Kubernetes & Cloud Foundry Operations Engineer
Location: On-Site either Langley or Hanscom Willing to work weekends
About the Role:
We are seeking a highly skilled and motivated Kubernetes and Tanzu Cloud Foundry Operations Engineer to join our team supporting critical national security missions. This role is crucial to the ongoing operation, maintenance, and evolution of our classified cloud-native platform within both Secret Internet Protocol Router Network (SIPRNet) and AWS Impact Level 6 (IL6) environments. You will also work with vSphere -based environments. You will be responsible for ensuring the reliability, performance, and security of applications deployed on Kubernetes and Tanzu Application Service (TAS). You will work closely with Engineering, security, and other operations teams to implement and maintain best practices for deploying, monitoring, and managing our classified cloud infrastructure and applications.
Responsibilities:
- Platform Operations and Maintenance (SIPRNet & AWS IL6):
- Manage and maintain the health, performance, and availability of our Kubernetes clusters and Tanzu Application Service (TAS) platform within SIPRNet and AWS IL6 environments.
- Manage and maintain our vSphere environments that interface with cloud native platforms.
- Perform routine maintenance tasks, including upgrades, patching, and configuration management, adhering to strict security protocols specific to each environment.
- Monitor platform health and application performance, identifying and resolving issues proactively within the constraints of each classified environment.
- Troubleshoot and resolve complex technical issues related to Kubernetes, TAS, vSphere, and underlying infrastructure within SIPRNet and AWS IL6.
- Implement and maintain disaster recovery and business continuity plans for our classified cloud platforms.
Automation and Tooling:
Develop and maintain automation scripts and tools for platform provisioning, configuration management, deployment, and monitoring within the SIPRNet and AWS IL6 environments using approved tooling.
Contribute to the development and implementation of Infrastructure as Code (IaC).
Automate operational tasks to improve efficiency and reduce manual effort while adhering to security guidelines specific to each environment.
Security and Compliance:
Implement and enforce security policies and best practices for Kubernetes and TAS environments within SIPRNet and AWS IL6, meeting stringent security requirements including DoD STIGs and other relevant security directives.
Manage user access and permissions within the platform, adhering to the principle of least privilege within each classified environment.
Regularly assess and address security vulnerabilities according to established procedures for classified systems.
Collaboration and Support:
Work closely with development teams to support application deployments and troubleshoot application-related issues within the classified environments.
Provide guidance and training to development teams on best practices for deploying and managing applications on Kubernetes and TAS within SIPRNet and AWS IL6, following security protocols.
Collaborate with other operations teams to ensure the smooth functioning of the entire infrastructure stack.
Participate in on-call rotation to support production systems within SIPRNet and AWS IL6 as required.
Continuous Improvement:
Stay up-to-date with the latest industry trends and technologies related to Kubernetes, Cloud Foundry, and cloud-native platforms, as applicable to the classified environment.
Propose and implement improvements to the platform architecture, processes, and tooling within the constraints of SIPRNet and AWS IL6.
Contribute to the development and documentation of operational procedures and runbooks for classified systems.
Qualifications:
Required:
- Active U.S. Secret security clearance (or higher).
- CompTIA Security+ certification (DoD 8570/8140 IAT Level II compliance).
- Experience working 1 within classified environments, specifically SIPRNet.
- Experience working within AWS IL6 environments.
- Experience working with VMware vSphere environments.
- 3+ years of experience operating and maintaining production Kubernetes environments.
- 2+ years of experience with Tanzu Application Service (TAS) or Cloud Foundry.
- Strong understanding of containerization technologies (Docker) and container orchestration (Kubernetes).
- Experience with Infrastructure as Code (IaC) tools.
- Proficiency in scripting languages (Bash, Python, Go).
- Experience with monitoring and logging tools approved for use in classified environments.
- Solid understanding of networking concepts (TCP/IP, DNS, load balancing, firewalls).
- Excellent troubleshooting and problem-solving skills.
- Strong communication and collaboration skills.
Preferred:
Experience with other Tanzu portfolio products like Tanzu Kubernetes Grid (TKG), Tanzu Mission Control (TMC), Tanzu Service Mesh that are approved for use in SIPRNet and/or IL6.
Experience with CI/CD pipelines approved for use in SIPRNet and/or IL6.
Experience with configuration management tools approved for use in classified environments.
Certifications in Kubernetes (CKA, CKAD, CKS)
Experience with service mesh technologies approved for use in classified environments.
Experience with database technologies approved for use in classified environments.
Compensation and Benefits Salary Range:
40 to 75/hr - Varies based on experience (Compensation is determined by various factors, including but not limited to location, work experience, skills, education, certifications, seniority, and business needs. This range may be modified in the future.)
Benefits: Gridiron offers a comprehensive benefits package including medical, dental, vision insurance, HSA, FSA, 401(k), disability & ADD insurance, life and pet insurance to eligible employees. Full-time and part-time employees working at least 30 hours per week on a regular basis are eligible to participate in Gridiron’s benefits programs.
Gridiron IT Solutions is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, gender identity, national origin, age, protected veteran status or disability status.
Gridiron IT is a Women Owned Small Business (WOSB) headquartered in the Washington, D.C. area that supports our clients' missions throughout the United States. Gridiron IT specializes in providing comprehensive IT services tailored to meet the needs of federal agencies. Our capabilities include IT Infrastructure & Cloud Services, Cyber Security, Software Integration & Development, Data Solution & AI, and Enterprise Applications. These capabilities are backed by Gridiron IT's experienced workforce and our commitment to ensuring we meet and exceed our clients' expectations.