An application made for this job — a tailored resume and cover letter that speak straight to the posting.
F5 Networks, Inc. is seeking a Principal Site Reliability Engineer to design, deploy, and operate the global platform infrastructure. You will own bare-metal provisioning, Proxmox clusters, container workloads, and CI/CD automation across a 24x7 global environment.
You will apply PCI-DSS aligned hardening and security tooling, manage Vault secrets, and coordinate with on-prem and cloud resources (AWS/Azure).
At F5, we strive to bring a better digital world to life. Our teams empower organizations across the globe to create, secure, and run applications that enhance how we experience our evolving digital world. We are passionate about cybersecurity, from protecting consumers from fraud to enabling companies to focus on innovation. Everything we do centers around people. That means we obsess over how to make the lives of our customers, and their customers, better. And it means we prioritize a diverse F5 community where each individual can thrive. F5 is bringing a better digital world to life by helping organizations create, secure, and run applications that power our lives. Within the Platform Engineering team, this role helps ensure our platform is operated safely, reliably, and with operational excellence. We’re looking for a Principal SRE who leads with kindness, operates well in a global, follow-the-sun environment, and brings strong execution, documentation, and cross-functional coordination skills. You will be responsible for designing, deploying, and operating the foundational infrastructure that underpins a large-scale, multi-datacenter platform spanning 30+ Points of Presence across the Americas, EMEA, and APAC. This is a hands‑on engineering role. You will own systems from bare metal to application layer – provisioning physical servers via out‑of‑band management, building and maintaining Proxmox‑based hypervisor clusters, managing containerized workloads, and driving automation across a heterogeneous on‑premises and cloud environment. You will operate within a PCI‑DSS compliant environment and be expected to contribute to hardening, audit readiness, and security tooling. You will join an on‑call rotation and be expected to respond to and lead incident resolution for production systems across a 24x7 global environment.
Author, maintain, and refactor Ansible playbooks and roles across a large-scale multi‑datacenter inventory, covering the full lifecycle from bare‑metal provisioning to application deployment Develop and improve CI/CD pipelines (GitLab CI) for infrastructure automation, including linting, testing, and staged rollout across regions Manage secrets lifecycle using HashiCorp Vault, including AppRole authentication, secret rotation, and PKI integration Maintain CMDB/IPAM accuracy in NetBox as a source of truth for all infrastructure assets
Deploy and manage Proxmox VE hypervisor clusters on bare‑metal HPE hardware, including cluster formation, OVS networking, ZFS storage, and VM replication Provision and lifecycle‑manage virtual machines using cloud‑init, QCOW2 images, and Proxmox API automation Manage physical server provisioning end‑to‑end via HPE iLO (firmware updates, SPP deployment, OS installation via virtual media)
Manage self‑hosted Kubernetes clusters on‑premises, including control plane operations, node provisioning, workload deployment, and upgrade management Operate Docker‑based workloads on infrastructure VMs using compose‑driven deployments and container health monitoring Maintain container image pipelines and registry infrastructure (Azure Container Registry or AWS ECR)
Engineer and maintain infrastructure on AWS and Azure, integrating cloud resources with on‑premises systems (DNS, monitoring, identity, networking) Apply cloud cost awareness, security best practices, and IaC principles (IAM, security groups, networking, storage) across AWS and Azure environments
Operate and troubleshoot core distributed services including authoritative DNS (BIND9), recursive DNS (Unbound), load balancing (HAProxy), and high‑availability VIPs (Keepalived/VRRP) Maintain directory services (OpenLDAP master‑replica topology) and AAA infrastructure (FreeRADIUS) used for SSH, VPN, and network device authentication Manage OVS‑based network configurations, VLAN topologies, and bonded NIC arrangements across hypervisor fleets
Maintain and extend monitoring infrastructure (Prometheus, Observium) across a global fleet including SNMP polling, metrics collection, and alerting Manage centralised log aggregation pipelines (Fluentbit) and ensure log delivery integrity across DCs Operate runtime security tooling (Falco) and file integrity monitoring (AIDE) in production environments Support PCI‑DSS compliance activities including CIS hardening, audit logging (auditd), and participation in control reviews
Participate in a 24x7 on‑call rotation, responding to and leading production incident resolution Conduct blameless post‑mortems and drive remediation of root causes through automation and system improvements Define and track SLOs/SLIs for critical infrastructure services Identify and address single points of failure; design and implement HA improvements
The Job Description is intended to be a general representation of the responsibilities and requirements of the job. However, the description may not be all-inclusive, and responsibilities and requirements are subject to change. Please note that F5 only contacts candidates through F5 email address (ending with @f5.com) or auto email notification from Workday (ending with f5.com or @myworkday.com).
It is the policy of F5 to provide equal employment opportunities to all employees and employment applicants without regard to unlawful considerations of race, religion, color, national origin, sex, sexual orientation, gender identity or expression, age, sensory, physical, or mental disability, marital status, veteran or military status, genetic information, or any other classification protected by applicable local, state, or federal laws. This policy applies to all aspects of employment, including, but not limited to, hiring, job assignment, compensation, promotion, benefits, training, discipline, and termination. F5 offers a variety of reasonable accommodations for candidates. Requesting an accommodation is completely voluntary. F5 will assess the need for accommodations in the application process separately from those that may be needed to perform the job. Request by contacting accommodations@f5.com.
Hybrid: Employees within 30 commutable miles of an F5 office are required to work from the office a minimum of 30 business days per quarter.
Remote: Primarily work from designated home location but can come into an F5 office to work or travel to an offsite location as needed.
Together, we’re building a better digital world. Founded in 1996, F5 is a global leader in application delivery and security. Our premier platform helps customers secure and deliver every app, API, and piece of infrastructure across all environments. Backed by over three decades of expertise and 553 patents, our solutions protect against threats while ensuring fast, reliable digital experiences. With over 6,400 employees, we serve more than 23,000 customers in over 170 countries. To continue this work, we need people like you—the best minds in the industry. We’re committed to a unique, human‑first culture that encourages authenticity, prioritizes diversity and inclusion, and fosters the growth and success of our employees.