Infrastructure & Platform Leadership
- Lead design and operation of Enclaive’s confidential cloud infrastructure
- Build and manage private and public cloud environments using bare metal (Hetzner, OVH, StackIT, Ionos) and virtualized infrastructure
- Architect highly secure, multi-tenant confidential VM and Kubernetes platforms
- Define operational standards, reliability practices, and automation pipelines
- Establish infrastructure roadmap aligned with product and research teams
Platform Engineering & Delivery
- Deploy and operate managed confidential Kubernetes clusters
- Integrate confidential container technologies (e.g., Kata Containers)
- Implement attestation, workload isolation, and secure provisioning
- Integrate Enclaive vHSM and secure key management workflows
- Implement virtualization layers including Buckypaper-based technologies
- Design hybrid multi-cloud architectures across multiple CSPs and on-premise data centers
Automation & Operations
- Build Infrastructure-as-Code pipelines and GitOps workflows
- Define SRE practices: observability, incident response, scalability, and reliability
- Ensure platform security, compliance, and resilience
- Optimize performance of confidential workloads
Team Leadership
- Build and mentor the CloudOps/Infrastructure team
- Set technical standards and engineering practices
- Collaborate closely with product, research, and security teams
- Support customer deployments and PoCs when needed
What you'll add to enclaive
Required Qualifications
- Experience building infrastructure on bare metal and hybrid cloud environments
- Deep knowledge of Linux systems, networking, and virtualization
- Hands-on experience with Infrastructure-as-Code and automation
- Strong background in Kubernetes platform engineering and operations
- Experience operating production multi-tenant environments
- Strong DevOps/SRE mindset and operational discipline
- Proven technical leadership experience
Strong Plus Experience
- Confidential computing (Intel TDX, AMD SEV-SNP, SGX, or similar)
- Confidential containers and Kata Containers
- Secure attestation workflows
- Hardware-backed key management / HSM integrations
- Proxmox, OpenShift, Rancher, or upstream Kubernetes operations
- Multi-cloud platform engineering
- Zero-trust infrastructure design
- Experience in regulated sectors (healthcare, public sector, finance)
Technologies we use
- Golang, Rust, Typescript (React)
- Docker, Kubernetes, Terraform, Ansible, Helm
- KVM, Hyper-V, ESXi
- AMD SEV-SNP, Intel TDX, ARM CC, NVIDIA CCA