Senior Infrastructure Engineer

Epam Systems — Kazakhstan · Posted ~3 hours ago

Senior Full-time Remote

Skills

cloud infrastructure Linux internals distributed systems workload isolation cloud security AWS Terraform Kubernetes incident response performance analysis Linux Distributed Systems Cloud Infrastructure Network Policies Autoscaling

🔓 Log in to save this job, tailor your resume & track your apply process — 7 days free, no card needed.

Log in to add to target list

Summary ✨ AI‑Generated

A global technology organization is seeking a Senior Infrastructure Engineer to design, build, and operate resilient cloud infrastructure at large scale. You will work deeply with Linux internals, distributed systems, workload isolation, security, AWS, Terraform, and Kubernetes while contributing to architecture reviews, incident response, and performance analysis. The role supports remote work for candidates residing and working within the specified country.

Highlights

Senior infrastructure role focused on global-scale, resilient cloud platforms with remote work available within the country. The position offers deep technical ownership across AWS, Kubernetes, Terraform, Linux, distributed systems, security, incident response, and performance engineering.

Description

We are seeking a Senior Infrastructure Engineer with deep experience in cloud infrastructure, Linux internals, large-scale distributed systems, workload isolation, and a strong security mindset to join our team and help design, build, and operate a global, resilient platform. Unlock the potential of remote work in Kazakhstan, giving you the flexibility to work from home or access our offices in Astana, Almaty or Karaganda. Responsibilities Design, build, and maintain a global, distributed, and resilient cloud infrastructureCollaborate with infrastructure and product engineering teams to plan and deliver complex platform initiativesParticipate in architecture reviews, incident response, and performance analysis to ensure system reliabilityManage and provision AWS infrastructure using Terraform and KubernetesWrite and maintain Kubernetes manifests and deployment configurations for critical workloads, including pod security contexts, anti-affinity rules, network policies, autoscaling, and health probesDrive Production Readiness Reviews (PRR) for all new services, covering security, HA, performance, and observability gatesDesign and operate multi-layer workload isolation using Linux kernel primitives: namespaces (pid, net, mnt, user, uts, ipc), cgroups, seccomp profiles, and capabilities, as the baseline security boundaryEvaluate and operate gVisor and Firecracker for workloads requiring hard tenant boundaries and near-native performanceDesign and maintain Grafana dashboardsManage Prometheus and VictoriaMetrics pipelines; define and tune P1/P2/P3 alert thresholds with runbooksContribute to and extend the internal k6-based load testing framework (load-testing-framework / library/k6/webhooks)Design load scenarios using constant-arrival-rate profiles; instrument custom metrics (job_succeeded_count, job_failed_count) tagged by testid for Grafana correlation; stream test metrics to Prometheus via remote write; generate and publish HTML reports to file storage after each run Requirements 5+ years of experience in infrastructure, SRE, or platform engineering rolesExpertise in distributed systems and cloud-native architecturesUnderstanding of Linux internals: namespaces, cgroups, seccomp, capabilities, and system-level performance tuningExperience operating infrastructure on AWS at scaleProficiency in Terraform and Kubernetes, including security hardening of manifestsExperience designing and running load tests (k6, Gatling, Locust, or similar)Understanding of network security and cloud security best practicesExcellent analytical, troubleshooting, and communication skillsProficiency in English at a B2+ level Nice to have Skills in Golang/Python for building internal toolingFamiliarity with Kafka, Redis, ClickHouse, or PostgreSQLFamiliarity with observability tools such as Grafana, Prometheus, or VictoriaMetricsKnowledge of encryption key hierarchies (CMK/DEK/KMS patterns) and HashiCorp VaultHands-on production experience with gVisor or FirecrackerPrior work extending or maintaining an internal testing frameworkContributions to or maintenance of open-source infrastructure projects We offer We connect like-minded people:Delivering innovative solutions to industry leaders, making a global impactEnjoyable working environment, whether it is the vibrant office or the comfort of your own homeOpportunity to work abroad for up to two months per yearRelocation opportunities within our offices in 55+ countriesCorporate and social eventsWe invest in your growth:Leadership development, career advising, soft skills and well-being programsCertifications, including GCP, Azure and AWSUnlimited access to EPAM's internal learning databaseFree English classes with certified teachersDiscounts in local language schools, including online courses for the Kazakh languageWe cover it all:Participation in the Employee Stock Purchase PlanMonetary bonuses for engaging in the referral programMedical & family care packageSix trust days per year (sick leave without a medical certificate)Coverage of psychology sessions of your choiceBenefits package (sports activities, a variety of stores and services)Housing support program: preferential mortgage access via Otbasy Bank partnership EPAM is global leader in AI transformation engineering and integrated consulting, serving Forbes Global 2000 companies and ambitious startups. With over thirty years of expertise in custom software, product and platform engineering, we empower our clients to become AI-Native enterprises, driving measurable value from innovation and digital investments.