Thales

OpenSky DevSecOps Engineer

Thales
Aerospace & DefenseSingaporeOnsitePosted 2 weeks ago

About the role

AI summarised

Mid-level DevSecOps engineer focused on Kubernetes-based container orchestration for next-generation air traffic management systems. Responsible for cluster lifecycle, workload automation, networking, security, observability, and infrastructure-as-code across Azure cloud and on-prem environments.

Aerospace & DefenseOnsite

Key Responsibilities

  • Cluster Management and Operations Deploy, upgrade and manage Kubernetes clusters across an Azure based cloud and on-prem environments
  • Ensure high-availability and disaster recovery of Kubernetes workloads
  • Manage cluster lifecycle using tools like Cluster API, kubeadm or managed services
  • Workload Deployment & Automation Define and manage Helm charts, kustomize overlays, or GitOps pipelines ( ArgoCD , FluxCD )
  • Automate application deployments, scaling and rollbacks with Kubernetes native patterns
  • Design CI/CD pipelines that integrate seamlessly with Kubernetes
  • Networking & Security Configure Kubernetes networking (CNI plugins like Cillium , Calico , Multus )
  • Implement Ingress, Service Mesh ( Istio , Linkerd ) and API gateway solutions
  • Apply security best practices including RBAC, Pod Security Standards, network policies, and secrets management (e.g., Vault, Sealed Secrets)
  • Observability and Reliability Implement monitoring, logging, and alerting ( Prometheus , Grafana , Loki , OpenTelemetry )
  • Conduct Performance tuning and capacity planning for clusters and workloads
  • Establish SLOs, SLIs, and error budgets in collaboration with development teams, Release Train Engineers, Product Owners

Requirements

  • Bachelors in Computer Science or Information Technology
  • Recognized Engineering degree
  • Proven hands-on experience with Kubernetes (2+ years in production)
  • Strong knowledge of containerization (Docker, OCI images) and registries
  • Experience with cloud providers (AWS, Azure, GCP) or hybrid Kubernetes environments
  • Proficiency in IaC tools (Terraform, Helm, ArgoCD)
  • Solid understanding of Linux systems, networking and security
  • Relevant certifications such as Certified Kubernetes Administrator (CKA) or Certified Kubernetes Security Specialist (CKSS), Certified Kubernetes Application Developer (CKAD)
  • Experience with Service Meshes (Istio, Linkerd, Consul)
  • Familiarity with multi-cluster, multi-tenant or edge Kubernetes deployments
  • Knowledge of FinOps and cost optimization for Kubernetes workloads
  • Possess learning agility, flexibility and pro-activity
  • Comfortable with agile teamwork and user engagement