Role highlights:
Role: Forward Deployed Backend/DevOps Engineer
Location: Portugal (Lisbon)
Reports to : VP, Forward Deployed Engineering
Working type: Hybrid (On-site at customer locations approx. 50% of time)
Must be eligible and able to attain relevant national and NATO security clearances.
Must be based in-country and native level speaker of the country you're deploying to.
Why this role matters
In this role, you are the backend and infrastructure backbone defence and intelligence customers rely on. You deploy ICEYE's intelligence platform into secure (often air-gapped) environments and design the high-performance backend systems that move satellite data at scale - fast APIs, resilient services, tuned databases, automated infrastructure. Our stack: Python and Go services on Kubernetes, PostgreSQL and MongoDB, Terraform and Ansible, CI/CD pipelines that also run offline, cloud (AWS) and on-premises air-gapped clusters, with AI-assisted development as the default.
This is a ship-daily role: systems you build run mission-critical workloads analysts use to protect nations.
What you'll own
Platform deployment & operations
- Deploy ICEYE's intelligence platform into customer secure environments (on-premise, air-gapped networks, classified data centres).
- Install, upgrade and operate Kubernetes clusters and containerised applications (Docker) in customer environments - cloud and on-premises.
- Build infrastructure-as-code (Terraform, Ansible) and CI/CD pipelines that work without external internet access, including offline registries and artifact mirroring.
- Troubleshoot deployment and production issues in disconnected environments, from the application layer down to storage and networking.
High-performance backend systems
- Design and build APIs, services and data pipelines that handle large volumes of SAR imagery and intelligence data with low latency.
- Connect ICEYE systems to customer C4ISR infrastructure and intelligence tools through robust, well-designed integrations.
- Own database design and performance at production scale (PostgreSQL, MongoDB): schemas, indexing, tuning, replication and backup.
- Apply caching, queueing and horizontal scaling patterns deliberately - and capacity-plan for fixed on-premises hardware where you cannot simply scale out.
Reliability, security & observability
- Build monitoring, logging and alerting that work in restricted environments, so problems are found before the customer finds them.
- Harden deployments to meet customer security constraints; own backup, recovery and upgrade paths for systems that cannot go down.
- Run the infrastructure behind AI workloads shipped by the team - model serving, vector databases, GPU nodes - reliably and repeatably.
Customer engagement & rapid delivery
- Work embedded with intelligence analysts, operators and customer IT teams to understand operational and infrastructure requirements.
- Rapidly prototype and iterate (working systems first, polish later) to address immediate operational needs.
- Conduct hands‑on training for customer administrators on platform operations.
- Feed deployment experience back to ICEYE's product and engineering teams as concrete technical requirements.
What we’re looking for
Must-haves
- 5+ years hands‑on backend engineering building and operating production systems at scale.
- Strong programming skills in Python. You write typed, tested services and you are comfortable with async APIs. TypeScript is a plus.
- Proven experience designing high-performance backend systems: APIs, distributed services, messaging, caching and databases under real load. Experience with spatial, search, or vector workloads in Postgres is a plus.
- Production experience in both cloud (e.g.AWS) and on‑prem environments - this role live in both.
- Deep Docker and Kubernetes : deploy then debug and upgrade clusters not only consume ing . git‑? .
- Observability as a habit: metrics, logs, and alerts are part of done.
- Observability as a habit: metrics, logging and alerting are part of done, not an afterthought.
- Builder mindset: ship fast, iterate with feedback, and prioritise working solutions over perfect architecture.
- Strong communication and customer engagement, able to work embedded with intelligence analysts / military operators.
- Strong spoken and written English, able to explain technical concepts to non-technical stakeholders.
- Willingness to travel 40-60% to customer sites within the region.
Nice to have
- Experience in defence, intelligence, or government operational environments.
- Deploying to on-prem data centres and/or air-gapped networks, including offline artifact and registry managem.