We are tech transformation specialists, uniting human expertise with AI to create scalable tech solutions.
With over 6,500 CI&Ters around the world, we’ve built partnerships with more than 1,000 clients during our 30 years of history. Artificial Intelligence is our reality.
We’re looking for a CloudOps Software Architect to guide the evolution of our Azure-native Kubernetes platform. The stack is GitOps-based (Argo CD), leverages Argo Rollouts for blue/green and canary releases, and relies on Istio Service Mesh for secure, multi-cluster traffic management. You’ll coach engineering squads on best practices, mature our scaling strategies, streamline governance across multiple environments and clusters, and ensure robust secret-management and policy-as-code guardrails.
What You’ll Do
- Design & evolve the platform
- Build and refine a Helm-driven, multi-cluster AKS architecture.
- Establish reusable charts, upgrade/rollback playbooks, and disaster-recovery strategies.
- Drive GitOps & progressive delivery
- Own repository-based deployment workflows with Argo CD.
- Standardise blue/green and canary releases via Argo Rollouts.
- Lead networking & service mesh
- Tune Istio (or equivalent) for traffic management, mTLS, policy enforcement, and observability.
- Define cross-cluster routing, fail-over, and zero-trust patterns.
- Engineer autoscaling & resilience
- Design efficient scaling with Kubernetes HPA/VPA and cluster-proportional autoscalers.
- Optimise resource requests/limits, PDBs, and QoS classes.
- Manage infrastructure & policy
- Maintain Infrastructure-as-Code modules (Terraform or similar).
- Enforce CI checks and compliance using Kyverno policy-as-code.
- Architect secure secrets management
- Implement and maintain secret distribution (e.g., External Secrets Operator with Azure Key Vault, HashiCorp Vault, or Infisical).
- Provide technical leadership
- Mentor engineers, run architecture reviews, and own the platform roadmap.
- Align designs with security, compliance, and cost-optimisation goals.
Minimum Qualifications
- 2+ years as a software/system architect or technical lead guiding multiple squads.
- 5+ years total in software engineering, DevOps, or SRE roles.
- Proven expertise with Kubernetes, Helm, Argo CD, and Argo Rollouts.
- Production AKS experience, including Azure networking (VNet, Private Link, Azure Monitor).
- Strong knowledge of Istio or other Envoy-based service meshes (mTLS, traffic policies, observability).
- Deep understanding of Kubernetes HPA/VPA and resource-efficiency tuning.
- Hands-on experience with secret-management solutions in Kubernetes.
- Proficiency with Azure DevOps (Repos, Pipelines, Artifacts).
- Familiarity with Kyverno (or Gatekeeper) for policy enforcement.
- Clear written and verbal English communication.
Nice-to-Have
- Practical exposure to Cluster API for cluster lifecycle automation.
- Familiarity with Solo.io products (Gloo Gateway / Gloo Mesh) or other enterprise Istio distributions. - Hands-on with ScaleOps or similar cost-aware autoscaling add-ons.
- Experience adopting or extending Backstage developer portals.
- Open-source contributions in CNCF, Istio, Kyverno, or GitOps projects.
- Certifications: CKA/CKS, Microsoft Certified – Azure Solutions Architect, HashiCorp Terraform Associate.
Soft Skills
- Systems thinker with a bias for automation and simplification.
- Skilled at explaining complex architectures to engineers, executives, and non-technical stakeholders.
- Servant-leader who empowers teams while upholding high engineering standards.
Our benefits:
-Health and dental insurance
-Meal and food allowance
-Childcare assistance
-Extended paternity leave
-Wellhub (Gympass)
-TotalPass
-Profit-sharing (PLR)
-Life insurance
-CI&T University
-Discount club
-Free online platform dedicated to physical, mental, and overall well-being
-Pregnancy and responsible parenting course
-Partnerships with online learning platforms
-Language learning platform
And many more!
Collaboration is our superpower, diversity unites us, and excellence is our standard.
We value diverse identities and life experiences, fostering a diverse, inclusive, and safe work environment. We encourage applications from diverse and underrepresented groups to our job positions.