Deutsche Telekom IT Solutions

Secure Build, Release & Observability Engineer - T Cloud Public (REF5741L)

Budapest, Szeged, Pécs, Debrecen, hu · Posted 5d ago

salary not listedseniorDept: T Cloud Public
GitLab CIJenkinsArgoCDTektonGitHub EnterpriseHelmDockerKubernetesKanikoBuildKitNexusHarborArtifactoryTrivyGrypeSyftCosignPrometheusGrafanaLokiOpenTelemetryELKOpenSearchAlertmanagerTerraformAnsiblePythonBash

Job Description

Mission 
Establish and operate the build, release, and observability backbone required for Meridian technical due diligence, code quarantine, reproducible software validation, controlled deployment preparation, and reliable engineering handover across cloud platform components 

Role focus 
This infrastructure and operations role focuses on CI/CD pipelines, artefact flows, release evidence, build reproducibility, observability, and operational controls. The candidate should make complex engineering environments measurable, supportable, and auditable while enabling AI-assisted code validation and documentation workflows 

Key responsibilities 

  • Design and operate CI/CD pipelines for repository intake, build execution, image creation, artefact promotion, environment deployment, and evidence generation 

  • Implement release controls for private registries, package sources, signing, SBOM generation, vulnerability scanning, dependency provenance, and approval workflows 

  • Create observability across build systems, workflow services, repositories, test environments, model endpoints, and platform components using logs, metrics, traces, and dashboards 

  • Support troubleshooting of build failures, flaky pipelines, missing dependencies, environment drift, performance bottlenecks, and handover-readiness gaps 

  • Partner with software, SRE, testing, and security teams to define runbooks, operational KPIs, risk indicators, and audit-ready evidence packs for release decisions 

Examples of market tools, models, and platform components expected 

  • CI/CD and release tools such as GitLab CI, Jenkins, ArgoCD, Tekton, GitHub Enterprise, Helm, Docker, Kubernetes, Kaniko, BuildKit, Nexus, Harbor, or Artifactory. 

  • Security and supply-chain tooling such as Trivy, Grype, Syft, Cosign, SLSA-oriented controls, SBOM workflows, dependency scanning, secrets detection, and policy gates. 

  • Observability stacks such as Prometheus, Grafana, Loki, OpenTelemetry, ELK/OpenSearch, Alertmanager, log aggregation, dashboarding, and automated health checks. 

  • AI engineering integrations such as code-scanning workflows, model-backed log analysis helpers, documentation generators, internal model gateways, and workflow execution services. 

  • Infrastructure automation using Terraform, Ansible, Helm, Python, Bash, GitOps patterns, private networks, controlled proxies, package mirrors, and secure secrets management. 

Candidate profile 

  • 5+ years in DevOps, SRE, release engineering, platform operations, infrastructure automation, or secure build engineering roles. 

  • Strong hands-on experience with CI/CD systems, Kubernetes-based delivery, container builds, private registries, artefact management, and release automation. 

  • Practical knowledge of observability, incident response, operational dashboards, runbooks, SLA/SLO thinking, and troubleshooting distributed engineering environments. 

  • Good understanding of software supply-chain security, SBOMs, image scanning, secrets handling, dependency provenance, and audit-ready release evidence. 

  • Comfortable operating in confidentiality-sensitive programs where reproducibility, traceability, controlled access, and structured collaboration with engineering teams are essential. 

Please note: remote working is only possible from within Hungary due to European taxation regulations.

* Please be informed that our remote working possibility is only available within Hungary due to European taxation regulation.