高级DevOps/平台可靠性工程师
Senior DevOps / Platform Reliability Engineer
Zingtree 是下一代智能流程自动化平台,重新定义了全球顶级支持领导的客户体验运营。我们拥有 500 多家客户,包括 Optum、Corpay、Sony、SharkNinja 和 Allianz,我们通过自助服务、发现自动化机会,并让每位客服人员都成为专家来实现这一目标。
职位描述
我们正在招聘一位高级 DevOps / 平台可靠性工程师,负责支撑我们代理式 CX 产品的平台。你将构建 CI/CD、基础设施和可观测性基础架构,使我们能够安全地向企业客户交付多代理系统。
如果你希望运营一个生产级 AI 平台并利用 AI 来帮助运营它,这个职位适合你。
在这个职位中,你将与开发、运维和基础设施团队合作,自动化和优化流程,构建和维护部署、监控和运维工具,并在开发和生产环境中排查问题。
你将负责的工作
使用 GitHub Actions 和基于 OIDC 的认证来管理和演进 CI/CD 流水线,用于微服务和代理式工作负载,实现安全、快速且可逆的部署。
使用 Infrastructure as Code(IaC)工具如 Terraform 和 CloudFormation 自动化基础设施配置。
运营并扩展我们的 Kubernetes 平台(EKS + Argo CD),包括自动扩展、入口、external-dns、cert-manager、External Secrets Operator、备份、运行时防护措施以及为企业客户提供多租户隔离。
管理边缘和网络边界,包括 Cloudflare(CDN、WAF、机器人管理、DDoS 防护、零信任/访问)、CloudFront、API Gateway、ALB/NLB、Route 53 和网络安全控制。
运营数据和事件层,包括 Aurora MySQL、ElastiCache/Redis、S3 和 MSK(Kafka),负责备份、时间点恢复(PITR)以及符合定义的 RTO/RPO 目标的大规模可用性灾难恢复。
构建和维护 Lambda 工作负载,当事件驱动或无服务器架构是合适的选择时。
构建可观测性作为产品,使用 Prometheus、Grafana 和 OpenTelemetry,包括对 LLM 和代理系统等的遥测,如令牌成本、工具调用延迟、评估信号和提示/版本跟踪。
加强我们的安全和合规性,针对 SOC 2 和 HIPAA,包括最小权限 IAM、SCP、秘密管理、SAST/DAST、依赖项和容器扫描、镜像签名、AWS Config、Security Hub、GuardDuty、Inspe
查看英文原文
About Zingtree
Zingtree is the next-generation intelligent process automation platform reimagining customer experience operations for the world’s top support leaders. With 500+ customers, including Optum, Corpay, Sony, SharkNinja, and Allianz, we transform self-service, surface automation opportunities, and turn every agent into an expert.
The Role
We’re hiring a Senior DevOps / Platform Reliability Engineer to own the platform that powers our agentic CX product. You’ll build the CI/CD, infrastructure, and observability backbone that enables us to ship multi-agent systems safely to enterprise customers.
If you want to operate a production AI platform and use AI to help operate it, this role is for you.
In this role, you will collaborate with development, operations, and infrastructure teams to automate and streamline processes, build and maintain tools for deployment, monitoring, and operations, and troubleshoot issues across development and production environments.
What You'll Do
Own and evolve CI/CD pipelines using GitHub Actions and OIDC-based authentication for microservices and agentic workloads, with safe, fast, and reversible deployments.
Automate infrastructure provisioning using Infrastructure as Code (IaC) tools such as Terraform and CloudFormation.
Operate and scale our Kubernetes platform (EKS + Argo CD), including autoscaling, ingress, external-dns, cert-manager, External Secrets Operator, backups, runtime guardrails, and multi-tenant isolation for enterprise customers.
Manage the edge and network perimeter, including Cloudflare (CDN, WAF, Bot Management, DDoS protection, Zero Trust / Access), CloudFront, API Gateway, ALB/NLB, Route 53, and network security controls.
Operate the data and event tier, including Aurora MySQL, ElastiCache/Redis, S3, and MSK (Kafka), with responsibility for backups, point-in-time recovery (PITR), and multi-AZ disaster recovery aligned to defined RTO/RPO objectives.
Build and maintain Lambda workloads where event-driven or serverless architectures are the right fit.
Build observability as a product using Prometheus, Grafana, and OpenTelemetry, including telemetry for LLM and agentic systems such as token cost, tool-call latency, evaluation signals, and prompt/version tracking.
Strengthen our security and compliance posture for SOC 2 and HIPAA, including least-privilege IAM, SCPs, secrets management, SAST/DAST, dependency and container scanning, image signing, AWS Config, Security Hub, GuardDuty, Inspector, and evidence automation.
Drive FinOps initiatives, including tagging standards, Savings Plans and Reserved Instances, per-tenant and per-workload cost attribution, and LLM cost controls.
Build and evolve our AI-native DevOps capabilities (see section below).
Partner with engineering teams to define platform standards, service templates, deployment best practices, and operational SLOs.
Monitor system performance and ensure reliability, scalability, and security across infrastructure and services.
Collaborate with software engineering teams to support continuous integration and continuous delivery best practices.
Document infrastructure, deployment processes, and operational standards to support knowledge sharing across the team.
Agentic AI in DevOps
You’ll help define how Zingtree uses agentic AI to operate and improve our platform using modern AI operational practices.
Responsibilities include:
Design and operate auto-remediation agents for common production toil such as certificate rotation, noisy pods, infrastructure drift, and flaky CI pipelines, with human-in-the-loop (HITL) controls for any destructive or customer-impacting actions.
Use LLMs for incident triage and root cause analysis, including log and trace summarization, signal correlation, and first-draft postmortems that are always reviewed by humans.
Connect AI agents to internal systems through the Model Context Protocol (MCP), including GitHub, Jira, PagerDuty, AWS, Kubernetes, Terraform, and related platforms, using scoped credentials, audit logging, and allow-listed access.
Apply AI-driven observability techniques, including anomaly detection on metrics, LLM-based log clustering, and alert deduplication and summarization on top of Prometheus and OpenTelemetry.
Establish operational guardrails such as prompt/version pinning, evaluation frameworks for agent behavior, cost and rate-limit controls, policy-as-code (OPA/Conftest) for AI-generated infrastructure changes, and clearly defined blast-radius controls.
Define best practices for AI coding assistants such as GitHub Copilot, Claude, and Amazon Q in infrastructure repositories, including review workflows, prompt design, and restrictions on auto-merged changes.
Treat AI components as production systems with SLOs, observability, on-call readiness, runbooks, and rollback strategies for agents and prompts.
About You
Required Qualifications
5+ years of experience in DevOps, SRE, or Platform Engineering operating production systems on AWS.
Strong experience with CI/CD pipelines and tools such as GitHub Actions, GitLab CI, Jenkins, or CircleCI.
Hands-on experience operating production EKS environments, including autoscaling, ingress, secrets management, and cluster upgrades.
Strong AWS networking experience, including multi-account VPC design, subnets, routing, security groups, NACLs, Route 53, ACM, and load balancers.
Deep experience with Terraform and GitHub Actions, ideally using OIDC-based cloud authentication.
Experience with Aurora/RDS MySQL, Redis (ElastiCache), and S3, including backups, PITR, migrations, and lifecycle management.
Strong observability experience using Prometheus, Grafana, and OpenTelemetry.
Experience operating Argo CD at scale.
Experience with Infrastructure as Code tools such as Terraform, CloudFormation, or Ansible.
Experience managing Cloudflare services including WAF, Bot Management, Rate Limiting, and Zero Trust / Access, along with CloudFront.
Experience operating Kafka/MSK at scale, including topics, consumer groups, and schema registries.
Experience with Lambda and event-driven architectures.
Comfortable working with Python, Bash, and Linux systems.
Strong understanding of security best practices across IAM, KMS, secrets management, networking, and software supply chain security.
Familiarity with vulnerability scanning and compliance tooling.
Nice to Have
Experience operating LLM or ML workloads in production, including LiteLLM, Bedrock, pgvector, prompt caching, or evaluation systems.
Experience building or integrating MCP servers or deploying agent frameworks such as LangGraph or CrewAI in production environments.
How We Work
We bias toward automation over toil. If you do it twice, script it. If it pages twice, fix it.
We’re a small team with high ownership. You’ll help define standards, not just follow them.
Humans stay in the loop for anything risky. AI accelerates decision-making but does not replace judgment.
We value blameless incident reviews, documented decisions, and fast feedback loops.
What We Offer
Competitive compensation packages
Comprehensive health benefits:
100% of employee premiums covered
75%–80% of dependent premiums covered for most health, dental, and vision plans
401(k) plans to support retirement planning (no employer matching currently)
Paid parental leave
Unlimited PTO
Flexible remote work from anywhere
Up to $200/month co-working reimbursement
Home office stipend:
Up to $500 for home office setup
$100/month for internet, phone, and related expenses
Zingtree Values
Lead with Action
We are doers. We move quickly with purpose, take smart risks, learn fast, and focus on outcomes that benefit our customers and the business.
People Really Matter
We win as a team. We care deeply about our customers and employees, helping each other achieve professional growth and meaningful impact.
Ownership Leads to Results
When we commit, we deliver. We operate with integrity, accountability, and high standards.
Expertise Creates Value
We are learners. We continuously grow our knowledge, share expertise, and apply it to create meaningful results.
Transparency Builds Trust
We communicate openly, honestly, and respectfully. We share information that matters and build trusted relationships through clarity and empathy.