{"schemaVersion":"jobsearcher.job.v1","id":"a8de0bf67001ca8176ed8231","url":"https://jobsearcher.com/jobs/a8de0bf67001ca8176ed8231","canonicalUrl":"https://jobsearcher.com/jobs/a8de0bf67001ca8176ed8231","title":"Lead Platform Infrastructure Engineer","description":"The Lead Platform & Infrastructure Engineer owns how the Navanta platform is built, shipped, and operated — on-premises or as a dedicated single-tenant deployment inside each bank’s environment. Working under the SVP of Technology and Commercial AI and in close collaboration with security, data, and AI/ML teams, this role is the deployment moat: the person who makes it possible to ship the identical Navanta platform inside a regulated institution’s own infrastructure, cleanly and repeatably, at a cost that scales.\nKey Responsibilities\nDesign and own the Infrastructure-as-Code baseline that enables dedicated single-tenant or on-premises deployment with minimal per-customer effort\nStand up and operate Docker and Kubernetes (and K3s for small or in-bank installs), ingress, load balancing, and the CI/CD pipeline\nBuild and maintain the secrets and certificate story and the observability stack\nDefine environment promotion, release automation, and rollback procedures — making deployments boring and repeatable\nPartner with Security on encryption, network isolation, and exam-ready hardening aligned to regulatory guidance\nRight-size and operate GPU and inference infrastructure as the AI workload grows\nEstablish on-call, SLOs, and capacity planning practices ahead of beta scale-up\nDocument deployment architecture and operating procedures to support customer due diligence and audit readiness\nCore Competencies\nInfrastructure-as-Code discipline — modules, state, idempotency, and reproducible images\nSecurity-first design: encryption, network isolation, and least-privilege access aligned to NIST CSF 2.0 and NIST SP 800-53 principles\nOperational ownership — on-call, SLOs, observability, and incident response\nCross-functional collaboration with security, data, and AI/ML engineering teams\nKey Performance Indicators (KPIs)\nDeployment repeatability: new bank environments stood up within defined time and effort targets\nPlatform availability and SLO attainment across all production deployments\nSecurity and hardening posture — zero critical findings in customer security reviews\nCI/CD pipeline reliability and mean time to recovery for infrastructure incidents\nGPU and compute cost per inference request as AI workloads scale\nQualifications\nTo perform this job successfully, an individual must be able to perform each essential duty satisfactorily. The requirements listed below are representative of the knowledge, skill, and/or ability required.\n8–12+ years building and operating production infrastructure, with 2+ years leading or setting direction for a platform or infrastructure function\nDemonstrated experience shipping and operating software in customer-managed or on-premises environments — deploying and operating inside environments you do not control\nDeep, hands-on Docker and Kubernetes in production (deployments, networking, storage, upgrades), plus strong Linux and networking fundamentals\nFluency with IaC and configuration management as a discipline — modules, state, idempotency, and reproducible images\nA track record of making infrastructure reliable, secure, and automated rather than hand-tuned\nCore Technologies\nContainers & orchestration: Docker, Kubernetes, K3s, Helm\nIaC & config: Terraform, Packer, Ansible\nCI/CD: Gitea Actions (or GitHub Actions / GitLab CI)\nSecrets & certs: HashiCorp Vault, SOPS; PKI / mTLS (or equivalent)\nNetworking & ingress: Caddy or NGINX, MetalLB\nStorage: S3 and MinIO (object storage)\nObservability: Prometheus, Grafana, OpenTelemetry, Loki (or equivalent)\nOn-prem / bare-metal: strong familiarity required; cloud (AWS) experience useful for tooling and CI/CD pipelines\nNice to Have\nPrior experience deploying software into regulated or air-gapped customer environments (banking, healthcare, or government)\nExperience with Kubernetes network policy, namespace isolation, and multi-environment rollout strategies\nGPU scheduling and cost optimization for model inference\nEducation and/or Experience\nBachelor’s degree in computer science, information systems, or a related technical field, or equivalent hands-on experience\nExperience in the financial services industry or a regulated technology environment strongly preferred\nWork Structure & Expectations\nFull-time role combining ongoing platform operations with initiative-based build-out of deployment tooling and automation\nClose collaboration with engineering, security, and client success teams; on-call rotation as deployments reach production\nPhysical Demands\nThe physical demands described here are representative of those that must be met by an employee to successfully perform the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.\nWhile performing the duties of this job, the employee is regularly required to sit and use hands to finger, handle, or touch objects, tools, or controls. The employee frequently is required to talk or hear. The employee is occasionally required to stand; walk; and stoop, kneel, crouch, or crawl. The employee must occasionally lift and/or move up to 10 pounds, usually waist high, up to 50 feet away. Specific vision abilities required by this job include close vision and the ability to adjust focus.\nWork Environment\nThe work environment characteristics described here are representative of those an employee encounters while performing the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.\nTypical office environment\nUp to 20% travel time may be required\nWho is Navanta?\nNavanta is the trusted technology and services partner for community financial institutions, unifying critical systems, security, cloud infrastructure, and support into one seamless, purpose built experience. With more than 35 years of banking expertise — from Managed IT to Core Banking, CRM, and Advisory Services — Navanta helps institutions simplify complexity, reduce risk, and strengthen daily operations. Navanta empowers community bankers and their people to thrive together. Go Bankers, Go.™","company":"Navanta","rawCompany":"navanta","city":"Remote","state":"OR","isRemote":false,"isActive":false,"createdAt":"2026-08-04T20:05:33.009Z","occupations":[{"code":"15-1299.08","title":"Computer Systems Engineers/Architects","slug":"computer-systems-engineers-architects"},{"code":"15-1252.00","title":"Software Developers","slug":"software-developers"},{"code":"15-1244.00","title":"Network and Computer Systems Administrators","slug":"network-and-computer-systems-administrators"}],"industries":[{"code":"541512","title":"Computer Systems Design Services","slug":"computer-systems-design-services"},{"code":"518210","title":"Computing Infrastructure Providers, Data Processing, Web Hosting, and Related Services","slug":"computing-infrastructure-providers-data-processing-web-hosting-and-related-services"},{"code":"513210","title":"Software Publishers","slug":"software-publishers"}],"jobPosting":{"@context":"https://schema.org","@type":"JobPosting","title":"Lead Platform Infrastructure Engineer","description":"The Lead Platform & Infrastructure Engineer owns how the Navanta platform is built, shipped, and operated — on-premises or as a dedicated single-tenant deployment inside each bank’s environment. Working under the SVP of Technology and Commercial AI and in close collaboration with security, data, and AI/ML teams, this role is the deployment moat: the person who makes it possible to ship the identical Navanta platform inside a regulated institution’s own infrastructure, cleanly and repeatably, at a cost that scales.\nKey Responsibilities\nDesign and own the Infrastructure-as-Code baseline that enables dedicated single-tenant or on-premises deployment with minimal per-customer effort\nStand up and operate Docker and Kubernetes (and K3s for small or in-bank installs), ingress, load balancing, and the CI/CD pipeline\nBuild and maintain the secrets and certificate story and the observability stack\nDefine environment promotion, release automation, and rollback procedures — making deployments boring and repeatable\nPartner with Security on encryption, network isolation, and exam-ready hardening aligned to regulatory guidance\nRight-size and operate GPU and inference infrastructure as the AI workload grows\nEstablish on-call, SLOs, and capacity planning practices ahead of beta scale-up\nDocument deployment architecture and operating procedures to support customer due diligence and audit readiness\nCore Competencies\nInfrastructure-as-Code discipline — modules, state, idempotency, and reproducible images\nSecurity-first design: encryption, network isolation, and least-privilege access aligned to NIST CSF 2.0 and NIST SP 800-53 principles\nOperational ownership — on-call, SLOs, observability, and incident response\nCross-functional collaboration with security, data, and AI/ML engineering teams\nKey Performance Indicators (KPIs)\nDeployment repeatability: new bank environments stood up within defined time and effort targets\nPlatform availability and SLO attainment across all production deployments\nSecurity and hardening posture — zero critical findings in customer security reviews\nCI/CD pipeline reliability and mean time to recovery for infrastructure incidents\nGPU and compute cost per inference request as AI workloads scale\nQualifications\nTo perform this job successfully, an individual must be able to perform each essential duty satisfactorily. The requirements listed below are representative of the knowledge, skill, and/or ability required.\n8–12+ years building and operating production infrastructure, with 2+ years leading or setting direction for a platform or infrastructure function\nDemonstrated experience shipping and operating software in customer-managed or on-premises environments — deploying and operating inside environments you do not control\nDeep, hands-on Docker and Kubernetes in production (deployments, networking, storage, upgrades), plus strong Linux and networking fundamentals\nFluency with IaC and configuration management as a discipline — modules, state, idempotency, and reproducible images\nA track record of making infrastructure reliable, secure, and automated rather than hand-tuned\nCore Technologies\nContainers & orchestration: Docker, Kubernetes, K3s, Helm\nIaC & config: Terraform, Packer, Ansible\nCI/CD: Gitea Actions (or GitHub Actions / GitLab CI)\nSecrets & certs: HashiCorp Vault, SOPS; PKI / mTLS (or equivalent)\nNetworking & ingress: Caddy or NGINX, MetalLB\nStorage: S3 and MinIO (object storage)\nObservability: Prometheus, Grafana, OpenTelemetry, Loki (or equivalent)\nOn-prem / bare-metal: strong familiarity required; cloud (AWS) experience useful for tooling and CI/CD pipelines\nNice to Have\nPrior experience deploying software into regulated or air-gapped customer environments (banking, healthcare, or government)\nExperience with Kubernetes network policy, namespace isolation, and multi-environment rollout strategies\nGPU scheduling and cost optimization for model inference\nEducation and/or Experience\nBachelor’s degree in computer science, information systems, or a related technical field, or equivalent hands-on experience\nExperience in the financial services industry or a regulated technology environment strongly preferred\nWork Structure & Expectations\nFull-time role combining ongoing platform operations with initiative-based build-out of deployment tooling and automation\nClose collaboration with engineering, security, and client success teams; on-call rotation as deployments reach production\nPhysical Demands\nThe physical demands described here are representative of those that must be met by an employee to successfully perform the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.\nWhile performing the duties of this job, the employee is regularly required to sit and use hands to finger, handle, or touch objects, tools, or controls. The employee frequently is required to talk or hear. The employee is occasionally required to stand; walk; and stoop, kneel, crouch, or crawl. The employee must occasionally lift and/or move up to 10 pounds, usually waist high, up to 50 feet away. Specific vision abilities required by this job include close vision and the ability to adjust focus.\nWork Environment\nThe work environment characteristics described here are representative of those an employee encounters while performing the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.\nTypical office environment\nUp to 20% travel time may be required\nWho is Navanta?\nNavanta is the trusted technology and services partner for community financial institutions, unifying critical systems, security, cloud infrastructure, and support into one seamless, purpose built experience. With more than 35 years of banking expertise — from Managed IT to Core Banking, CRM, and Advisory Services — Navanta helps institutions simplify complexity, reduce risk, and strengthen daily operations. Navanta empowers community bankers and their people to thrive together. Go Bankers, Go.™","datePosted":"2026-08-04T20:05:33.009Z","dateModified":"2026-08-04T20:05:33.009Z","hiringOrganization":{"@type":"Organization","name":"Navanta","sameAs":"https://jobsearcher.com"},"jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"Remote","addressRegion":"OR","addressCountry":"US"}},"identifier":{"@type":"PropertyValue","name":"JobSearcher","value":"a8de0bf67001ca8176ed8231"},"url":"https://jobsearcher.com/jobs/a8de0bf67001ca8176ed8231"}}