Junior DevOps / Infrastructure engineer
Kyiv, Ukraineă»Lviv, Ukraineă»Full timeă»More office than remote // Join operations team, build security tools.
The opportunity: #
Cossack Labs is looking for a junior DevOps / Infrastructure engineer to join operations team and work with us on making innovative security tools robust, reliable and efficient. If you are interested in systems engineering, security, building and maintaining large-scale reliable systems â this could be an interesting offering for you.
We are a data security solutions company, developing software products (open-source and proprietary), as well as providing custom bespoke solutions to innovative development teams around the world. Our mission is to make strong security methodologies and approaches convenient within modern infrastructures and, as the software is eating the world, help it eat the world responsibly, without leaking customerâs data.
Among our customers are power grid operators, payment processors, legal companies, million-user customer applications. We cater to young ambitious startups and well-established enterprises, who use our software and solutions as core part of their security arsenal.
Our mission would be impossible without brilliant engineering force, and weâre looking to grow it.
Sounds interesting?
You will: #
- Participate in designing and improving SSDLC for our products.
- Assist our clients with integrations of our software.
- Develop and maintain internal infrastructure.
- Participate in working out internal procedures, standards, and flows.
- Have an individual set of âgrowth work tasksâ depending on preferred further direction of growth (there are a lot of options).
Technical stack: #
- OS: Linux Debian (mostly), RHEL, Alpine, other Linux distributions just for niche solutions, no MS products at all.
- VPN: IPSec, OpenVPN.
- Virtualization: KVM, Docker.
- IaaC: Ansible, Chef, Terraform.
- DB: PostgreSQL (mostly), MariaDB/MySQL.
We expect you to have: #
- Good knowledge of Linux systems.
- Good networking knowledge.
- Good knowledge and practical experience in scripting languages: one of Python/Ruby + Bash.
- Knowledge and practical experience in at least one of non-scripting languages: C/C++/Go/Rust.
- Understanding of software development lifecycle.
- Familiar with Docker, KVM.
- Have some experience with at least one of PostgreSQL/MySQL.
- You are interested in security and are familiar with at least the most popular technologies and approaches.
Please note that you can be a perfect fit even if not everything weâve outlined above applies to you. If you have any questions, please donât hesitate to ask â everyone is unique.
Extra skills and experience that matter: #
- Deep Linux architecture.
- Deep virtualization skills.
- SSDLC.
- Clouds.
- Advanced networking skills.
- IaaC tools and approaches.
- Advanced knowledge of monitoring approaches and technologies.
- CI/CD, packaging.
- Practical experience with bare metal.
- RPi, other IoT life forms.
We will feel comfortable working together if you: #
- Don’t get desperate to find and read documentation. Of course, each of us is always ready to assist with approaches and search for solutions, but we respect the time of colleagues, and we can read reference information on our own.
- DO NOT think that good advertising replaces deep knowledge.
- You don’t necessarily like to write, but you do write good technical documentation.
- You’d rather do well once than constantly generate monkey patches.
- You’re not deprived of healthy perfectionism, a sense of beauty and a sense of humour.
We offer: #
Environment: #
- Friendly and experienced team: smart people to learn from, great people to build with. Each of us is unique, we value and support each other.
- An atmosphere that motivates you to grow and get smarter every month, a healthy ratio of routine / experimentation.
- Trust: schedule, reporting, bureaucracy is kept at reasonable minimum. We hire smart people and trust them to do the right thing. When things go wrong, we help rather than punish.
- Shared decision making: this business is driven by engineering excellence, so engineers are important part of tactical and strategical business decisions.
- Friendly to humans: not just a formal vacation and sick leave quota. Feel like your mental or physical wellbeing needs care? Take some time off. Feel like working a few days from home? Sure. As long as you’re in line, we are here to support you when you’re not.
Growth: #
- On this position, you can grow into full-on modern Site Reliability Engineer, Dev(Sec)Ops or solution/cloud architect, depending on type of tasks and challenges you find exciting.
- Team that facilitates internal learning and growth all the time.
- Interesting technologies to work with â sometimes, even unique ones (we design applied cryptography schemes and techniques and novel ways to use them).
- Ability to grow into one of the fastest growing industry sectors (computer security) with a team of experienced professionals.
- Management attention to help you improve upon your personal goals (through regular 1:1s and mentoring).
Unique experience: #
- Interesting challenges, great varietyâone day you might be setting up deployment environment for IoT devices that run our code on power plants, the other day â manage intricacies of cross-datacenter database replication.
- Reasonable time budgets and attitude to build things well â we build for decades, rather than till next release.
- Work at the intersection of technologies: software development, information security, cloud/on-prem infrastructure engineering. You wonât be bored :)
- A sense of meaning and responsibility for those who seek purpose â we’re building âinvisible texture of modern civilizationââbits of infrastructure finance, power grids, healthcare rely on, and we are trusted with very challenging aspects of it.
Benefits: #
- Competitive compensation with flexible bonus scheme.
- Sick leaves, 21 vacation days a year, extra days off â according to agreements and laws.
- Conferences, books, courses â we encourage learning and sharing with the community. Our team members share a lot in talks, workshops and blog posts.
Not sure but considering? Talk to us. #
If you see yourself fit but a few things are off â donât hesitate to talk anyway. It might be that your unique combination of skills and knowledge would be perfectly fitting for our environment, but we both just donât know it yet.
Why work at Cossack Labs? #
Some companies prioritise talent and value proposition, while others understand business and would take any job that pays well. However, only few companies choose to specialise in difficult tasks as their primary competency.
We take on difficult jobs, we take mission-critical software and make it mission-secure.
- Virtualise OT infrastructure securely in the presence of active adversaries, preventing them from accessing the susceptible nation-wide network? â Check.
- Provide immediate application security and infrastructure security guidance for mission-critical application that will be deployed on thousands of devices on the front-line tomorrow? â Check.
- Validate counter-reverse engineering protections for power grid hardware to ensure that previously air-gapped environments were safe to open up to the outside world? â Check.
- Ensure that software platforms for exchange of sensitive documents actually have a top-tier SSDLC programme that supplements missing capabilities and builds out processes? â Check.
We operate as a lean core team and a diverse network of experts. The finest people you may work with include PhDs in information security and cryptography, infosec community standard contributors, in-depth experts in rare security topics, and business-centric security engineers with broad experiences. Some of your teammates have worked in infosec since the 1990s and saw the industry grow from nothing. Some of them helped write standards that govern security around you. Maybe someoneâs work actually keeps the lights up while youâre reading this?
Our core engineers go through extensive indoctrination and training to become disciplined, stringent, self-sufficient field unit who owns the outcomes rather than just showing up for work.
As you grow into the Cossack Labs engineer, you’ll work on slow-paced projects to learn and improve, internal projects to innovate and build tools, and of course a few fires, because no smooth sea can make a skilled sailor. You’ll discover what works for you and what you need to learn.
We help innovators who are launching new venues of civilisation while facing significant security risks in becoming more secure and resilient. Customers trust us to achieve their business goals, not merely address gaps someone else has to identify first.
If this is a challenge youâre up to, let's talk!
How to apply?
We'd like to get your CV to start a conversation. A supporting letter explaining your story, your interest in security and operations, what you have done in the past and what kind of work you find interesting would help, but is not necessary.