Senior Infrastructure Engineer

Epam Systems — Armenia · Posted ~5 hours ago

Senior Remote

Skills

Cloud infrastructure Linux internals Large-scale distributed systems Workload isolation Infrastructure security AWS Terraform Kubernetes Incident response Performance analysis Linux

🔓 Log in to save this job, tailor your resume & track your apply process — 7 days free, no card needed.

Log in to add to target list

Summary ✨ AI‑Generated

A global technology team is seeking a Senior Infrastructure Engineer to design, build, and operate resilient distributed cloud infrastructure. You will work with Linux internals, workload isolation, security, AWS, Terraform, and Kubernetes while participating in architecture reviews, incident response, and performance optimization. The position is fully remote within Armenia.

Highlights

Fully remote role within Armenia with flexibility to work from home or equipped offices. The position offers ownership of global, resilient cloud infrastructure, exposure to large-scale distributed systems, and work across architecture, reliability, security, and performance.

Description

We are seeking a Senior Infrastructure Engineer with deep experience in cloud infrastructure, Linux internals, large-scale distributed systems, workload isolation, and a strong security mindset to join our team and help design, build, and operate a global, resilient platform. This is a fully remote position that offers you the flexibility to work from any location in Armenia, whether it's your home or well-equipped offices in Yerevan or Gyumri. Responsibilities Design, build, and maintain a global, distributed, and resilient cloud infrastructureCollaborate with infrastructure and product engineering teams to plan and deliver complex platform initiativesParticipate in architecture reviews, incident response, and performance analysis to ensure system reliabilityManage and provision AWS infrastructure using Terraform and KubernetesWrite and maintain Kubernetes manifests and deployment configurations for critical workloads, including pod security contexts, anti-affinity rules, network policies, autoscaling, and health probesDrive Production Readiness Reviews (PRR) for all new services, covering security, HA, performance, and observability gatesDesign and operate multi-layer workload isolation using Linux kernel primitives: namespaces (pid, net, mnt, user, uts, ipc), cgroups, seccomp profiles, and capabilities, as the baseline security boundaryEvaluate and operate gVisor and Firecracker for workloads requiring hard tenant boundaries and near-native performanceDesign and maintain Grafana dashboardsManage Prometheus and VictoriaMetrics pipelines; define and tune P1/P2/P3 alert thresholds with runbooksContribute to and extend the internal k6-based load testing framework (load-testing-framework / library/k6/webhooks)Design load scenarios using constant-arrival-rate profiles; instrument custom metrics (job_succeeded_count, job_failed_count) tagged by testid for Grafana correlation; stream test metrics to Prometheus via remote write; generate and publish HTML reports to file storage after each run Requirements 5+ years of experience in infrastructure, SRE, or platform engineering rolesExpertise in distributed systems and cloud-native architecturesUnderstanding of Linux internals: namespaces, cgroups, seccomp, capabilities, and system-level performance tuningExperience operating infrastructure on AWS at scaleProficiency in Terraform and Kubernetes, including security hardening of manifestsExperience designing and running load tests (k6, Gatling, Locust, or similar)Understanding of network security and cloud security best practicesExcellent analytical, troubleshooting, and communication skillsProficiency in English at a B2+ level Nice to have Skills in Golang/Python for building internal toolingFamiliarity with Kafka, Redis, ClickHouse, or PostgreSQLFamiliarity with observability tools such as Grafana, Prometheus, or VictoriaMetricsKnowledge of encryption key hierarchies (CMK/DEK/KMS patterns) and HashiCorp VaultHands-on production experience with gVisor or FirecrackerPrior work extending or maintaining an internal testing frameworkContributions to or maintenance of open-source infrastructure projects We offer We connect like-minded peopleDelivering innovative solutions to industry leaders, making a global impactEnjoyable working environment, whether it is the vibrant office or the comfort of your homeOpportunity to work abroad for up to two months per yearRelocation opportunities within our offices in 55+ countriesCorporate and social eventsWe invest in your growthLeadership development, career advising, soft skills and well-being programsCertifications, including GCP, Azure and AWSUnlimited access to EPAM's internal learning databaseFree English classes with certified teachersWe cover it allParticipation in the Employee Stock Purchase PlanMonetary bonuses for engaging in the referral programComprehensive medical & family care packageFour trust days per year for personal needsDiscounts for fitness clubsBenefits package (hotels, restaurants, stores and services) EPAM is global leader in AI transformation engineering and integrated consulting, serving Forbes Global 2000 companies and ambitious startups. With over thirty years of expertise in custom software, product and platform engineering, we empower our clients to become AI-Native enterprises, driving measurable value from innovation and digital investments.