Sr. Kubernetes Engineer/Administrator - Azure AKS

Kforce Inc

Charlotte (NC)

On-site

USD 140,000 - 180,000

Full time

34 hours ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

Kforce Inc is seeking a senior Kubernetes and Azure specialist to design, deploy and manage enterprise AKS clusters across multiple regions. You will implement private clusters, CMK-based encryption, blue/green upgrades, and multi-cluster orchestration using Fleet Manager and Automatic features.

The role requires hands-on experience with AKS, Terraform, GitHub Actions, ArgoCD, and service mesh tools like Linkerd, along with strong security and networking expertise in Azure.

Qualifications

  • CKA or CKS certification is required.
  • 5+ years Kubernetes experience in production.
  • 2+ years AKS experience.
  • Experience with private AKS clusters and Azure Private Link/Private Endpoints.
  • Experience with Azure Key Vault integration (CSI driver, disk encryption sets).
  • Hands-on with customer-managed encryption keys in Azure.
  • Experience with Azure Container Registry including geo-replication and vulnerability scanning.
  • Experience with Linkerd service mesh and AKS Fleet Manager.
  • Experience with Kubernetes operators and CRDs.
  • Familiarity with AKS Automatic and managed namespace patterns.
  • Strong Terraform expertise and reusable modules.
  • Deep understanding of Kubernetes architecture, networking, storage, and security.

Responsibilities

  • Design, deploy, and manage enterprise-scale AKS clusters across multiple Azure regions.
  • Implement and maintain private AKS clusters with advanced networking configurations.
  • Configure and manage CMK for cluster disk encryption.
  • Implement blue/green deployment strategies for zero-downtime upgrades.
  • Manage AKS cluster lifecycle including upgrades, node pool scaling, and disaster recovery.
  • Optimize cluster performance, cost, and resource utilization.
  • Implement AKS Fleet Manager for multi-cluster management and orchestration.
  • Configure AKS Automatic for simplified operations and auto-scaling.
  • Manage AKS Managed Namespaces for multi-tenancy and isolation.

Skills

Kubernetes
Azure
Terraform
GitHub Actions
ArgoCD
kubectl
helm
PowerShell
Python
Bash

Tools

AKS
Azure Private Link/Private Endpoints
Azure Key Vault CSI driver
DKMS/CMK for disk encryption

Job description

Responsibilities
  • Design, deploy, and manage enterprise-scale AKS clusters across multiple Azure regions
  • Implement and maintain private AKS clusters with advanced networking configurations
  • Configure and manage customer-managed encryption keys (CMK) for cluster disk encryption
  • Implement blue/green deployment strategies for zero-downtime cluster upgrades
  • Manage AKS cluster lifecycle including upgrades, node pool scaling, and disaster recovery
  • Optimize cluster performance, cost, and resource utilization
  • Implement AKS Fleet Manager for multi-cluster management and orchestration
  • Configure AKS Automatic for simplified cluster operations and auto-scaling
  • Manage AKS Managed Namespaces for improved multi-tenancy and resource isolation
Security & Compliance
  • Implement and maintain private networking architectures with Azure Private Endpoints
  • Configure and manage Workload Identity (OIDC) and user-assigned managed identities
  • Integrate Azure Policy for governance, compliance, and security enforcement
  • Implement Kubernetes RBAC and Azure RBAC integration
  • Manage secrets integration with Azure Key Vault using CSI drivers
  • Ensure secure communication between AKS and Azure PaaS services
  • Implement network policies and pod security standards
Requirements
  • Certified Kubernetes Administrator (CKA) or Certified Kubernetes Security Specialist (CKS)
  • 5+ years of hands-on Kubernetes experience in production environments
  • 2+ years of Azure Kubernetes Service (AKS) experience required
  • Experience with private AKS clusters and Azure Private Link/Private Endpoints
  • Experience with Azure Key Vault integration (CSI driver, disk encryption sets)
  • Hands-on experience with customer-managed encryption keys in Azure
  • Experience with Azure Container Registry including geo-replication and vulnerability scanning
  • Experience with Linkerd service mesh - deployment, configuration, and troubleshooting
  • Experience with AKS Fleet Manager for multi-cluster orchestration
  • Experience with Kubernetes operators and Custom Resource Definitions (CRDs)
  • Familiarity with AKS Automatic and managed namespace patterns
  • Strong Terraform expertise with proven ability to build reusable, production-ready modules
  • Deep understanding of Kubernetes architecture, networking, storage, and security
  • Proficiency with Azure networking: VNets, subnets, NSGs, private DNS zones, VNet peering
  • Strong understanding of Azure managed identities, Workload Identity, and RBAC
  • Experience with other cloud platforms (GCP GKE, AWS EKS) is a plus
  • Knowledge of AKS advanced features (Fleet Manager, AKS Automatic, Managed Namespaces) is a plus
Infrastructure as Code & Automation
  • Advanced Terraform skills with module development experience
  • Git version control and branching strategies (GitHub)
  • GitOps tools: ArgoCD
  • GitHub Actions for CI/CD pipelines
  • Infrastructure testing and validation practicesAzure CLI and Azure PowerShell
  • kubectl, helm, kustomize
  • Linux system administration
  • Scripting: Bash, Python, or PowerShell
  • Container technologies: Docker, container

The pay range is the lowest to highest compensation we reasonably in good faith believe we would pay at posting for this role. We may ultimately pay more or less than this range. Employee pay is based on factors like relevant education, qualifications, certifications, experience, skills, seniority, location, performance, union contract and business needs. This range may be modified in the future.

We offer comprehensive benefits including medical/dental/vision insurance, HSA, FSA, 401(k), and life, disability & ADD insurance to eligible employees. Salaried personnel receive paid time off. Hourly employees are not eligible for paid time off unless required by law. Hourly employees on a Service Contract Act project are eligible for paid sick leave.

Note: Pay is not considered compensation until it is earned, vested and determinable. The amount and availability of any compensation remains in Kforce's sole discretion unless and until paid and may be modified in its discretion consistent with the law.

This job is not eligible for bonuses, incentives or commissions.

Kforce is an Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, gender identity, national origin, age, protected veteran status, or disability status.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

1758 - Senior Kubernetes Infrastructure Developer
1758 - Senior Kubernetes Infrastructure Developer

Sigma Defense Systems • City of Rome (NY)

On-site
USD 135,000 - 165,000
Dental and Vision Insurance
Medical Insurance with HSA/FSA/DFSA
Life and AD&D coverage
+6
1758 - Senior Kubernetes Infrastructure Developer
1758 - Senior Kubernetes Infrastructure Developer

Socket.dev • City of Rome (NY)

On-site
USD 135,000 - 165,000
Dental and Vision Insurance
Medical Insurance with HSA/FSA/DFSA
Life and AD&D coverage
+2
1758 - Senior Kubernetes Infrastructure Developer
1758 - Senior Kubernetes Infrastructure Developer

Sigma-Defense • City of Rome (NY)

On-site
USD 135,000 - 165,000
Dental and Vision Insurance
Medical Insurance with HSA/FSA/DFSA
Life and AD&D coverage
+2
System Administrator(Kubernetes Admin)
System Administrator(Kubernetes Admin)

Gokool Digital • Charlotte (NC)

On-site
USD 100,000 - 130,000
Kubernetes Engineer
Kubernetes Engineer

Proven Recruiting • Austin (TX)

On-site
Architect Advanced
Architect Advanced

Mphasis • New York (NY)

On-site
USD 90,000 - 174,000
Remote AKS / Platform Architect/Fort Worth, Texas,/(AV)
Remote AKS / Platform Architect/Fort Worth, Texas,/(AV)

VISION INFOTECH INC. • Fort Worth (TX)

Hybrid
USD 180,000 - 230,000
Senior AKS Architect: Azure Multi-Cluster Orchestrator
Senior AKS Architect: Azure Multi-Cluster Orchestrator

Kforce Inc • Charlotte (NC)

On-site
USD 140,000 - 180,000
Senior Kubernetes Administrator
Senior Kubernetes Administrator

QuEra Computing, Inc. • Boston (MA)

On-site
USD 180,000 - 220,000
Equity grants
Senior Kubernetes Administrator
Senior Kubernetes Administrator

QuEra Computing Inc. • Boston (MA)

On-site
USD 180,000 - 220,000
Equity grants