Ciklum is looking for a Senior DevOps Engineer to join our team full-time in Argentina.
We are a custom product engineering company that supports both multinational organizations and scaling startups to solve their most complex business challenges. With a global team of over 4,000 highly skilled developers, consultants, analysts and product owners, we engineer technology that redefines industries and shapes the way people live.
About the role:
As a Senior DevOps Engineer, become a part of a cross-functional development team engineering experiences of tomorrow. Our client is building a platform engineering function from the ground up and this role is at the center of it. As a SeniorDevOps Engineer you will be a founding team member with a clear, three-part mission: fully rearchitect and codify ourcloud estate on AWS and Azure, stand up a world-class SRE and observability practice, and build an Internal DeveloperPlatform with golden paths that make shipping software fast, safe, and self-service.This is a high-ownership individual contributor role. You will work directly with the Platform Engineering Manager totranslate strategy into production infrastructure, drive adoption across engineering teams, and set the technical barfor how the platform is built and operated.
Responsibilities:
- Migrate all existing AWS and Azure infrastructure to OpenTofu/Terraform and Ansible; establish module standards, remote state, and GitOps-based plan/apply pipelines — no unmanaged resources
- Audit the cloud estate against the AWS and Azure Well-Architected Frameworks; produce a remediation backlogand drive it to completion across networking, IAM, landing zones, account structure, and cost governance
- Implement policy-as-code (OPA/Conftest, AWS SCPs, Azure Policy) to enforce security, tagging, and complianceguardrails at the platform layer — governance embedded, not bolted on
- Build and maintain reusable Terraform modules for compute (EKS, AKS, EC2), networking, storage, databases, andidentity as shared building blocks for all engineering teams
- Define FinOps standards: tagging taxonomy, cost allocation dashboards, rightsizing recommendations, and reservedcapacity planning across both clouds
- SRE & Observability:
- Design and implement the full observability stack: metrics (Prometheus/Datadog), logs (Loki/OpenSearch), traces(Tempo/Datadog APM), and dashboards (Grafana) — instrumented end-to-end via OpenTelemetry
- Define SLIs and SLOs for all platform shared services and critical applications; build error budget dashboards andburn-rate alerting — alert on symptoms, not raw metrics
- Establish the SRE practice from scratch: incident runbooks, post-incident review templates, and at least one chaosengineering exercise (AWS FIS or equivalent)
- Partner with engineering teams to instrument their services, define meaningful alerts, and build operationaldashboards — reliability is a shared responsibility, not a platform team tax
- Build capacity planning models for compute and storage so engineering leadership can make data-driven scalingdecisions
- Deploy and operate a developer portal (Backstage, GitHub or equivalent) as the single front door: service catalog,scaffolding templates, runbooks, API docs, and on-call ownership all in one place
- Build and maintain golden paths for the highest-frequency developer workflows: new service creation, Kubernetesdeployment, database provisioning, secrets management, and CI/CD pipeline setup - opinionated defaults withescape hatches for legitimate edge cases
- Own the CI/CD platform layer: standardized pipeline templates (GitHub Actions, GitLab CI), reusable workflowlibraries, container image build and scan pipelines, and environment promotion workflows with security scanning(SAST, Snyk) built in by default
- Own Kubernetes platform operations: EKS and/or AKS cluster lifecycle, Helm chart standards, admission controllers,RBAC, network policies, and service mesh (Istio or Linkerd)
- Build the self-service provisioning layer — Backstage scaffolder actions and Terraform automation so developerscan provision approved resources without raising a ticket
- Measure adoption and run regular feedback sessions with engineering teams; iterate on golden paths based on realfriction, not assumptions
- Cross-Cutting Responsibilities:
- Partner with peer managers and teams to plan and support migration of existing workloads onto the platform;provide hands-on migration support, not just documentation
- Embed security by default across all platform work: IaC scanning (Checkov, tfsec), secrets management (Vault,AWS Secrets Manager, Azure Key Vault), RBAC, and container image hardening
- Write clear technical documentation, architecture decision records (ADRs), and runbooks; raise the documentationbar for the whole team
- Mentor and support more junior platform engineers; contribute to architecture reviews and build-vs-buy decisionsalongside the Platform Engineering Manager
Requirements:
- 5+ years in platform, infrastructure, or DevOps engineering with direct production ownership on AWSand/or Azure
- IaC: Deep OpenTofu/Terraform proficiency: module authoring, state management, workspace strategy, remotebackends, and CI/CD integration; Terramate a plus
- Kubernetes: Strong Kubernetes operations: EKS and/or AKS cluster lifecycle, Helm, admission controllers, RBAC,network policies, and autoscaling
- Observability & SRE: Hands-on observability experience with two or more of: Prometheus, Grafana, Loki, Tempo,Datadog, or OpenTelemetry — including SLI/SLO definition and alert engineering
- CI/CD: CI/CD platform experience: GitHub Actions pipeline authoring, reusable workflow design, and containerbuild/scan pipeline ownership
- GitOps: GitOps: ArgoCD or Flux for Kubernetes continuous delivery; progressive delivery patterns (canary, blue-green) a strong plus
- IDP: IDP experience: Backstage or equivalent developer portal, GitHub, scaffolding templates, service catalogdesign, or self-service provisioning tooling
- Security: Security-first mindset: policy-as-code, IaC scanning, secrets management, container hardening, and shift-left security practices
- Strong communication and documentation skills; comfortable presenting architecture decisions to engineeringpeers and leadership
- SRE background: chaos engineering (AWS FIS, Chaos Monkey), error budget management, incident command, andcapacity planning
- Service mesh depth: Istio or Linkerd — mTLS, traffic management, and observability integration
- FinOps tooling (Kubecost, CloudHealth) and reserved capacity planning experience
- Familiarity with AI/ML infrastructure basics: LLM API integration or model serving, as the platform will need tosupport these workloads
- Certifications: AWS Solutions Architect Associate/Professional, CKA/CKAD, Azure Administrator/SolutionsArchitect, HashiCorp Terraform Associate
- Python or Go for platform tooling and CLI development
What’s in it for you?
Care: your mental and physical health is our priority. We ensure comprehensive company-paid medical insurance and mental health programs, 5 undocumented sick-leave days per year
Tailored education path: boost your skills and knowledge with our regular internal events (meetups, conferences, workshops), Udemy license, language courses and company-paid certifications
Growth environment: share your experience and level up your expertise with a community of skilled professionals, locally and globally
Long-term employment with 20 working-days paid vacation and local bank holidays
Opportunities: we value our specialists and always find the best options for them. Our Internal Mobility Program helps change a project if needed to help you grow, excel professionally and fulfill your potential
Global impact: work on large-scale projects that redefine industries with international and fast-growing clients
Welcoming environment: feel empowered with a friendly team, open-door policy, informal atmosphere within the company and regular team-building events
About us:
At Ciklum, we are always exploring innovations, empowering each other to achieve more, and engineering solutions that matter. With us, you’ll work with cutting-edge technologies, contribute to impactful projects, and be part of a One Team culture that values collaboration and progress.
As we expand into Latin America, every Ciklumer is helping to shape our story. Collaborate with seasoned experts and make a global impact backed by two decades of industry leadership.
Explore, empower, engineer with Ciklum!