
Senior Cloud Engineer
CGG (Compagnie Générale de Géophysique)1 month ago
Llandudno, United Kingdom or Crawley, United KingdomSenior
Responsibilities
- Implement production-grade cloud architecture and deployments in Viridien and client environments.
- Build and automate cloud foundations, including accounts or subscriptions, networking, identity integration, governance, guardrails, and baseline security controls.
- Implement and operate Kubernetes platforms, primarily AKS, including cluster configuration, networking, ingress, certificates, secrets, scaling, upgrades, and operational tooling.
- Own infrastructure as code and CI/CD through Terraform or Bicep modules, deployment pipelines, environment promotion, and release controls.
- Implement security-by-design practices covering IAM or RBAC, network segmentation, private connectivity, encryption, secrets management, policy-as-code, logging, monitoring, and vulnerability-management integration.
- Deliver operational readiness through observability, alerting, backup and disaster recovery, runbooks, support documentation, and knowledge transfer.
- Troubleshoot cloud infrastructure, Kubernetes, database platforms, networking, distributed systems, and platform services while driving root-cause analysis and preventative improvements.
- Create reusable reference implementations, landing-zone patterns, modules, and engineering guidance.
- Collaborate with client engineering, security, and operations stakeholders to validate requirements, manage technical risks, and coordinate delivery plans and change windows.
Requirements
- Strong production Azure delivery experience, including networking, identity and access management, governance, and security controls, preferably with external clients.
- Significant hands-on experience implementing and operating Kubernetes, including upgrade strategy, cluster security, workload isolation, and operational tooling.
- Proven experience delivering database platforms using both PaaS and VM-based approaches, including backup and restore, performance, and high availability or disaster recovery.
- Strong Infrastructure as Code experience with Terraform and/or Bicep or ARM, plus CI/CD experience with Azure DevOps, GitHub Actions, GitLab CI, or similar tools.
- Solid cloud security engineering knowledge covering RBAC or IAM, private networking, key and secrets management, encryption, secure logging, and policy or guardrail implementation.
- Excellent troubleshooting skills across networking, distributed systems, and platform services.
- Ability to work autonomously, plan implementations, own outcomes, and drive improvements.
- Desirable AWS delivery experience and/or OpenStack experience.
- Experience with landing zones and well-architected frameworks such as Azure Landing Zone or CAF.
- Scripting or automation experience with PowerShell, Python, or Bash.
- Experience with policy-as-code and security-tooling integration, including Azure Policy, OPA, Gatekeeper, Kyverno, Checkov, TFSec, Defender for Cloud, or Sentinel.
- Hybrid or private cloud experience and experience working under high-assurance security requirements are desirable.
Benefits
- Hybrid working from North Wales or Crawley, with up to two days working from home.
- Competitive salary commensurate with experience and an attractive bonus scheme.
- Initial 22 days of annual leave with future increases and a flexible holiday buying and selling program.
- Company pension with a generous employer contribution.
- Unmind wellbeing app and flexible benefits with discount schemes.
- Regular social club and reward events, cycle purchase scheme, and relaxed dress code.
- Flexible private medical and dental care programs.
- Visa sponsorship and comprehensive relocation packages are listed as available.
- Bank Holiday Swap program.
- Tailored technical, commercial, and personal development training through the Learning Hub.