Location: Bengaluru
Experience: 3-4 Years
Tech Stack Focus: AWS, CDK (TypeScript), Docker, ECS Fargate, CI/CD
About the Company:
Kamakhya Analytics is a technology-driven research and consulting organisation helping leaders,
parties, and institutions decode India’s political and policy landscape. We bring together survey
science, data analytics, and strategic insight to answer complex questions about public opinion,
governance, and performance. From ground-level fieldwork to advanced modelling and
interpretation, every project is built for clarity, accuracy, and impact. Our teams manage the
complete research cycle — design, execution, data engineering, and delivery — under a single
framework of discipline, transparency, and speed. Quality and integrity define our work. We apply
rigorous controls in sampling and verification, maintain secure and reproducible data systems, and
communicate results that withstand scrutiny. At Kamakhya, our mission is simple: turn evidence
into strategy and insight into action.
Role Overview
We are looking for a Mid-Level DevOps Engineer to join our engineering team. You will own and scale our AWS infrastructure platform built on AWS CDK, enabling multiple engineering teams to deploy their services reliably and independently. The ideal candidate has moved beyond manual configuration and is comfortable working with an existing Infrastructure as Code codebase - extending it, not rewriting it.
Key Responsibilities
- Infrastructure Automation: Maintain and extend AWS cloud infrastructure using AWS CDK (TypeScript), managing VPC networking, ECS Fargate microservices, ALB routing, ElastiCache, Route53 DNS, and ACM certificates.
- CI/CD Management: Build and optimize deployment pipelines (AWS CodePipeline/CodeBuild with GitHub integration) to ensure fast and reliable container deployments.
- Team Onboarding: Enable other engineering teams to deploy their services with minimal friction - configure pipelines, set up environments, seed secrets (SSM Parameter Store), and establish monitoring.
- Containerization: Manage ECS Fargate workloads including sidecar patterns (Celery workers), health check configurations, and auto-scaling policies.
- Database & Storage Management: Manage RDS instances, S3 buckets, backup policies, and data lifecycle configurations.
- Monitoring & Observability: Maintain CloudWatch alarms, dashboards, and AWS Budgets. We run cost-conscious infrastructure (shared ALBs, single NAT gateway, right-sized instances) - you'll make informed trade-offs between cost and reliability.
- Documentation: Maintain onboarding guides and runbooks for engineering teams.
- Security & Compliance: Enforce IAM best practices, manage VPC configurations, and ensure data encryption at rest and in transit.
- Debugging & Incident Response: Troubleshoot deployment failures across the full chain and resolve networking, container, and routing issues.
Required Skills & Qualifications
- AWS Expertise: 3+ years of hands-on experience with core AWS services -EC2, ECS Fargate, ALB, VPC, Route53, IAM, CloudWatch, RDS, S3, Lambda, CodePipeline/CodeBuild, ECR, SSM/Secrets Manager.
- Infrastructure as Code: Strong experience with AWS CDK (TypeScript preferred) and/or Terraform. Comfortable reading and extending an existing multi-stack IaC codebase, and writing modular, reusable infrastructure code.
- Scripting: Proficiency in at least one scripting language (TypeScript, Python, or Bash) for automation and IaC development.
- Linux Systems: Strong understanding of Linux administration and networking fundamentals (TCP/IP, DNS, SSH).
- Soft Skills: Ability to support developers who aren't infra-savvy, explain deployment patterns clearly, and operate independently with high ownership.
Preferred (Bonus) Skills
- AWS Certified SysOps Administrator or DevOps Engineer - Associate.
- Experience with Serverless patterns (Lambda, API Gateway, EventBridge).
- Experience with Redis/ElastiCache and async worker patterns (Celery).
- Experience with multi-account AWS strategy (AWS Organizations, Control Tower).
- Familiarity with Kubernetes (EKS) and container orchestration beyond ECS.
- Blue/green or canary deployment strategies, GitOps workflows.
- Security hardening (WAF, GuardDuty, SCPs).
Growth Roadmap
- Infrastructure testing: CDK snapshot tests and policy validation to catch breaking changes and security violations before they reach AWS
- Cost optimization: Scheduled scale-to-zero for non-production environments and Fargate Spot adoption for dev/staging workloads
- Drift detection: Automated checks to catch manual AWS console changes that diverge from the IaC codebase
- Developer self-service: Reduce new service onboarding from a multi-step manual process to a single config-driven provisioning workflow