A complete application in a minute — tailored resume and cover letter, ready to send.
Garnaut Global seeks a senior engineer to own the operational layer of a fast-moving research and technology environment. You will run and harden the platform, reporting to the CTO, with room to develop further.
You will work with software engineers to maintain a modern stack: Linux, macOS endpoints, AWS, Cloudflare, and ZTNA, and you will lead DevSecOps—CI/CD, secrets management, IdAM, and overall security posture.
We are a global research and advisory firm that focuses on the world’s most consequential geopolitical and strategic matters. Our work informs the decisions of governments, institutions, and enterprises.
We hold ourselves to unusually high standards. Our research is defined by empirical rigour and integrity. Our writing by clarity and authority. Our advisory work by genuine mastery of subject matter.
We are a flat, expert-heavy team. Everyone operates at a high level, takes ownership, and is trusted to exercise judgment.
You will be responsible for the operational layer of a fast-moving, high-impact research and technology environment. You'll start as the senior engineer who runs and hardens the platform, reporting to the CTO, with the runway to develop further.
You will work closely with our software engineers to maintain, harden, and evolve a modern stack: macOS/iOS user endpoints, Linux servers, AWS infrastructure, Cloudflare for edge services and ZTNA, and a sophisticated data analytics environment including a multi-DB lakehouse. You will operate and continuously improve all aspects of DevSecOps - including CI/CD, secrets management, IdAM, and security posture overall.
You will architect as well as administer, automate as well as operate, and maintain an optimal estate as our team and systems scale — minimising click-ops.
You will not be walking into a confused mess. We already operate a sophisticated and well-designed (but part-built) environment, with clarity on where we are going. E.g. deployments are health-gated with automatic rollback, CI runs on short-lived credentials rather than long-lived cloud keys, dependency and image updates arrive as automated, review-gated pull requests, and backups sit in deletion-locked vaults with cross-region copies.
Your job will be to help us go further. Resilience — backup, DR, recovery, and the observability and incident response around them — is yours to own, and to keep proven.
And much more besides.
You have at least five years of professional experience in building and running production systems. Ideally a tertiary qualification, but we value demonstrated skill more. You should have strong opinions about technologies and tools.