Job description
Responsibilities:
1. Responsible for daily operations, troubleshooting, and performance optimization of Linux systems.
2. Manage and optimize AWS cloud resources (EC2, EKS, RDS, S3, etc.) to ensure high availability and security of the system.
3. Configure and optimize security-related services such as CDN, WAF, firewalls, and DDoS protection to enhance application security and stability.
4. Participate in the deployment and maintenance of Kubernetes/EKS clusters to ensure stable operation of business services.
5. Assist the development team in building and maintaining CI/CD processes to ensure the efficiency and compliance of continuous delivery.
6. Write automation scripts (Shell/Python/Golang, etc.) to improve the level of automation in operations and security protection.
7. Establish and improve monitoring alerts, log management, and security audit systems.
8. Respond quickly to security incidents or system failures and drive problem identification and resolution.
Requirements:
1. Proficient in Linux operating system and common operation tools.
2. Familiar with the deployment and operation of Kubernetes/EKS, with practical experience in containerized environments.
3. Familiar with common AWS services (EC2, EKS, RDS, S3, etc.) and have production environment management experience.
4. Familiar with the configuration, tuning, and operation of CDN and WAF (Cloudflare, AWS WAF, Nginx WAF, etc.).
5. Basic scripting development skills (Shell, Python, or Golang).
6. Familiar with common DevOps toolchains (Git, Docker, Helm, Terraform, Prometheus, Grafana, etc.).
7. Good communication skills, team spirit, and security awareness.
8. Good English reading and writing skills, capable of remote collaboration.
9. Experience in finance, digital currency exchanges, or other high-concurrency system operations is preferred.
Bonus Points:
1. Experience in Golang or Python development, capable of developing security or operations-related tools.
2. Familiar with security compliance systems (such as ISO27001, SOC2) and enterprise-level security architecture design.
3. Familiar with GitOps, zero trust architecture, security automation, and SRE practices.
4. Experience in building protection systems (such as DDoS protection, WAF rule tuning, Bot protection).
