

Search by job, company or skills

Responsibilities:
Multi-Cloud Infrastructure Operations
. Operate, maintain, and continuously improve cloud-native production environments across Amazon Web Services (AWS), Microsoft Azure, and Google Cloud Platform (GCP).
. Provide hands-on technical leadership across a broad range of cloud services, including but not limited to:
. AWS: Lambda, ECS/EKS, FSx, Glue, SES, GuardDuty, WAF, Shield Advanced, Security Hub, KMS, Secrets Manager, SNS, SQS, EventBridge, API Gateway, EC2, S3, CloudWatch, Systems Manager
. Azure: Virtual Machines, Azure Kubernetes Service (AKS), Azure Functions, Azure Storage, Azure Monitor
. GCP: Compute Engine, Google Kubernetes Engine (GKE), Cloud Functions, Cloud Storage, Cloud Monitoring
. Monitor, analyze, and troubleshoot infrastructure performance, availability, scalability, and cost efficiency across all cloud platforms.
. Support both production and staging environments, ensuring adherence to 24/7 high-availability and reliability objectives, including strict SLA and SLO commitments.
. Participate in a 24/7 shift rotation to provide round-the-clock operational coverage.
. Provide hands-on technical support and guidance to L2 engineers, leading incident response, root-cause analysis, and resolution of complex infrastructure and application issues.
Operating System Lifecycle & Patch Management
. Lead and oversee operating system patching and lifecycle management across RHEL (v8-v10) and Windows Server (2016-2025) environments using tools such as AWS Systems Manager Patch Manager, Azure Update Management, WSUS, SCCM, and YUM/DNF.
. Maintain strong foundational knowledge of Linux system administration, complemented by deep expertise in Windows (Wintel) operating system patching, hardening, and lifecycle management.
. Plan, schedule, automate, and track patch deployments across development, staging, and production environments, ensuring consistency and repeatability.
. Coordinate patch approvals with security, compliance, and business stakeholders to ensure alignment with organizational policies, risk frameworks, and audit requirements.
. Execute monthly and quarterly patching cycles with minimal service disruption, adhering to defined change management and maintenance windows.
. Perform post-patch validation, health checks, and remediation activities to confirm system stability, security posture, and operational readiness.
Application Deployment & Troubleshooting
. Deploy, operate, and troubleshoot applications across Windows and Linux operating systems in cloud-based and hybrid environments.
. Provide OS-level diagnostics, performance tuning, and stability support to application teams, including CPU, memory, disk, network, and process-level analysis.
. Partner closely with development and DevOps teams to identify, isolate, and resolve infrastructure-, platform-, and OS-related application issues throughout the application lifecycle.
. Implement, maintain, and continuously enhance application monitoring, logging, and alerting frameworks to ensure early issue detection and rapid incident response in production environments.
Security & Compliance
. Execute and manage CIS (Center for Internet Security) control implementations and remediations across multi-cloud environments to strengthen security posture.
. Perform security hardening in accordance with CIS Benchmarks, industry best practices, and government-mandated security baselines.
. Conduct continuous vulnerability identification, assessment, and remediation using tools such as Trend Micro Vision One, Qualys, Tenable, and AWS Config, ensuring timely risk mitigation.
. Track, manage, and renew SSL/TLS certificates across all environments to prevent service disruptions and maintain secure communications.
. Proactively identify and remediate End-of-Life (EOL) and End-of-Support (EOS) components, including operating systems, middleware, and AWS Lambda runtimes, to reduce security and compliance risks.
. Support and maintain compliance with government-grade security, audit, and regulatory requirements, including evidence collection, audit readiness, and remediation tracking.
Container & DevSecOps
. Demonstrate strong working knowledge of container and orchestration technologies, including Docker, Kubernetes, and managed container platforms such as AWS ECS/EKS, Azure AKS, and Google GKE.
. Apply familiarity with DevSecOps principles and practices, including exposure to SHIP-HATS (Secure Hybrid Integration Pipeline - Hive Agile Testing Solutions) within the Singapore Government technology ecosystem.
. Support and maintain CI/CD pipeline operations, ensuring seamless integration with security scanning, vulnerability assessment, and compliance validation tools across the software delivery lifecycle.
Requirements:
. Bachelor's degree in Computer Science, Information Systems, or related field
. Minimum 3 years of experience in Commercial Cloud Engineering roles
. At least 2 years of experience in public sector or regulated cloud environments
. Minimum 3 years of hands-on experience with AWS or Microsoft Azure or Google Cloud Platform
. Experience in 24/7 operational support environments with shift rotation
. Demonstrated experience in mentoring and leading junior engineers
. Strong background in ITIL processes and ITSM platforms with experiences on CIS security hardening and remediation
. Familiarity with Singapore Government technology standards and frameworks (e.g., SHIP-HATS, IM8 Policy)
Job ID: 151633099