Buynomics is seeking a Lead Platform Engineer to design and build a multi-cloud Kubernetes foundation for secure single-tenant deployments in customer-controlled environments. This role focuses on creating a scalable, secure, and automated platform architecture from the ground up, with Azure as the primary cloud provider, supporting enterprise deployments across AWS, Azure, and GCP.
What You'll Do
- Design and implement cloud-agnostic, single-tenant deployment architecture (Azure-first, with AWS and GCP support)
- Build and maintain reusable Infrastructure-as-Code modules (Terraform)
- Define and standardize the Kubernetes platform, including workload isolation, auto-scaling, and security policies
- Implement GitOps-based CI/CD and automated environment provisioning
- Enable scalable execution of compute-heavy workloads (e.g. async job queues, ML training pipelines)
- Design secure networking patterns (private endpoints, VNet/VPC design, DNS, IAM/RBAC, zero-trust principles)
- Establish observability standards (structured logging, metrics, distributed tracing, alerting)
- Own cost governance across customer environments: cost attribution, right-sizing, and spend optimization
- Collaborate with engineering teams to define clean service deployment contracts
- Define platform standards, architectural decision records, and operational runbooks
- Ensure platform compliance with SOC 2, ISO 27001, and GDPR through automated policy-as-code guardrails
- Champion AI-assisted infrastructure workflows — we use AI coding tools across engineering and expect platform tooling to follow suit
What We're Looking For
- 6+ years of experience in platform engineering, infrastructure, or DevOps/SRE roles
- Strong production experience in Azure (AKS, Azure AD, Managed Identity, Private Networking)
- Solid experience with at least one additional cloud provider (AWS preferred; GCP a plus)
- Hands-on production experience operating Kubernetes at scale (cluster lifecycle, upgrades, multi-tenancy)
- Deep expertise in Infrastructure-as-Code (Terraform), including module design, state management, and CI integration
- Strong knowledge of cloud networking (VPC/VNet, DNS, private routing, firewall configurations)
- Experience designing CI/CD and GitOps workflows
- Experience operating distributed or high-concurrency workloads
- Understanding of compliance frameworks (SOC 2, ISO 27001, GDPR) and ability to implement compliant infrastructure patterns
- Strong system design skills and ability to operate at Staff-level technical depth
- Ability to navigate ambiguity and move initiatives forward independently
Nice to Have
- Experience deploying software into customer-controlled enterprise cloud environments (single-tenant / BYOC models)
- MLOps experience (model lifecycle, training pipelines, experiment tracking with MLflow, artifact versioning)
- Databricks integration experience (workspace provisioning, Unity Catalog, job orchestration)
- GPU workload optimization and scheduling
- Experience building Internal Developer Platforms using tools like Backstage, Crossplane, or Humanitec
- Service mesh technologies (Istio, Linkerd) and zero-trust networking patterns
- Policy-as-code tooling (OPA/Gatekeeper, Kyverno)
- FinOps practices and multi-environment cost governance
Technical Stack
Azure (AKS, Azure AD, Managed Identity, Private Networking), AWS, GCP, Kubernetes, Terraform, GitOps, CI/CD, VPC/VNet, DNS, IAM/RBAC, zero-trust networking, SOC 2, ISO 27001, GDPR, OPA/Gatekeeper, Kyverno, MLflow, Databricks, Unity Catalog, Backstage, Crossplane, Humanitec, Istio, Linkerd
Team & Environment
Engineering team with future growth into leading a dedicated platform team
Benefits & Compensation
- A vibrant, international, and diverse work environment
- Flexible work options: remote within the EU with occasional visits to our Cologne HQ or Barcelona office or a hybrid setup in one of these locations
- A dedicated learning budget to support your professional growth and development
- Local language lessons (Germany and Spain)
- Health and fitness benefits (Germany and Spain)
- Personal and professional growth opportunities
- Regular company events
- dedicated learning budget, health and fitness benefits, language lessons
Work Mode
Hybrid work model with remote options within the EU and occasional visits to Cologne HQ or Barcelona office, or hybrid setup in one of these locations.
Buynomics is proud to be an equal-opportunity employer. This means that we don’t discriminate based on race or ethnic origin, color, the language(s) you speak, where you (or your parents) are from, or whether or not you consider yourself to have a disability. Neither will your age, gender, gender identity, sexual orientation, religion, beliefs, or political opinions play a part in your application with us.
