About the Company
Elfonze Technologies is a rapidly growing IT services firm that partners with enterprises to deliver scalable, secure, and high-performance technology solutions. The company is recognized for its deep expertise in cloud architecture, platform engineering, and digital transformation, helping global businesses modernize their infrastructure and accelerate innovation. Elfonze fosters a collaborative, fast-paced environment where engineers are empowered to take ownership of critical systems and drive meaningful impact.
Role Overview
We are looking for a strong, hands-on, highly motivated Senior DevOps Engineer to design, build, secure, and operate the cloud platform that powers the Service Layer (SL-QTC) ecosystem supporting Quote-to-Cash (QTC), customer lifecycle, and enterprise integration workloads.
In this role, you will be responsible for architecting and maintaining a cloud-native, event-driven platform based on AWS, Kafka/MSK, serverless technologies, databases, observability platforms, and DevSecOps toolchains. You will work closely with Engineering, Architecture, Security, and Product teams to ensure the platform is reliable, scalable, secure, cost-efficient, and operationally resilient.
The ideal candidate combines strong expertise in AWS, Infrastructure-as-Code, CI/CD, networking, cloud security, observability, and platform engineering with experience supporting mission-critical distributed systems at scale.
Key Responsibilities
- Design, build, and maintain AWS cloud infrastructure supporting highly available event-driven workloads based on Kafka, serverless services, databases, APIs, and enterprise integrations.
- Design and implement Infrastructure-as-Code (IaC) solutions using Terraform and automation frameworks to enable repeatable, scalable, and secure platform provisioning.
- Build and maintain secure CI/CD pipelines, deployment automation, release strategies, automated testing, and environment management practices.
- Design, implement, and manage AWS networking architecture, including VPCs, subnets, route tables, NAT Gateways, Transit Gateway, PrivateLink, security groups, and hybrid connectivity.
- Manage application ingress, traffic routing, and content delivery using Route53, API Gateway, Application Load Balancers (ALB), Network Load Balancers (NLB), and CloudFront.
- Implement and maintain cloud security controls using AWS WAF, AWS Shield, IAM, encryption, secrets management, vulnerability management, audit logging, and compliance frameworks.
- Configure and support enterprise identity and access management integrations using Microsoft Entra ID (Azure AD), SAML, OAuth2, OpenID Connect (OIDC), and Single Sign-On (SSO).
- Implement and manage observability solutions, including monitoring, centralized logging, tracing, alerting, dashboarding, and operational analytics.
- Support Kafka/MSK platform operations, including topic management, access controls, capacity planning, monitoring, scaling, and disaster recovery.
- Partner with Engineering teams to improve platform reliability, scalability, security, performance, and operational supportability.
- Drive DevSecOps practices through integration of security scanning, policy enforcement, infrastructure validation, container security, dependency management, and compliance checks within CI/CD pipelines.
- Perform platform performance tuning, capacity planning, backup and recovery validation, disaster recovery testing, and business continuity readiness activities.
- Drive FinOps initiatives by monitoring cloud consumption, optimizing resource utilization, improving cost efficiency, and implementing governance controls.
- Troubleshoot production issues, perform root cause analysis, and drive corrective and preventive actions for business-critical systems.
- Contribute to platform standards, operational runbooks, automation initiatives, engineering best practices, and continuous improvement programs.
Tech Stack
- Cloud Platform: AWS (Lambda, API Gateway, EC2, EKS/ECS, S3, RDS/Aurora PostgreSQL, DynamoDB, SQS, SNS, EventBridge, IAM, CloudWatch, VPC)
- Networking: VPC, subnets, route tables, NAT Gateways, Transit Gateway, PrivateLink, Route53, VPN, ALB, NLB, CloudFront, AWS WAF, AWS Shield
- Infrastructure as Code: Terraform
- CI/CD & DevSecOps: GitLab CI, Jenkins, GitHub Actions
- Event-Driven / Messaging: Kafka, AWS MSK, RabbitMQ
- Container & Orchestration: Docker, Kubernetes, EKS
- Observability: CloudWatch, Grafana, Datadog, Prometheus, OpenTelemetry, ClickHouse
- Identity & Security: IAM, RBAC, OAuth2, OpenID Connect (OIDC), SAML, SSO, Microsoft Entra ID
- Scripting & Automation: Python, Bash, PowerShell
- Databases: RDS/Aurora PostgreSQL, DynamoDB
Qualifications
- Bachelor's degree in Computer Science, Engineering, Information Technology, or related discipline.
- 7+ years of experience in DevOps, Platform Engineering, or Cloud Infrastructure roles.
- 4+ years of hands-on experience designing and operating AWS-based cloud platforms.
- Experience supporting highly available, secure, and scalable distributed systems in production environments.
- Experience working in Agile delivery environments with cross-functional engineering teams.
Nice to Have
- AWS Certified DevOps Engineer Professional, AWS Solutions Architect, AWS Security Specialty, Kubernetes (CKA/CKAD), or equivalent certifications.
- Experience implementing SRE practices, SLIs, SLOs, error budgets, and operational excellence frameworks.
- Experience with FinOps and cloud cost optimization practices.
- Experience with multi-account AWS governance, Control Tower, landing zones, and enterprise cloud operating models.