2–5 years in DevOps, SRE, or Security Operations (or a combined role). This is a firm band — please don't send sub-2-year profiles, and flag anyone above 5 years rather than dropping them so we can decide.
MANDATORY (all required)
Hands-on with at least one major cloud provider — AWS strongly preferred (GCP / Azure acceptable)
Containers & orchestration — Docker and Kubernetes
CI/CD tooling — GitHub Actions, GitLab CI, Jenkins, ArgoCD, or similar
Scripting / automation — Python, Bash, or Go
Security exposure — at minimum IAM, secrets management, network security, or vulnerability / container scanning. Light ("SecOps-lite") exposure is acceptable; a complete absence of any security signal is a disqualifier.