02 Oct
|
San Data
|
Delhi
Role & responsibilities :
- Seasoned OpenShift Solution Architect with 7+ years delivering enterprise-grade container platform solutions across banking, insurance, and capital markets environments covering full lifecycle from architecture through to production operations and regulatory sign-off.
- Deep hands-on expertise in OpenShift 4.x cluster design and deployment — bare metal, VMware, and hybrid cloud — including fully disconnected/air-gapped environments with strict network perimeter controls aligned to financial institution security policies.
- Proven experience designing and implementing OpenShift security architectures for regulated environments — RBAC models, Security Context Constraints, Network Policy segmentation, and platform hardening aligned to CIS Benchmark, DISA STIG, MAS TRM, and PCI-DSS control frameworks.
- Hands-on experience with Red Hat Advanced Cluster Security (ACS) — container vulnerability management, CVE triage and remediation workflows, runtime threat detection, and compliance policy enforcement across production workloads in regulated environments.
- Robust background in solution certification and governance — defining acceptance criteria, executing validation test plans, producing certification evidence packages, and supporting internal audit and regulatory compliance activities with architecture documentation and control mapping.
- Experienced in designing enterprise RBAC models for large multi-team financial institution environments — cluster roles, project-level access, service account governance, and least-privilege policy design aligned to segregation of duties requirements.
- Hands-on experience with Red Hat Advanced Cluster Management (ACM)
— multi-cluster fleet governance, policy controller enforcement, placement strategies, and cluster lifecycle management across production, non-production, and DR environments.
- Expertise in application migration for financial workloads — leading legacy application portfolio assessments using Migration Toolkit for Applications (MTA), migration wave planning, risk assessment, and workload migration execution using Migration Toolkit for Containers (MTC).
- Delivered OpenShift Service Mesh (Maistra/Istio) implementations for microservices architectures in financial services — mTLS enforcement, traffic management, AuthorizationPolicy for API security, and observability with Kiali, Jaeger, and Prometheus.
- Proficient in Operator Lifecycle Management — designing operator deployment and upgrade strategies for air-gapped environments, managing CatalogSources and InstallPlans, and troubleshooting operator upgrade failures in production financial institution clusters.
- Strong platform automation background — Python-based automation using Kubernetes and OpenShift API clients for CVE reporting, compliance checks, and operational workflows; Ansible Automation Platform for cluster provisioning and day-2 configuration; GitOps with ArgoCD for platform and application configuration management.
- Experienced integrating OpenShift platform automation with enterprise ITSM and change management platforms — ServiceNow— enabling self-service provisioning and automated change workflows aligned to financial institution change advisory board processes.
- Proven ability to engage at CISO, and platform architecture level — translating complex technical platform and security design decisions into clear business and risk language for executive stakeholders, steering committees, and regulatory audiences.
- Track record of producing high-quality architecture deliverables for financial institution customers — HLD, LLD, security architecture documents, platform runbooks, operational governance frameworks, and executive findings reports suitable for internal audit and regulatory review.
- Strong platform automation engineering background — proficient in Python for OpenShift and Kubernetes API-driven automation using official kubernetes, openshift-client, and requests libraries; builds CVE reporting pipelines, compliance check frameworks, cluster health dashboards, and operational tooling. Proficient in Go for developing lightweight Kubernetes controllers, custom operators, and CLI tooling using controller-runtime, client-go, and cobra — enabling bespoke automation solutions where off-the-shelf tooling does not meet financial institution requirements.
- Red Hat Certified Architect (RHCA) with additional certifications in OpenShift Administration, Advanced Cluster Security, and Kubernetes — complemented by a strong understanding of financial sector regulatory frameworks including MAS TRM, PCI-DSS.
📌 OpenShift Solution Architect (Delhi)
🏢 San Data
📍 Delhi