Website:
exuverse.com
Job details:
About us
Exuverse builds a portfolio of B2B SaaS products across AI, compliance and fintech — including ProtectComply (DPDP Act compliance automation), IntelloWork (enterprise conversational AI on WhatsApp, Teams and web), Invesaur (mutual fund investing) and Woodeon (D2C ecommerce).
Everything runs on AWS. We ship fast, we run real production workloads for enterprise customers, and infrastructure is not an afterthought here — it's the thing that decides whether we can sell to a bank.
You'll own it.
What you'll do
AWS Infrastructure — end to end
- Design, build and run our AWS footprint: VPC, subnets, routing, NAT, security groups, NACLs, Transit Gateway, VPC endpoints
- Compute across ECS Fargate, EC2, Lambda and EKS — right-sizing, autoscaling, spot strategy and cost control
- Data layer: RDS/Aurora, DynamoDB, ElastiCache, OpenSearch/Solr, S3 lifecycle and storage tiering
- IAM done properly — least privilege roles, cross-account access, SSO, no long-lived keys floating around
- Secrets and config via Secrets Manager / Parameter Store / KMS
Containers & Orchestration
- Set up and operate ECS and EKS clusters from scratch — node groups, task definitions, service discovery, ingress controllers, HPA/Karpenter, Helm charts
- Build sane container images, manage ECR lifecycle policies, handle rollout and rollback strategies
- Blue/green and canary deployments that don't wake anyone up at 2am
Load Balancing & Networking
- ALB, NLB, target groups, health checks, sticky sessions, path- and host-based routing
- CloudFront, Route 53, ACM certificates, WAF rules, Shield, rate limiting and DDoS posture
- Private connectivity patterns, VPN/Direct Connect, and secure access via SSM Session Manager instead of open SSH
CI/CD
- Build and maintain pipelines in GitHub Actions / GitLab CI / AWS CodePipeline
- Automated build, test, security scan, artifact promotion and multi-environment deploys (dev → staging → prod)
- Zero-downtime releases, feature-flag-friendly deploys, fast and reliable rollbacks
- Cut deploy time and manual steps wherever they exist
Infrastructure as Code
- Terraform as the default — modules, remote state, workspaces, drift detection, plan reviews in PRs
- Nothing gets clicked in the console and forgotten
Observability & Reliability
- CloudWatch, Prometheus/Grafana, OpenTelemetry, centralised logging, distributed tracing
- Meaningful alerts, dashboards people actually look at, runbooks and on-call hygiene
- Backup, DR, RTO/RPO planning and actual restore drills
Security & Compliance
- Harden environments to support SOC 2 / ISO 27001 / DPDP-aligned controls
- Vulnerability scanning, patching cadence, audit logging, GuardDuty/Security Hub/Config
- Support customer security questionnaires and enterprise infra reviews
What we're looking for
- 4+ years in DevOps, SRE, Cloud or Platform Engineering
- Deep, hands-on AWS — not just "used EC2 once", but built and owned production environments
- Strong Terraform (or CloudFormation/Pulumi with willingness to move to Terraform)
- Solid with Docker and at least one orchestrator (ECS or Kubernetes) in production
- Built CI/CD pipelines from scratch, not just edited existing YAML
- Comfortable in Linux and scripting with Bash and Python
- Networking fundamentals you can reason about: DNS, TLS, routing, ports, subnets, why the request is timing out
- Git workflows, branching strategies, code review discipline
Click on Apply to know more.