Our client is a federally regulated, CDIC-insured Canadian bank that serves customers the big banks tend to overlook. They do this through a broker network and a digital banking platform that has been growing steadily. They are small enough that engineers own real scope and large enough that the work carries actual regulatory weight.
...
They are in the middle of a technology transformation, and this role sits at the centre of it. You would report to the Lead DevOps Engineer and take ownership of how software gets built, secured and shipped across their Azure and AWS environments. The bank is hiring two of these positions at the same time, which tells you how seriously they are taking the build-out.
The person who does well here is a hands-on cloud engineer with genuine Azure networking depth, not just pipeline experience. A lot of DevOps engineers can wire up GitHub Actions and run Terraform. Fewer can design a secure hub-and-spoke network, place a firewall correctly and explain why. If that second part is your comfort zone, this is a strong fit.
If you're interested, please send your resume to kyle.chan@randstaddigital.com
Advantages
Two roles going in at once, in a team that is mid-transformation, so there is no shortage of meaningful work.
Retention on the technology side is high. People stay because the work stays interesting.
Real ownership. You are not one small piece of a platform team of eighty.
Regulated banking environment, which is valuable and portable experience.
The bank is investing in technical training and is expanding its engineering ambitions further next year.
Responsibilities
Design and maintain the automated CI/CD pipelines the engineering teams rely on to ship code, using GitHub Actions along with code quality and vulnerability scanning tooling.
Build and manage cloud infrastructure across Azure and AWS, using Terraform as the primary provisioning tool and Bash or Python where scripting is the better answer.
Own the Azure network architecture end to end. This covers hub-and-spoke design, virtual networks, subnets, network security groups, routing and peering, and it extends to Azure Firewall, Application Gateway with WAF, Front Door, Private Endpoints and Private Link.
Manage hybrid connectivity through ExpressRoute and site-to-site VPN, and administer public and private Azure DNS zones so name resolution stays reliable across every environment.
Apply security controls that hold up to federal and provincial regulatory scrutiny, and keep vulnerability management and monitoring running continuously rather than at audit time.
Containerize applications with Docker and run them on Kubernetes, including managed services such as AKS and EKS.
Put proactive monitoring, logging and reporting in place using Azure Monitor, Microsoft Defender and CloudWatch, so problems surface before users find them.
Investigate production incidents, drive them to resolution quickly, then do the root cause work and put in the fix that stops a repeat.
Keep systems, processes and configurations documented well enough that the next person can pick them up.
Advise on cost, and find the balance between performance, security and what the budget will actually carry.
Qualifications
Strong, demonstrable Azure networking experience. You should be able to walk through a hub-and-spoke environment you personally designed or rebuilt, including where the firewall sat, how traffic was routed through it, and how you used Private Endpoints and Private Link to lock down connectivity.
Around seven years of experience across DevOps, cloud engineering or software development, with Azure as your primary cloud rather than a secondary one.
Extensive hands-on Terraform experience provisioning and managing real production infrastructure, not just consuming modules someone else wrote.
Proven CI/CD design and build experience in GitHub Actions or Azure DevOps.
Working knowledge of Docker and Kubernetes in a managed cloud context.
Solid scripting ability in Bash, PowerShell or Python.
Familiarity with security principles and regulatory compliance in a regulated setting, ideally OSFI, PCI-DSS or Quebec Law 25.
Good troubleshooting and performance tuning instincts in distributed systems, and comfort working in an Agile, Scrum or Kanban team.
A bachelor's degree in computer science, software engineering or a related field, or equivalent professional experience.
Preferred but not required
Azure DevOps Engineer certification, or HashiCorp Terraform Associate or higher.
AWS cloud and DevOps experience alongside Azure.
Exposure to ZTNA or SASE, data loss prevention tooling, Okta, and secure cloud network topologies.
Configuration management experience with Ansible, Chef or Puppet.
A background in application development or software engineering tooling.
Summary
Our client is a federally regulated, CDIC-insured Canadian bank that serves customers the big banks tend to overlook. They do this through a broker network and a digital banking platform that has been growing steadily. They are small enough that engineers own real scope and large enough that the work carries actual regulatory weight.
They are in the middle of a technology transformation, and this role sits at the centre of it. You would report to the Lead DevOps Engineer and take ownership of how software gets built, secured and shipped across their Azure and AWS environments. The bank is hiring two of these positions at the same time, which tells you how seriously they are taking the build-out.
The person who does well here is a hands-on cloud engineer with genuine Azure networking depth, not just pipeline experience. A lot of DevOps engineers can wire up GitHub Actions and run Terraform. Fewer can design a secure hub-and-spoke network, place a firewall correctly and explain why. If that second part is your comfort zone, this is a strong fit.
If you're interested, please send your resume to kyle.chan@randstaddigital.com
Randstad Canada is committed to fostering a workforce reflective of all peoples of Canada. As a result, we are committed to developing and implementing strategies to increase the equity, diversity and inclusion within the workplace by examining our internal policies, practices, and systems throughout the entire lifecycle of our workforce, including its recruitment, retention and advancement for all employees. In addition to our deep commitment to respecting human rights, we are dedicated to positive actions to affect change to ensure everyone has full participation in the workforce free from any barriers, systemic or otherwise, especially equity-seeking groups who are usually underrepresented in Canada's workforce, including those who identify as women or non-binary/gender non-conforming; Indigenous or Aboriginal Peoples; persons with disabilities (visible or invisible) and; members of visible minorities, racialized groups and the LGBTQ2+ community.
Randstad Canada is committed to creating and maintaining an inclusive and accessible workplace for all its candidates and employees by supporting their accessibility and accommodation needs throughout the employment lifecycle. We ask that all job applications please identify any accommodation requirements by sending an email to accessibility@randstad.ca to ensure their ability to fully participate in the interview process.
This posting is for existing and upcoming vacancies.
show more
Our client is a federally regulated, CDIC-insured Canadian bank that serves customers the big banks tend to overlook. They do this through a broker network and a digital banking platform that has been growing steadily. They are small enough that engineers own real scope and large enough that the work carries actual regulatory weight.
They are in the middle of a technology transformation, and this role sits at the centre of it. You would report to the Lead DevOps Engineer and take ownership of how software gets built, secured and shipped across their Azure and AWS environments. The bank is hiring two of these positions at the same time, which tells you how seriously they are taking the build-out.
The person who does well here is a hands-on cloud engineer with genuine Azure networking depth, not just pipeline experience. A lot of DevOps engineers can wire up GitHub Actions and run Terraform. Fewer can design a secure hub-and-spoke network, place a firewall correctly and explain why. If that second part is your comfort zone, this is a strong fit.
If you're interested, please send your resume to kyle.chan@randstaddigital.com
Advantages
...
Two roles going in at once, in a team that is mid-transformation, so there is no shortage of meaningful work.
Retention on the technology side is high. People stay because the work stays interesting.
Real ownership. You are not one small piece of a platform team of eighty.
Regulated banking environment, which is valuable and portable experience.
The bank is investing in technical training and is expanding its engineering ambitions further next year.
Responsibilities
Design and maintain the automated CI/CD pipelines the engineering teams rely on to ship code, using GitHub Actions along with code quality and vulnerability scanning tooling.
Build and manage cloud infrastructure across Azure and AWS, using Terraform as the primary provisioning tool and Bash or Python where scripting is the better answer.
Own the Azure network architecture end to end. This covers hub-and-spoke design, virtual networks, subnets, network security groups, routing and peering, and it extends to Azure Firewall, Application Gateway with WAF, Front Door, Private Endpoints and Private Link.
Manage hybrid connectivity through ExpressRoute and site-to-site VPN, and administer public and private Azure DNS zones so name resolution stays reliable across every environment.
Apply security controls that hold up to federal and provincial regulatory scrutiny, and keep vulnerability management and monitoring running continuously rather than at audit time.
Containerize applications with Docker and run them on Kubernetes, including managed services such as AKS and EKS.
Put proactive monitoring, logging and reporting in place using Azure Monitor, Microsoft Defender and CloudWatch, so problems surface before users find them.
Investigate production incidents, drive them to resolution quickly, then do the root cause work and put in the fix that stops a repeat.
Keep systems, processes and configurations documented well enough that the next person can pick them up.
Advise on cost, and find the balance between performance, security and what the budget will actually carry.
Qualifications
Strong, demonstrable Azure networking experience. You should be able to walk through a hub-and-spoke environment you personally designed or rebuilt, including where the firewall sat, how traffic was routed through it, and how you used Private Endpoints and Private Link to lock down connectivity.
Around seven years of experience across DevOps, cloud engineering or software development, with Azure as your primary cloud rather than a secondary one.
Extensive hands-on Terraform experience provisioning and managing real production infrastructure, not just consuming modules someone else wrote.
Proven CI/CD design and build experience in GitHub Actions or Azure DevOps.
Working knowledge of Docker and Kubernetes in a managed cloud context.
Solid scripting ability in Bash, PowerShell or Python.
Familiarity with security principles and regulatory compliance in a regulated setting, ideally OSFI, PCI-DSS or Quebec Law 25.
Good troubleshooting and performance tuning instincts in distributed systems, and comfort working in an Agile, Scrum or Kanban team.
A bachelor's degree in computer science, software engineering or a related field, or equivalent professional experience.
Preferred but not required
Azure DevOps Engineer certification, or HashiCorp Terraform Associate or higher.
AWS cloud and DevOps experience alongside Azure.
Exposure to ZTNA or SASE, data loss prevention tooling, Okta, and secure cloud network topologies.
Configuration management experience with Ansible, Chef or Puppet.
A background in application development or software engineering tooling.
Summary
Our client is a federally regulated, CDIC-insured Canadian bank that serves customers the big banks tend to overlook. They do this through a broker network and a digital banking platform that has been growing steadily. They are small enough that engineers own real scope and large enough that the work carries actual regulatory weight.
They are in the middle of a technology transformation, and this role sits at the centre of it. You would report to the Lead DevOps Engineer and take ownership of how software gets built, secured and shipped across their Azure and AWS environments. The bank is hiring two of these positions at the same time, which tells you how seriously they are taking the build-out.
The person who does well here is a hands-on cloud engineer with genuine Azure networking depth, not just pipeline experience. A lot of DevOps engineers can wire up GitHub Actions and run Terraform. Fewer can design a secure hub-and-spoke network, place a firewall correctly and explain why. If that second part is your comfort zone, this is a strong fit.
If you're interested, please send your resume to kyle.chan@randstaddigital.com
Randstad Canada is committed to fostering a workforce reflective of all peoples of Canada. As a result, we are committed to developing and implementing strategies to increase the equity, diversity and inclusion within the workplace by examining our internal policies, practices, and systems throughout the entire lifecycle of our workforce, including its recruitment, retention and advancement for all employees. In addition to our deep commitment to respecting human rights, we are dedicated to positive actions to affect change to ensure everyone has full participation in the workforce free from any barriers, systemic or otherwise, especially equity-seeking groups who are usually underrepresented in Canada's workforce, including those who identify as women or non-binary/gender non-conforming; Indigenous or Aboriginal Peoples; persons with disabilities (visible or invisible) and; members of visible minorities, racialized groups and the LGBTQ2+ community.
Randstad Canada is committed to creating and maintaining an inclusive and accessible workplace for all its candidates and employees by supporting their accessibility and accommodation needs throughout the employment lifecycle. We ask that all job applications please identify any accommodation requirements by sending an email to accessibility@randstad.ca to ensure their ability to fully participate in the interview process.
This posting is for existing and upcoming vacancies.
show more