft Azure Bash Shell Cloud Computing CompTIA Security+ Computer Networks Continuous Integration Domain Name System (DNS) Python (Programming Language) Key Management
+27 more
Network Security Log Analysis Octopus Deploy Windows PowerShell Role-Based Access Control Azure Active Directory Prometheus Zero Trust Network Access Service Discovery Systems Integration Data Logging Load Balancing Cloud Monitoring System Availability Grafana Kubernetes Helm Charts Azure Powershell Firewalls (Computer Science) Kubernetes Infrastructure Automation Frameworks Information Technology Deployment Automation Bicep Azure AKS Terraform Azure Resource Manager Vulnerability Analysis

Job description

  • Design, build, configure, and maintain enterprise Kubernetes infrastructure within Microsoft Azure, with a primary focus on Azure Kubernetes Service (AKS).
  • Serve as a senior technical resource for Kubernetes platform architecture, infrastructure automation, cluster configuration, and troubleshooting.
  • Design scalable and resilient AKS architectures supporting mission-critical applications and services.
  • Automate provisioning and lifecycle management of AKS clusters and supporting Azure infrastructure.
  • Develop reusable Infrastructure as Code modules and deployment patterns using Terraform, Bicep, Helm, and Kubernetes manifests.
  • Develop automated deployment and configuration processes using GitOps and CI/CD methodologies.
  • Design and implement Kubernetes networking, ingress, service discovery, load balancing, and connectivity to other Azure resources.
  • Integrate AKS with Azure Virtual Networks, Private Endpoints, Private DNS, Azure Firewall, Application Gateway, Load Balancer, and other Azure networking services.
  • Design and implement secure private AKS architectures.
  • Implement Kubernetes RBAC and integrate cluster access with Microsoft Entra ID and Azure identity services.
  • Implement workload identity, managed identities, secrets management, and secure access to Azure resources.
  • Integrate Kubernetes environments with Azure Key Vault.
  • Develop and maintain Helm charts, reusable platform configurations, and standardized deployment patterns.
  • Integrate AKS with Azure Policy, Microsoft Defender for Cloud, and Defender for Containers.
  • Implement logging, monitoring, metrics, and alerting using Azure Monitor, Log Analytics, Container Insights, and related technologies.
  • Design platform capabilities supporting high availability, resiliency, scaling, backup, recovery, and cluster lifecycle management.
  • Mentor junior and mid-level engineers and provide technical guidance.

Requirements

This individual should understand what is happening beneath the application layer and be comfortable taking technical ownership from the Azure infrastructure and network supporting the cluster through AKS configuration, networking, identity, security, deployment automation, observability, and lifecycle management. The ideal candidate believes Kubernetes infrastructure should be built through code, version controlled, automated, repeatable, secure, and recoverable., * 8+ years of relevant experience.

  • Significant professional experience designing, deploying, and operating Kubernetes environments.
  • Strong hands-on experience with Microsoft Azure and Azure Kubernetes Service (AKS).
  • Deep understanding of Kubernetes architecture, including nodes, pods, deployments, services, namespaces, ingress, configuration, secrets, and storage.
  • Experience designing and operating production Kubernetes clusters supporting enterprise workloads.
  • Strong experience with Infrastructure as Code and automated infrastructure deployment.
  • Hands-on experience with Terraform, Bicep, Helm, and Kubernetes manifests.
  • Experience developing and maintaining Helm charts.
  • Strong understanding of Kubernetes networking and integration with Azure networking services.
  • Experience implementing Kubernetes identity, authentication, authorization, and RBAC.
  • Experience integrating Kubernetes environments with Microsoft Entra ID and Azure identity technologies.
  • Experience with container security and secure cluster configuration.
  • Experience implementing automated Kubernetes deployments using CI/CD or GitOps methodologies.
  • Strong scripting and automation skills using PowerShell, Python, Bash, Azure CLI, or similar tools.
  • Must be a U.S. citizen.

Candidate Differentiators:

  • Experience designing and operating Azure Government AKS environments.
  • Experience supporting Kubernetes platforms within a Department of Defense (DoD) or other highly regulated environment.
  • Experience designing private AKS clusters and secure network architectures.
  • Experience with Azure CNI, network policies, and advanced container networking.
  • Experience with Azure Key Vault, workload identity, managed identities, and secure secrets-management patterns.
  • Experience with Azure Policy for Kubernetes and Microsoft Defender for Containers.
  • Experience with Flux or Argo CD.
  • Experience with Azure Container Registry (ACR).
  • Experience with OPA Gatekeeper, Kyverno, or comparable policy technologies.
  • Experience with Azure Monitor, Log Analytics, Prometheus, Grafana, or comparable observability platforms.
  • Experience with container image security, vulnerability scanning, and software supply-chain security.
  • Familiarity with Zero Trust architecture, DoD RMF, NIST SP 800-53, and STIGs.

Mandatory Certifications:

  • CompTIA Security+
  • Certified Kubernetes Administrator (CKA)
  • Azure Administrator Associate: AZ-104

Computer Programs/Software:

  • Azure Kubernetes Service (AKS)
  • Terraform
  • Bicep

Personnel Clearance Level:

  • Candidate must possess or have the ability to obtain an active TS/SCI security clearance.
  • Clearance may be sponsored for the right candidate.

Education Requirements:

  • Bachelor’s degree from an accredited college or university in Computer Science or related field of study.

Benefits & conditions

  • Dental and Vision Insurance
  • Medical Insurance to Include HSA, FSA, and DFSA Plans
  • Life and AD&D coverage
  • Employee Assistance Program (EAP)
  • 401(k) Plan with Company Matching Contributions
  • 160 Hours of Paid Time Off (PTO)
  • 12 (Floating) Holidays
  • Educational Assistance
  • Highly Competitive Salary

Full Time

2147483629

Technology

Sigma Defense

About the company

Sigma Defense is seeking a Senior Kubernetes Infrastructure Developer to be a Kubernetes platform engineer and infrastructure developer, not simply a user of Kubernetes.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.thejobnetwork.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:40 min

Assessing common Kubernetes security incidents and misconfigurations

Rico Komenda Rico Komenda · World Congress 2025

5:01 min

Container hosting options available on Microsoft Azure

Federico Fregosi · World Congress 2022

10:40 min

Visualizing Prometheus open metrics using custom Grafana dashboards

Stijn Polfliet · LIVE

2:56 min

Provisioning a secure container infrastructure with Bicep

Matthias Falkenberg +1 · World Congress 2022

1:54 min

Speaker background and open source Kubernetes edge computing projects

Gaurav Gahlot Gaurav Gahlot · World Congress 2026 Europe

2:46 min

Evaluating managed container services and migration strategies

Adam Bien · World Congress 2021

Videos

See all

Related articles

See all