Job Summary
At Astera Software, we’re building the next generation of data solutions that empower businesses worldwide. To accelerate our mission, we’re looking for a Cloud Infrastructure Consultant with deep expertise in Azure, Kubernetes, and .NET microservices to help us scale, optimize, and secure our cloud-native platforms. If you’re someone who thrives at the intersection of infrastructure, automation, and application performance, this role is for you.
What You\'ll Do
- Automate Azure AKS clusters and node pools with IaC (Helm, Bicep/Terraform, GitHub Actions).
- Build release pipelines, set up staging & automatic regression tests.
- Operate AKS at scale: HPA/KEDA + VPA tuning, node auto-provisioning, cost-driven rightsizing.
- Implement L7 routing with Application Gateway for Containers, AGIC, and Istio/Envoy session affinity.
- Harden clusters (RBAC, PodSecurity, Azure AD Workload Identities, Key Vault secret injection).
- Optimize .NET and gRPC workloads: GC heap limits, connection pooling, Service Bus batching, parallelism.
- Instrument everything: Prometheus + Grafana, Azure Monitor, custom metrics, alert rules tied to SLOs.
- Lead load tests, capacity planning, incident response, and post-mortems.
What You\'ll Need
- 5+ yrs building cloud-native solutions on Azure; deep AKS internals knowledge.
- Fluent with Kubernetes primitives, Helm templating, and advanced networking (CNI, network policies).
- Strong .NET Core microservices & messaging (Azure Service Bus/Event Hubs).
- Autoscaling expertise (HPA, KEDA ScaledObjects/ScaledJobs, queue-based throttling).
- Solid grasp of Envoy/Istio concepts, ingress controllers, DNS, TLS, and L4/L7 traffic shaping.
- PowerShell & Bash scripting; container build optimization with Docker BuildKit.
- CI/CD with GitHub Actions or Azure Pipelines, artifact promotion, and rollback strategies.
- Hands-on production experience managing mission-critical workloads and knowledge of multi-tenant SaaS design and scaling strategies would be a plus!
Typical stack
- Azure AKS
- Helm
- KEDA
- Prometheus/Grafana
- Application Gateway (AGIC)
- Istio/Envoy
- Azure SQL & Cosmos DB
- Service Bus
- .NET 8
- GitHub Actions
- Terraform/Bicep
- PowerShell