DevOps Engineer

  • Full-time

Company Description

We started with a simple question: how can we make necessary services affordable and accessible for the middle-class & lower-middle-class population? We are solving this at Nagorik by developing & packaging several app services at scale.

Nagorik provides standardized software development services at market standard prices on Web, Mobile, Desktop app development, QA, DevOps, CyberSecurity etc.

If you'd like to be part of the future of Several Tech Industry, read on.

Job Description

We are looking for a mid to senior level DevOps Engineer who can take ownership of our infrastructure, CI/CD pipelines, deployments and infrastructure security with minimal supervision. You will keep our applications running reliably, securely and at scale, working closely with our backend, frontend and QA teams to automate builds, deployments, code quality checks and security scanning. Security is a top priority for this role: you will be responsible for finding, assessing and fixing vulnerabilities across our systems. You enjoy solving production problems, automating repetitive work, guiding teammates on DevOps and security best practices, and learning new tools quickly.

Key Responsibilities:

  • Take ownership of DevOps architecture, infrastructure decisions and deployment strategy

  • Build and maintain CI/CD pipelines using GitHub Actions and Jenkins

  • Set up automated GitHub Actions to VPS deployments (build, test, deploy, rollback)

  • Manage and customize Google Cloud (GCP) infrastructure: Compute Engine, networking, IAM, storage, and cost control using the gcloud CLI

  • Integrate SonarQube into pipelines for code quality, coverage and security scanning, and enforce quality gates

  • Containerize applications with Docker and manage deployments for Laravel, Node.js/NestJS, Next.js and Vue.js apps

  • Configure and maintain Linux servers, Nginx/Apache, SSL certificates, DNS and firewalls

  • Identify, assess and fix security vulnerabilities across servers, containers, dependencies and applications

  • Integrate security scanning into CI/CD pipelines (SonarQube, Trivy, OWASP Dependency-Check, GitHub Dependabot/CodeQL)

  • Harden Linux servers and GCP resources (SSH hardening, firewall rules, least-privilege IAM, fail2ban)

  • Manage secrets securely (GitHub Secrets, GCP Secret Manager, no hard-coded credentials)

  • Run regular vulnerability assessments and patch management, and track fixes to closure

  • Monitor system health, uptime and performance, and lead incident response, including security incidents and root cause analysis

  • Manage database backups, restores and replication (MySQL/PostgreSQL)

  • Write scripts to automate routine operations and security tasks

  • Mentor developers and junior team members on DevOps and security practices

  • Document infrastructure, pipelines, security policies and runbooks

Qualifications

  • Bachelor's Degree in CSE or a related field

  • Minimum 1 year of hands-on DevOps experience in a professional setting; candidates with mid to senior level experience will be preferred

  • Must have hands-on experience with GitHub Actions, including CI/CD pipelines that deploy to a VPS over SSH

  • Must have working experience with Jenkins (pipelines, Jenkinsfile, agents, plugins)

  • Must have experience with Google Cloud Platform: custom setup and management of VMs, VPC/firewall rules, IAM, Cloud Storage, and the gcloud CLI

  • Must have hands-on experience identifying and fixing security vulnerabilities (CVEs, dependency and container vulnerabilities, misconfigurations)

  • Experience setting up and using SonarQube for static code analysis and quality gates

  • Experience with vulnerability scanning tools (Trivy, OWASP ZAP, Dependabot or similar)

  • Good understanding of the OWASP Top 10 and secure deployment practices

  • Knowledge of SSL/TLS, firewall configuration, IAM and access control best practices

  • Strong working knowledge of Linux server administration and hardening

  • Hands-on experience with Docker and Docker Compose

  • Experience configuring Nginx/Apache, reverse proxies, load balancers and SSL

  • Scripting skills in Bash and/or Python

  • Good understanding of networking fundamentals (DNS, HTTP/HTTPS, TCP/IP, VPN, firewalls)

  • Experience with Git and branching workflows

  • Familiarity with monitoring and logging tools (Prometheus, Grafana, ELK or similar)

  • Experience deploying PHP (Laravel), Node.js and Vue.js applications

  • Basic knowledge of MySQL/PostgreSQL administration and backup strategies

  • Ability to work independently and make sound infrastructure trade-offs

  • Self-learning and problem-solving mindset

  • Good communication and leadership skills, and willingness to take on-call responsibility when needed

  • Experience with DevSecOps practices and security audits will be a plus

  • Experience building and deploying Vue.js frontends (build pipelines, static hosting, Nginx config for SPAs) will be a plus

  • Experience with AWS or DigitalOcean will be a plus

  • Experience with Kubernetes (GKE) will be a plus

  • Experience with Infrastructure as Code (Terraform, Ansible) will be a plus

  • A Google Cloud or security certification will be a plus

Additional Information

What you will get from us

  • A competitive salary according to your experience; 60k–100k BDT/month
  • Two days weekly leave
  • Two festival bonuses
  • Yearly increment based on the performance
  • Health Insurance and Wellness Programs
  • Complimentary Breakfast, Lunch, and Evening Snacks
  • Flexible working hours
  • You will be joining a fast-moving and progressive company that prides itself of being at the forefront of software development and security services
  • A real chance to grow very rapidly - the team is growing which means that there's plenty of room for personal development
  • The possibility to really see an impact and to see how your work affects the end result.

By clicking the link above or any third-party link within this posting, you are leaving this site and going to a third-party website where the third-party website's terms and privacy policy apply