Cloud Security Engineer - Kubernetes (Data Center) (Noida)

Cloud Security Engineer - Kubernetes (Data Center) (Noida)

19 Sep
|
Markzin
|
Noida

19 Sep

Markzin

Noida

Job Details

We build, own and operate our own private cloud across our own datacenters, from the fabric up, and you would own the network underneath it. That means Anycast and BGP you design rather than raise a ticket for, and Kubernetes networking at the CNI layer rather than at the console.

What you would own

- Kubernetes networking at the CNI layer. Cilium and the eBPF datapath, network policy, and how pod networking meets the physical fabric.
- This is the part mostnetwork engineers never get near, and it is central to this role rather than adjacent to it.The routed core. BGP design and Anycast deployment across our datacenters, including how traffic is steered between sites and how it fails over when one goes away.
- The perimeter. Firewalls, IDS and IPS, site-to-site connectivity, ISP relationships and WAN resilience.
- The switching estate. Multi-vendor across Cisco Nexus and Catalyst, Aruba and Ruckus, in both enterprise and datacenter contexts.
- Hybrid connectivity into Azure, and the design decisions about what stays on our own hardware and what does not.
- The standard the network is run to. Documentation, topology, change discipline, and the resiliency and security hardening roadmap. You set it, rather than following it.

What we need you to have done
- Kubernetes networking is a hard requirement for this role. You need hands-on production experience with a (CNI or Cilium or Calico)



and you should be able to walk us through how a packet reaches a pod and how you debugged it when it did not.
- Certification without production experience does not meet this bar. If you have notworked at the CNI layer, this is not the right role for you, and we would rather say so here than at interview.
- Hands-on Kubernetes networking with (CNI or Cilium or Calico) in production. Network policy, the datapath, and the boundary between pod networking and the physical fabric.
- 8+ years in network engineering, with real depth in routing and switching across both enterprise and datacenter environments.
- BGP in production, and Anycast you have designed or operated. Not familiarity. Design decisions you made and can defend.
- Firewalls, IDS and IPS, and perimeter design.Barracuda and ASA or FTD are what we run.
- Multi-vendor switching. Cisco Nexus and Catalyst, Aruba, Ruckus.
- Azure networking: VNets, VPN gateways, hybrid connectivity. AWS or GCP a plus.
- Monitoring and root cause analysis in complex environments, with tools such as SolarWinds or Grafana, including the ability to prove where a fault is rather than where it is not.
- CCNP or equivalent depth. The certificate matters less than being able to walk us through a failure you diagnosed.
- Two or more DR implementations you took part in, including the testing.

Pay: ₹297,188.13 per month

Work Location: In person

📌 Cloud Security Engineer - Kubernetes (Data Center) (Noida)
🏢 Markzin
📍 Noida

Reply to this offer

Impress this employer describing Your skills and abilities, fill out the form below and leave Your personal touch in the presentation letter.

Subscribe to this job alert:

Get the latest job offers by email for: cloud security engineer - kubernetes (data center) (noida) / noida

Subscribe to this job alert:

Get the latest job offers by email for: cloud security engineer - kubernetes (data center) (noida) / noida