IT DevOps Engineer
- Full-time
Company Description
Eurofins Scientific is an international life sciences company, providing a unique range of analytical testing services to clients across multiple industries, to make life and our environment safer, healthier and more sustainable. From the food you eat, to the water you drink, to the medicines you rely on, Eurofins laboratories work with the biggest companies in the world to ensure the products they supply are safe, their ingredients are authentic, and labelling is accurate.
The Eurofins network of companies is the global leader in food, environment, pharmaceutical and cosmetic product testing and in agro-science Contract Research Organization services. It is one of the market leaders in certain testing and laboratory services for genomics, discovery pharmacology, forensics, advanced material sciences and in the support of clinical studies, as well as having an emerging global presence in Contract Development and Manufacturing Organizations. It also has a rapidly developing presence in highly specialized and molecular clinical diagnostic testing and in-vitro diagnostic products.
In over 30 years, Eurofins has grown from one laboratory in Nantes, France to 58,000 staff across a decentralized and entrepreneurial network of 900 laboratories in over 54 countries. Eurofins companies offer a portfolio of over 200,000 analytical methods to evaluate the safety, identity, composition, authenticity, origin, traceability and purity of biological substances and products.
In 2021, Eurofins generated total revenues of EUR 6.72 billion, and has been among the best performing stocks in Europe over the past 20 years.
Job Description
Infrastructure & Platform Management
- Deploy, and maintain production-grade infrastructure on Azure and AWS using Terraform and Terraform Cloud workspaces
- Manage Azure Kubernetes Service (AKS) clusters running the IAM platform across multiple environments (dev->production)
- Implement and maintain Infrastructure as Code (IaC) best practices for repeatability, version control, and disaster recovery
- Oversee multi-workspace Terraform deployments with complex dependency management
- Implement disaster recovery (DR) strategies across Azure and AWS regions
- Manage and secure Azure platform services, including networking, identity, compute, and platform security controls
Container & Orchestration
- Deploy and manage containerized .NET 8 applications on Kubernetes using Helm charts
- Implement autoscaling strategies using KEDA (Kubernetes Event-Driven Autoscaling) for Redis Streams and message processing workloads
- Manage Kubernetes deployments including StatefulSets, Deployments, Services, ConfigMaps, and Secrets
- Optimize container images using multi-stage Docker builds and implement container security best practices
- Implement pod security policies, network policies, and RBAC controls
Identity & Access Management Migration
- Deploy and manage self-hosted disaster recovery identity infrastructure in both Azure and AWS
- Integrate identity federation, single sign-on (SSO), and OAuth/OIDC flows with the IAM platform
Secrets & Security Management
- Use HashiCorp Vault for secrets management, dynamic credentials, and PKI infrastructure
- Configure Vault PKI for certificate management, mTLS, and secure inter-service communication
- Manage Redis TLS/SSL configurations and certificate rotation
- Configure Azure Key Vault integrations where applicable
- Implement security scanning, vulnerability management, and compliance controls
CI/CD & Automation
- Build and maintain Azure DevOps Pipelines for continuous integration and deployment
- Implement GitOps workflows and deployment automation
- Create and maintain Makefiles and shell scripts for build, deploy, test, and cleanup automation
- Implement automated testing strategies including Helm chart tests and integration tests
Multi-Cloud Strategy
- Ensure consistent security posture and compliance across cloud providers
- Manage costs and resource optimization across multiple cloud platforms
Qualifications
Core DevOps & Cloud Infrastructure
- 5+ years of DevOps/SRE experience in production environments
- Expert-level Terraform experience with Terraform Cloud, remote state, and workspace management
- Production Azure experience (or another cloud provider) including AKS, Azure Database for PostgreSQL, Virtual Networks, Private Endpoints, and Managed Identities or equivalent services
- Kubernetes proficiency including Helm, operators, custom resources, and cluster management
Container & Application Technologies
- Docker expertise with multi-stage builds and container optimization
- GitOps methodologies and declarative infrastructure
- JAVA based application configuration and administration
- KEDA autoscaling implementation and tuning is a plus
- Experience with Redis (Streams, TLS/mTLS, clustering) is a plus
- Apache ActiveMQ Artemis or similar message broker experience is a plus
Identity & Access Management
- Strong understanding of OAuth 2.0, OIDC, SAML, and federation protocols
- Experience with Azure Entra ID (Azure AD) including app registrations, service principals, and conditional access or similar IDP offering
- Experience with Ping Identity suite (Ping Identity, Ping Federate) is a plus
- SailPoint IIQ or similar identity governance platform experience is a plus
- PingOne AIC (Adaptive Identity Cloud) implementation experience is a plus
Secrets & Security
- HashiCorp Vault production deployment and managementis a plus
- PKI infrastructure, certificate lifecycle management, and mTLS is a plus
Automation & Scripting
- Azure DevOps Pipelines (YAML pipelines preferred)
Additional Information
Professional working proficiency in English is a requirement, including the ability to read, write and speak in English.