DevOps Engineer
- Full-time
Company Description
We started with a simple question: how can we make necessary services affordable and accessible for the middle-class & lower-middle-class population? We are solving this at Nagorik by developing & packaging several app services at scale.
Nagorik provides standardized software development services at market standard prices on Web, Mobile, Desktop app development, QA, DevOps, CyberSecurity etc.
If you'd like to be part of the future of Several Tech Industry, read on.
Job Description
We are looking for a mid to senior level DevOps Engineer who can take ownership of our infrastructure, CI/CD pipelines, deployments and infrastructure security with minimal supervision. You will keep our applications running reliably, securely and at scale, working closely with our backend, frontend and QA teams to automate builds, deployments, code quality checks and security scanning. Security is a top priority for this role: you will be responsible for finding, assessing and fixing vulnerabilities across our systems. You enjoy solving production problems, automating repetitive work, guiding teammates on DevOps and security best practices, and learning new tools quickly.
Key Responsibilities:
Take ownership of DevOps architecture, infrastructure decisions and deployment strategy
Build and maintain CI/CD pipelines using GitHub Actions and Jenkins
Set up automated GitHub Actions to VPS deployments (build, test, deploy, rollback)
Manage and customize Google Cloud (GCP) infrastructure: Compute Engine, networking, IAM, storage, and cost control using the gcloud CLI
Integrate SonarQube into pipelines for code quality, coverage and security scanning, and enforce quality gates
Containerize applications with Docker and manage deployments for Laravel, Node.js/NestJS, Next.js and Vue.js apps
Configure and maintain Linux servers, Nginx/Apache, SSL certificates, DNS and firewalls
Identify, assess and fix security vulnerabilities across servers, containers, dependencies and applications
Integrate security scanning into CI/CD pipelines (SonarQube, Trivy, OWASP Dependency-Check, GitHub Dependabot/CodeQL)
Harden Linux servers and GCP resources (SSH hardening, firewall rules, least-privilege IAM, fail2ban)
Manage secrets securely (GitHub Secrets, GCP Secret Manager, no hard-coded credentials)
Run regular vulnerability assessments and patch management, and track fixes to closure
Monitor system health, uptime and performance, and lead incident response, including security incidents and root cause analysis
Manage database backups, restores and replication (MySQL/PostgreSQL)
Write scripts to automate routine operations and security tasks
Mentor developers and junior team members on DevOps and security practices
Document infrastructure, pipelines, security policies and runbooks
Qualifications
Bachelor's Degree in CSE or a related field
Minimum 1 year of hands-on DevOps experience in a professional setting; candidates with mid to senior level experience will be preferred
Must have hands-on experience with GitHub Actions, including CI/CD pipelines that deploy to a VPS over SSH
Must have working experience with Jenkins (pipelines, Jenkinsfile, agents, plugins)
Must have experience with Google Cloud Platform: custom setup and management of VMs, VPC/firewall rules, IAM, Cloud Storage, and the gcloud CLI
Must have hands-on experience identifying and fixing security vulnerabilities (CVEs, dependency and container vulnerabilities, misconfigurations)
Experience setting up and using SonarQube for static code analysis and quality gates
Experience with vulnerability scanning tools (Trivy, OWASP ZAP, Dependabot or similar)
Good understanding of the OWASP Top 10 and secure deployment practices
Knowledge of SSL/TLS, firewall configuration, IAM and access control best practices
Strong working knowledge of Linux server administration and hardening
Hands-on experience with Docker and Docker Compose
Experience configuring Nginx/Apache, reverse proxies, load balancers and SSL
Scripting skills in Bash and/or Python
Good understanding of networking fundamentals (DNS, HTTP/HTTPS, TCP/IP, VPN, firewalls)
Experience with Git and branching workflows
Familiarity with monitoring and logging tools (Prometheus, Grafana, ELK or similar)
Experience deploying PHP (Laravel), Node.js and Vue.js applications
Basic knowledge of MySQL/PostgreSQL administration and backup strategies
Ability to work independently and make sound infrastructure trade-offs
Self-learning and problem-solving mindset
Good communication and leadership skills, and willingness to take on-call responsibility when needed
Experience with DevSecOps practices and security audits will be a plus
Experience building and deploying Vue.js frontends (build pipelines, static hosting, Nginx config for SPAs) will be a plus
Experience with AWS or DigitalOcean will be a plus
Experience with Kubernetes (GKE) will be a plus
Experience with Infrastructure as Code (Terraform, Ansible) will be a plus
A Google Cloud or security certification will be a plus
Additional Information
What you will get from us
- A competitive salary according to your experience; 60k–100k BDT/month
- Two days weekly leave
- Two festival bonuses
- Yearly increment based on the performance
- Health Insurance and Wellness Programs
- Complimentary Breakfast, Lunch, and Evening Snacks
- Flexible working hours
- You will be joining a fast-moving and progressive company that prides itself of being at the forefront of software development and security services
- A real chance to grow very rapidly - the team is growing which means that there's plenty of room for personal development
- The possibility to really see an impact and to see how your work affects the end result.
By clicking the link above or any third-party link within this posting, you are leaving this site and going to a third-party website where the third-party website's terms and privacy policy apply