Back to jobs

Kubernetes Engineer

Weekday (YC W21)
Hyderabad, Telangana, India
Full-time
You apply on Weekday (YC W21)'s own careers site

Full Description

๐—ง๐—ต๐—ถ๐˜€ ๐—ฟ๐—ผ๐—น๐—ฒ ๐—ถ๐˜€ ๐—ณ๐—ผ๐—ฟ ๐—ผ๐—ป๐—ฒ ๐—ผ๐—ณ ๐˜๐—ต๐—ฒ ๐—ช๐—ฒ๐—ฒ๐—ธ๐—ฑ๐—ฎ๐˜†'๐˜€ ๐—ฐ๐—น๐—ถ๐—ฒ๐—ป๐˜๐˜€

๐—ฆ๐—ฎ๐—น๐—ฎ๐—ฟ๐˜† ๐—ฟ๐—ฎ๐—ป๐—ด๐—ฒ: ๐—ฅ๐˜€ ๐Ÿญ๐Ÿด๐Ÿฌ๐Ÿฌ๐Ÿฌ๐Ÿฌ๐Ÿฌ - ๐—ฅ๐˜€ ๐Ÿฎ๐Ÿญ๐Ÿฌ๐Ÿฌ๐Ÿฌ๐Ÿฌ๐Ÿฌ (๐—ถ๐—ฒ ๐—œ๐—ก๐—ฅ ๐Ÿญ๐Ÿด-๐Ÿฎ๐Ÿญ ๐—Ÿ๐—ฃ๐—”)

Experience: 7+ yrs

Location: Hyderabad

Job Type: Full-time

We are looking for an experienced Kubernetes Engineer โ€“ Istio Specialist to design, implement, operate, and optimise cloud-native microservices platforms across AWS EKS and Oracle OKE environments.

The role requires strong hands-on expertise in Kubernetes, Istio, service mesh, cloud networking, security, automation, GitOps, and observability. The ideal candidate will have proven production experience managing Istio and Kubernetes platforms across complex, multi-cluster or multi-cloud environments.

Requirements

Key Responsibilities

โ€ข Design, deploy, configure, manage, and scale Kubernetes clusters across AWS EKS and Oracle OKE.

โ€ข Automate Kubernetes cluster provisioning and lifecycle management using Terraform, Helm, GitLab, Argo CD, Flux, or similar technologies.

โ€ข Implement and maintain GitOps-based approaches for Kubernetes configuration and application deployments.

โ€ข Optimise cluster performance, workload scheduling, autoscaling, node pools, resource utilisation, and platform reliability.

โ€ข Design, deploy, and manage Istio Service Mesh in production Kubernetes environments.

โ€ข Implement Istio across multi-cluster, multi-region, and multi-cloud architectures.

โ€ข Configure advanced traffic management including canary releases, blue/green deployments, traffic splitting, retries, timeouts, fault injection, and circuit breaking.

โ€ข Implement mTLS, zero-trust networking, authorization policies, and secure service-to-service communication.

โ€ข Configure and manage Istio ingress and egress gateways.

โ€ข Troubleshoot and optimise Envoy sidecars and proxy configurations.

โ€ข Develop and maintain Istio resources including VirtualServices, DestinationRules, Gateways, and AuthorizationPolicies.

โ€ข Design and implement Kubernetes networking, service discovery, ingress/egress, network policies, and secure communication patterns.

โ€ข Work with AWS and OCI networking components including VPCs, subnets, load balancers, security groups, security lists, and NSGs.

โ€ข Integrate service mesh environments with identity and authentication technologies such as OIDC, OAuth2, SPIFFE, and SPIRE.

โ€ข Build observability solutions using Prometheus, Grafana, Kiali, Jaeger/Zipkin, AWS CloudWatch, and OCI Monitoring.

โ€ข Define and monitor SLIs, SLOs, error budgets, alerts, latency, errors, and service reliability metrics.

โ€ข Perform root-cause analysis and resolve production issues involving Kubernetes, Istio, networking, routing, connectivity, latency, and service-to-service communication.

โ€ข Integrate Kubernetes and Istio configurations with CI/CD and GitOps pipelines.

โ€ข Develop automation using Python, Bash, or Go to streamline platform and operational activities.

โ€ข Build reusable platform capabilities and self-service solutions that improve developer productivity.

โ€ข Collaborate with DevOps, SRE, Security, Application Engineering, and Cloud Infrastructure teams.

What Makes You a Great Fit

โ€ข 7โ€“9 years of experience in Kubernetes, Cloud Infrastructure, DevOps, SRE, Platform Engineering, or a related field.

โ€ข Strong hands-on experience with Kubernetes platform engineering and production cluster operations.

โ€ข Proven production experience designing, implementing, and managing Istio Service Mesh.

โ€ข Strong expertise in AWS EKS and Oracle OKE architecture and operations.

โ€ข Deep understanding of Envoy Proxy, service mesh architecture, and microservices communication patterns.

โ€ข Strong experience with Terraform, Helm, Argo CD, Flux, GitOps, and YAML-based configuration management.

โ€ข Strong understanding of Kubernetes and cloud networking, including VPC, CNI, DNS, service discovery, ingress/egress, network policies, and load balancers.

โ€ข Hands-on experience implementing mTLS, zero-trust architecture, authentication, authorisation, and security policies.

โ€ข Strong knowledge of observability tools including Prometheus, Grafana, Kiali, Jaeger/Zipkin, CloudWatch, or OCI Monitoring.

โ€ข Good scripting and automation skills using Python, Bash, or Go.

โ€ข Strong troubleshooting and root-cause analysis capabilities across Kubernetes, Istio, networking, and cloud infrastructure.

โ€ข Experience supporting multi-cluster, multi-region, or multi-cloud service mesh environments is an advantage.

โ€ข Knowledge of AWS App Mesh or OCI Service Mesh is a plus.

โ€ข Familiarity with SPIFFE/SPIRE workload identity frameworks is preferred.

โ€ข Experience with container and Kubernetes security tools such as Falco, Trivy, Aqua Security, or Prisma Cloud is an advantage.

โ€ข Experience building platform engineering and developer self-service capabilities is preferred.

โ€ข Certifications such as CKA, CKAD, CKS, AWS Solutions Architect, AWS DevOps Engineer, or OCI Architectare advantageous.

โ€ข Strong communication, collaboration, ownership, and production-support skills with the ability to work effectively in a fast-paced engineering environment.

Applications are handled on Weekday (YC W21)'s site