03 Oct
|
Beyond Key
|
Hyderabad
03 Oct
Beyond Key
Hyderabad
Role Summary
This role sits at the intersection of Platform and Data Engineering. You will be the primary custodian of our GCP environments, responsible for deploying, orchestrating, and securing not only our databases, but also the software systems and microservices that interface with them.
Additionally, you will serve as our core GCP administrator, owning the full lifecycle of our cloud footprint. This includes provisioning new GCP projects, defining organizational hierarchies, and establishing enterprise-grade security and permission boundaries.
This is a highly autonomous, self-managed role. We need an engineer who requires very little day-to-day management-someone who can architect infrastructure, write the necessary Terraform automation, secure the network perimeter, and safely deploy production-grade software services, data platforms, and secure multi-tenant GCP environments.
Key Responsibilities
GCP Tenant Administration, Software Service Deployment (Primary Focus)
- GCP Project Provisioning Landing Zones: Own the end-to-end provisioning and lifecycle management of all new GCP projects. Establish, automate, and document standard 'landing zones' (VPCs, Shared VPCs, logging buckets, and default security guardrails) for new application environments.
- Organization Hierarchy Governance: Manage the GCP Organization structure (Folders, Projects, Billing Account linkages) and implement Organization-level policies to prevent misconfiguration or unauthorized resource exposure.
- Infrastructure as Code (IaC): Own the end-to-end design, implementation, and management of Terraform configurations to provision and manage all GCP resources (Projects, Compute Engine, GKE, Cloud Run, VPCs, IAM, Cloud Storage, and data systems) in a repeatable and modular manner.
- Service Deployment Orchestration: Package, deploy, and manage containerized software services and systems. Optimize workload deployments using Google Kubernetes Engine (GKE), Cloud Run, or instance templates, ensuring robust health checking, service discovery, and logging.
- CI/CD Pipeline Automation:
Build and maintain automated deployment pipelines (GitHub Actions, Cloud Build, or similar) to support safe, zero-downtime rollouts of software services, infrastructure updates, and database schema migrations.
- Monitoring, Alerting Observability: Implement comprehensive observability dashboards (using GCP Operations Suite/Stackdriver, Prometheus, or Grafana) to monitor system performance, application logs, service health, and infrastructure costs.
Data Systems Engineering Security (Co-Focus)
- Multi-Region Data Management Global Compliance: As a worldwide organization, managing multi-region data architecture is a critical part of this role. You will architect, deploy, and maintain globally distributed databases while ensuring strict adherence to global security standards, data sovereignty laws, and regional data residency requirements.
- Identity Access Management (IAM) Security Governance: Enforce strict security boundaries across all projects, services, and data systems. Define, manage, and audit Google Group-based memberships, apply least-privilege IAM policies, configure service accounts, manage secret distribution (using GCP Secret Manager), and manage security policies (KMS encryption keys, VPC Service Controls).
- Database Provisioning Management: Plan, deploy, and configure high-performing databases across various paradigms to support our transactional and analytical workloads:
- Relational workloads in PostgreSQL.
- Highly scalable, low-latency NoSQL systems in GCP BigTable.
- Enterprise analytical data warehouse environments in GCP BigQuery.
- Database Performance Optimization: Manage schema migrations, create optimized table definitions, establish indexing/partitioning strategies,
and tune queries to ensure cost-effective performance at scale.
Self-Management Collaboration
- Autonomous Execution: Act as a self-directed engineering unit. Take broad product and architectural requirements, translate them into technical implementation plans, and execute deployments with minimal supervision.
- Technical Ownership: Maintain comprehensive documentation of GCP network topologies, service architecture, and database configurations. Establish disaster recovery (DR) plans and perform root-cause analysis on system or service failures.
Skills Experience
Required:
- Work Experience: 5+ years of experience in DevOps, Site Reliability Engineering (SRE), Platform Engineering, or Data Infrastructure Engineering with a strong focus on cloud service deployment.
- GCP Cloud Ecosystem Administration: Extensive experience deploying and managing production software services and environments in Google Cloud Platform (GCP). Proven experience handling GCP Organization-level administration, folder structures, project billing setups, and resource hierarchy management.
- Identity Access Control: Deep expertise with GCP IAM (Identity Access Management), Service Accounts, workload identity federation, and defining complex permission policies.
- Infrastructure as Code (IaC): Expert-level proficiency writing clean, modular, and plan-safe Terraform configurations to manage entire cloud footprints (including project creation and IAM policies via Terraform).
- Containers Orchestration: Strong experience deploying application services using Docker and orchestrating them via Google Kubernetes Engine (GKE) or Cloud Run.
- Data Systems Deployment: Hands-on experience configuring, scaling, and securing:
- Postgres (operational/transactional environments).
Disclaimer: This job posting has been aggregated from external source. Role details, content, and availability are subject to change. Applicants are advised to confirm the latest information directly on the company website before applying.
📌 Services & Data Infrastructure Engineer (Hyderabad)
🏢 Beyond Key
📍 Hyderabad