JOBSEARCHER

DevOps Engineer (Onsite)

DevOps EngineerLocation: Los Angeles, CA100% OnsiteOnly W2/1099 (NO C2C)We are seeking an experienced DevOps Engineer to support and maintain our on-premises infrastructure and DevOps environment. This role requires expertise in self-hosted Kubernetes administration, automation, CI/CD, infrastructure security, and Azure administration. The ideal candidate will have strong experience managing enterprise DevOps platforms while collaborating with development teams to ensure reliable, secure, and efficient software delivery.Key ResponsibilitiesManage and support self-hosted Kubernetes clusters, including upgrades, lifecycle management, node maintenance, and production issue resolution.Review, implement, and maintain Kubernetes RBAC policies, ensuring access controls follow least-privilege security principles.Develop, maintain, and enhance Ansible playbooks and roles used for infrastructure provisioning and configuration management.Administer the on-premises Azure DevOps Server environment, including build and release pipelines, agent management, user permissions, and project configuration.Design, maintain, and troubleshoot end-to-end CI/CD pipelines that deploy applications into on-premises Kubernetes environments using Harbor container registry workflows.Support and manage the Harbor image registry, including repository configuration, image scanning, retention policies, and vulnerability management.Oversee Kubernetes certificate management by implementing and maintaining certificate issuance, renewal, and rotation using cert-manager or comparable solutions.Perform Azure administration tasks with a focus on resource optimization, cost analysis, forecasting, and budget recommendations.Strengthen platform security by conducting access reviews, implementing least-privilege controls, and addressing vulnerabilities identified through Harbor scans and Kubernetes security best practices.Maintain monitoring and observability platforms, including Grafana, Prometheus, Loki, and OpenTelemetry, while using these tools to identify and resolve system issues.Provide technical support to engineering teams by assisting with onboarding, access management, troubleshooting, and maintaining operational documentation.Required QualificationsDemonstrated experience administering self-hosted, on-premises Kubernetes environments. Experience limited to managed Kubernetes services such as AKS, EKS, or GKE is not sufficient.Strong hands-on experience with Ansible, including developing and maintaining playbooks, roles, and infrastructure automation.Experience managing on-premises Azure DevOps Server, including pipeline creation, agent administration, project configuration, and security permissions.Solid understanding of Kubernetes RBAC and implementing secure access control policies.Experience managing TLS certificates within Kubernetes using cert-manager or equivalent certificate automation tools.Hands-on Azure administration experience, including resource management, cost reporting, and forecasting.Experience with infrastructure security, vulnerability remediation, and implementing least-privilege access across Kubernetes, Azure, and Azure DevOps environments.Preferred QualificationsExperience with Terraform for infrastructure provisioning and Infrastructure as Code.Knowledge of Azure Key Vault and integrating secrets with CI/CD pipelines and Kubernetes workloads.Experience implementing identity federation using Azure AD (Microsoft Entra ID) with Kubernetes and Azure DevOps.Administration experience with Harbor container registry.Familiarity with observability platforms including Grafana, Prometheus, Loki, and OpenTelemetry.Industry certifications such as Certified Kubernetes Administrator (CKA), AZ-400: Designing and Implementing Microsoft DevOps Solutions, or other related DevOps certifications.📩 Interested candidates - please share your updated resume to gokul.v@highbrowtechnology.com