Summary
✨ AI‑Generated
A technology organization is looking for an experienced infrastructure specialist to build and maintain globally distributed cloud platforms. The role involves architecture design, automation, reliability improvements, and security-focused operations using modern cloud-native technologies.
Highlights
Opportunity to design and operate large-scale resilient infrastructure with remote flexibility, challenging cloud projects, and collaboration with experienced engineering teams.
Description
We are seeking a Senior Infrastructure Engineer with deep experience in cloud infrastructure, Linux internals, large-scale distributed systems, workload isolation, and a strong security mindset to join our team and help design, build, and operate a global, resilient platform.
Experience the freedom of remote work from anywhere in Uzbekistan, whether it's the comfort of your home or our modern office in Tashkent.
Responsibilities
Design, build, and maintain a global, distributed, and resilient cloud infrastructureCollaborate with infrastructure and product engineering teams to plan and deliver complex platform initiativesParticipate in architecture reviews, incident response, and performance analysis to ensure system reliabilityManage and provision AWS infrastructure using Terraform and KubernetesWrite and maintain Kubernetes manifests and deployment configurations for critical workloads, including pod security contexts, anti-affinity rules, network policies, autoscaling, and health probesDrive Production Readiness Reviews (PRR) for all new services, covering security, HA, performance, and observability gatesDesign and operate multi-layer workload isolation using Linux kernel primitives: namespaces (pid, net, mnt, user, uts, ipc), cgroups, seccomp profiles, and capabilities, as the baseline security boundaryEvaluate and operate gVisor and Firecracker for workloads requiring hard tenant boundaries and near-native performanceDesign and maintain Grafana dashboardsManage Prometheus and VictoriaMetrics pipelines; define and tune P1/P2/P3 alert thresholds with runbooksContribute to and extend the internal k6-based load testing framework (load-testing-framework / library/k6/webhooks)Design load scenarios using constant-arrival-rate profiles; instrument custom metrics (job_succeeded_count, job_failed_count) tagged by testid for Grafana correlation; stream test metrics to Prometheus via remote write; generate and publish HTML reports to file storage after each run
Requirements
5+ years of experience in infrastructure, SRE, or platform engineering rolesExpertise in distributed systems and cloud-native architecturesUnderstanding of Linux internals: namespaces, cgroups, seccomp, capabilities, and system-level performance tuningExperience operating infrastructure on AWS at scaleProficiency in Terraform and Kubernetes, including security hardening of manifestsExperience designing and running load tests (k6, Gatling, Locust, or similar)Understanding of network security and cloud security best practicesExcellent analytical, troubleshooting, and communication skillsProficiency in English at a B2+ level
Nice to have
Skills in Golang/Python for building internal toolingFamiliarity with Kafka, Redis, ClickHouse, or PostgreSQLFamiliarity with observability tools such as Grafana, Prometheus, or VictoriaMetricsKnowledge of encryption key hierarchies (CMK/DEK/KMS patterns) and HashiCorp VaultHands-on production experience with gVisor or FirecrackerPrior work extending or maintaining an internal testing frameworkContributions to or maintenance of open-source infrastructure projects
We offer
We connect like-minded people:Delivering innovative solutions to industry leaders, making a global impactEnjoyable working environment, whether it is the vibrant office or the comfort of your own homeOpportunity to work abroad for up to two months per yearRelocation opportunities within our offices in 55+ countriesCorporate and social eventsWe invest in your growth:Leadership development, career advising, soft skills and well-being programsCertifications, including GCP, Azure and AWSUnlimited access to EPAM's internal learning databaseFree English classes with certified teachersDiscounts in local language schools, including offline courses for the Uzbek languageWe cover it all:Monetary bonuses for engaging in the referral programMedical & family care packageFour trust days per year (sick leave without a medical certificate)Discounts for fitness clubs, dance schools and sports programsBenefits package (sports activities, a variety of stores and services)
EPAM is global leader in AI transformation engineering and integrated consulting, serving Forbes Global 2000 companies and ambitious startups.
With over thirty years of expertise in custom software, product and platform engineering, we empower our clients to become AI-Native enterprises, driving measurable value from innovation and digital investments.