Summary
✨ AI‑Generated
Join a platform engineering team responsible for a global, resilient cloud infrastructure. You will design and operate distributed systems, provision AWS resources with Terraform and Kubernetes, strengthen workload isolation and security, participate in incident response and architecture reviews, and ensure new services meet reliability, performance, security, and observability standards.
Highlights
Senior infrastructure role focused on designing and operating resilient global cloud platforms. Offers substantial technical depth across distributed systems, Linux, Kubernetes, Terraform, security, reliability, performance, and observability, with involvement in architecture reviews and production readiness.
Description
We are seeking a Senior Infrastructure Engineer with deep experience in cloud infrastructure, Linux internals, large-scale distributed systems, workload isolation, and a strong security mindset to join our team and help design, build, and operate a global, resilient platform.
Responsibilities
Design, build, and maintain a global, distributed, and resilient cloud infrastructureCollaborate with infrastructure and product engineering teams to plan and deliver complex platform initiativesParticipate in architecture reviews, incident response, and performance analysis to ensure system reliabilityManage and provision AWS infrastructure using Terraform and KubernetesWrite and maintain Kubernetes manifests and deployment configurations for critical workloads, including pod security contexts, anti-affinity rules, network policies, autoscaling, and health probesDrive Production Readiness Reviews (PRR) for all new services, covering security, HA, performance, and observability gatesDesign and operate multi-layer workload isolation using Linux kernel primitives: namespaces (pid, net, mnt, user, uts, ipc), cgroups, seccomp profiles, and capabilities, as the baseline security boundaryEvaluate and operate gVisor and Firecracker for workloads requiring hard tenant boundaries and near-native performanceDesign and maintain Grafana dashboardsManage Prometheus and VictoriaMetrics pipelines; define and tune P1/P2/P3 alert thresholds with runbooksContribute to and extend the internal k6-based load testing framework (load-testing-framework / library/k6/webhooks)Design load scenarios using constant-arrival-rate profiles; instrument custom metrics (job_succeeded_count, job_failed_count) tagged by testid for Grafana correlation; stream test metrics to Prometheus via remote write; generate and publish HTML reports to file storage after each run
Requirements
5+ years of experience in infrastructure, SRE, or platform engineering rolesExpertise in distributed systems and cloud-native architecturesUnderstanding of Linux internals: namespaces, cgroups, seccomp, capabilities, and system-level performance tuningExperience operating infrastructure on AWS at scaleProficiency in Terraform and Kubernetes, including security hardening of manifestsExperience designing and running load tests (k6, Gatling, Locust, or similar)Understanding of network security and cloud security best practicesExcellent analytical, troubleshooting, and communication skillsProficiency in English at a B2+ level
Nice to have
Skills in Golang/Python for building internal toolingFamiliarity with Kafka, Redis, ClickHouse, or PostgreSQLFamiliarity with observability tools such as Grafana, Prometheus, or VictoriaMetricsKnowledge of encryption key hierarchies (CMK/DEK/KMS patterns) and HashiCorp VaultHands-on production experience with gVisor or FirecrackerPrior work extending or maintaining an internal testing frameworkContributions to or maintenance of open-source infrastructure projects
We offer
We connect like-minded people:Delivering innovative solutions to industry leaders, making a global impactEnjoyable working environment, whether it is the vibrant office or the comfort of your own homeOpportunity to work abroad for up to two months per yearRelocation opportunities within our offices in 55+ countriesCorporate and social eventsWe invest in your growth:Leadership development, career advising, soft skills and well-being programsCertifications, including GCP, Azure and AWSUnlimited access to EPAM's internal learning databaseFree English classes with certified teachersWe cover it all:Monetary bonuses for engaging in the referral programMedical & family care packageSix trust days per year (sick leave without a medical certificate)Coverage of psychology sessions of your choiceDiscounts for fitness clubs and sports programsBenefits package (sports activities, a variety of stores and services)
EPAM is global leader in AI transformation engineering and integrated consulting, serving Forbes Global 2000 companies and ambitious startups.
With over thirty years of expertise in custom software, product and platform engineering, we empower our clients to become AI-Native enterprises, driving measurable value from innovation and digital investments.
Experience the freedom of remote work from anywhere in Kyrgyzstan, whether it's the comfort of your home or our modern office in Bishkek.