Amazon Elastic Compute Cloud (EC2), Amazon Simple Storage Service (S3), Amazon Web Services (AWS), Application Programming Interface (API), Best Practices, Cloud Computing, Continuous Deployment/Delivery, Continuous Integration, Docker, Enterprise Protection, GitHub, High Availability, Identify Issues, Management Strategy, Mentoring, Microservices, Operations Security (OPSEC), Order Picking/Packing, Performance Tuning/Optimization, Release Management/Engineering, Software Patches, Technical Leadership
Devsecops AWS (EKS) Lead Engineer
We are seeking an experienced DevSecOps AWS (EKS) Lead Engineer to join our team at Capgemini. This role focuses on CI/CD of applications including Kubernetes-based container orchestration solutions on AWS. The ideal candidate will have a strong background in cloud-native technologies, with a focus on optimizing performance, scalability, and security for enterprise-level applications.
Key Responsibilities:
- Implement CI/CD pipelines using GitHub Actions.
- Automate deployment of highly available and scalable EKS clusters on AWS.
- Life Cycle Management of application containers through all delivery stages
- Incorporate release management practices, security and compliance pipeline integration and progressive deployment capabilities with canary and blue/green strategies.
- Collaborate with development, operations, and security teams to ensure alignment with best practices.
- Implement security controls and compliance measures for Kubernetes environments.
- Provide technical leadership and mentorship to junior engineers.
Required Skills:
- Strong experience with AWS services, including EKS, EC2, S3, and IAM.
- Expertise in Kubernetes (EKS), including cluster management, deployment strategies, and troubleshooting.
- Proficiency in containerization tools and technologies (e.g., Docker, HashiCorp Packer, ECR).
- Solid understanding of infrastructure-as-code tools such as Terraform.
- Experience with monitoring and logging tools (e.g., Dynatrace)
- Knowledge of Kubernetes networking (Services, Ingress, Network Policies)
- Deploy and manage containerized applications using Pods, Deployments, StatefulSets, and DaemonSets.
- Manage cluster lifecycle, including upgrades, scaling, and patching.
- Secure Kubernetes workloads using Pod Security Policies (PSP), Network Policies, and Secrets Management (e.g., HashiCorp Vault, CyberArk Conjure)
- Design highly available Kubernetes architectures with multi-node, multi-zone, or multi-region cluster for DR.
- Experience with service meshes or API Gateways for microservices observability, security, and traffic management.