Staff SRE Engineer
Bengaluru, India
Hybrid Set-up
Role Overview :
- We're looking for a Cloud Reliability Engineer to reimagine how we deliver secure, enterprise-ready CIAM solutions. You'll shape the foundation of our commercial SaaS platform by designing infrastructure that transcends cloud boundaries while maintaining the thoughtfulness of a security-first mindset.
- This role is for engineers who see vendor lock-in as an architectural challenge to solve, not an inevitability. You'll lead the complete lifecycle of our deployment systems – from creating cloud-agnostic pipelines to implementing tenant isolation patterns worthy of a Zero Trust product.
The ideal candidate should have 5+ years production experience and be able to perform the following :
Liberate our platform from cloud-specific dependencies without sacrificing velocityEmbed security observability into every layer of the deployment processEmpower developers to ship multi-cloud compatible services by defaultTransform internal tools into marketable SaaS capabilitiesMulti-cloud Kubernetes (AKS / EKS / GKE + Rancher / KubeSpray)Pipeline abstraction tools (Dagger, Earthly, Tekton)Secret zero patterns (SPIRE / SPIFFE / Vault)Migrating vendor-locked systems to OSS equivalentsBuilding commercial SaaS from internal platformsImplementing policy-as-code for tenant isolationService meshes (Linkerd / Istio) for multi-tenant networkingCloud cost attribution across tenantsOCI-compliant artifact registriesThe candidate should also be able to demonstrate the following :
Eliminate Cloud Lock-in :
Redesign current Azure App Services implementation into vendor-agnostic architectureImplement CNCF standards for portable multi-cloud deployments (Crossplane, KCP, Cluster API)Future-Proof CI / CD Foundation :
Build Dagger-based pipelines with OCI artifact compatibilityDesign self-contained workflows executable on any compute (GitHub Actions / Azure DevOps / GitLab)Tenant-Aware Platform Engineering :
Create isolated tenant provisioning system using Cloud Native Building BlocksImplement zero-trust networking for multi-customer deploymentsAdditional Responsibilities :
Replace app service dependencies with Kubernetes operatorsDesign using cloud-portable services :Backstage for developer portalOpenFGA for relationship-based access controlNATS / JetStream for cloud-agnostic messagingConvert existing workflows to Dagger modules with CUE unificationCreate pipeline execution environments supporting :Air-gapped deploymentsHybrid cloud testing matricesWASM-based testing toolsBuild multi-tenant control plane with :Capsule for namespace isolationVcluster for tenant-specific control planesParalus for zero-trust accessOCI-compliant artifact registries