Livermore, United States of America Hybrid USD 146,340 - 222,564 Yearly

Lawrence Livermore National Laboratory (LLNL) is hiring a Kubernetes Engineer

The Kubernetes Engineer will design, deploy, and maintain large-scale bare-metal Kubernetes clusters that support demanding scientific workloads. This role focuses on ensuring high availability, robust security, comprehensive observability, and automated operations within a continuously running environment. Responsibilities span cluster architecture, storage integration, networking, CI/CD automation, and collaboration with research and security teams to support mission-critical computing.

Responsibilities

  • Help design and deploy large-scale Kubernetes clusters on bare-metal infrastructure.
  • Integrate Kubernetes control planes with VAST Storage arrays to provide high-performance persistent storage solutions.
  • Implement advanced cluster networking to enable low-latency, seamless communication across multi-rack and multi-site environments.
  • Build and maintain automated, self-healing workflows using CI/CD pipelines for full cluster lifecycle management.
  • Ensure zero-touch cluster deployments and maintain consistent platform health and reliability.
  • Support strict service level indicators and objectives by developing and maintaining robust observability systems using Prometheus and Grafan.
  • Enforce strong security practices using role-based access control (RBAC), OpenID Connect (OIDC), and network segmentation.
  • Work with internal business units to onboard moderately complex applications and services onto Kubernetes platforms.
  • Raise technical standards through active participation in design reviews and by mentoring team members.
  • Collaborate on integrating AI-driven agents to assist in troubleshooting and automating cluster operations.
  • Perform additional duties as assigned by leadership.
  • Partner with researchers to develop reusable software stacks and automate their deployment across multiple environments (SES.3 level).
  • Work with security teams to embed security checks and audits into Kubernetes deployment pipelines via GitLab CI/CD (SES.3 level).
  • Extend Kubernetes functionality to simplify operations, user experience, and application management (SES.3 level).

Requirements

  • Must be able to obtain and retain a U.S. Department of Energy (DOE) Q-level security clearance, which requires U.S. citizenship.
  • Bachelor’s degree in computer science, software engineering, or a related technical field, or an equivalent combination of education and relevant experience.
  • Demonstrated experience using configuration management tools such as Ansible or Puppet to standardize and distribute cluster configurations.
  • Extensive hands-on experience administering Kubernetes in moderately complex to complex environments, including installation, networking, security, monitoring, and troubleshooting.
  • Proven experience in software development or system administration using scripting languages such as Python, Bash, Perl, Ruby, or Groovy.
  • Solid understanding of core Kubernetes components including Pods, Deployments, Services, and Persistent Volume Claims (PVCs).
  • Strong interpersonal skills to engage effectively with personnel at all levels and work independently in a multidisciplinary team with limited supervision.
  • Proficient verbal and written communication skills necessary for team collaboration and explaining technical concepts clearly.
  • Ability to prioritize tasks and independently resolve moderately complex technical issues in a fast-paced setting.

Nice to Have

  • Certification in Kubernetes or container orchestration platforms, such as Certified Kubernetes Application Developer (CKAD) or Certified Kubernetes Administrator (CKA).
  • Experience with configuration management systems including Ansible, Puppet, Chef, or Salt.
  • Hands-on experience creating, managing, and deploying production-grade Kubernetes clusters on on-premises hardware or cloud platforms such as AWS, Azure, or GCP.
  • Experience applying artificial intelligence to infrastructure-as-code development, cluster troubleshooting, or operational streamlining.

Tech Stack

Kubernetes, Ansible, Puppet, Python, Bash, Perl, Ruby, Groovy, Prometheus, Grafana, GitLab CI/CD, VAST Storage, OIDC, RBAC, AI agents

Benefits

  • Flexible Benefits Package
  • 401(k)
  • Relocation Assistance
  • Education Reimbursement Program
  • Flexible schedules (depending on project needs)

Compensation

$146,340 - $222,564 Annually. Relocation Assistance, Education Reimbursement Program

Work Arrangement

hybrid — Lawrence Livermore National Laboratory (on-site presence required part-time) — Part-time on-site presence required; flexible schedules depending on project needs

Team

multi-disciplinary team; matrixed between Global Security Computing Applications Division (GS-CAD) of the Computing Directorate and the Global Security Directorate; reports to not explicitly stated

  • Innovation
  • Operational excellence
  • Commitment to national security
  • Diversity and inclusion
  • Global stability and scientific advancement

Additional Information

  • Position requires part-time on-site presence due to the nature of the work.
  • This is a Flexible Term appointment, limited to a maximum of six years.
  • Career Indefinite employees may retain status if funding permits.
  • Requires a Department of Energy (DOE) Q-level security clearance.
  • U.S. citizenship is required to obtain a Q-level clearance.
  • External candidates must pass a post-offer, pre-employment drug test, including marijuana screening.
  • Random drug testing is required for all L or Q cleared employees.
  • Mobile devices are restricted in Limited Areas.
  • Personal and laboratory mobile devices, including cell phones, tablets, fitness trackers, and Bluetooth devices, are prohibited in Limited Areas.
  • Medical devices that connect to mobile devices must comply with mobile device restrictions in Limited Areas.
  • Hearing aids without wireless capabilities, or with wireless disabled, are permitted in Limited Areas, Secure Space, and Transit/Buffer Space.
  • Access to Sensitive Compartmented Information Facilities requires separate authorization.
  • Equal Employment Opportunity: All qualified applicants are considered without regard to race, color, religion, marital status, national origin, ancestry, sex, sexual orientation, gender identity, disability, medical condition, pregnancy, protected veteran status, age, citizenship, or other protected characteristics.
  • Reasonable accommodations are available upon request during the application or recruitment process.
  • California Privacy Notice applies under CCPA for job applicants.

Not specified

Required Skills
KubernetesAnsiblePuppetPythonBashPerlRubyGroovyPrometheusGrafanaGitlab CI/CDVAST StorageOIDCRBACAI agents KubernetesAnsiblePuppetPythonBashPerlRubyGroovyPrometheusGrafanaGitlab CI/CDVAST StorageOIDCRBACAI agents
About company
Lawrence Livermore National Laboratory (LLNL)
Lawrence Livermore National Laboratory (LLNL) advances science and technology to strengthen U.S. security and promote global stability. Its mission spans four critical national security areas: nuclear deterrence, threat preparedness, energy security, and multi-domain defense.
All jobs at Lawrence Livermore National Laboratory (LLNL) Visit website
Job Details
Department Engineering
Category infrastructure
Posted 2 months ago