Responsibilities
RHEL Platform Management (Primary Focus)
- Own and maintain the RHEL OS fleet underpinning OCP worker/control-plane nodes and non-containerised application servers
- Plan and execute RHEL OS patching cycles (EUS channel management, kernel upgrades, reboot sequencing) with minimal service disruption
- Implement and validate OS hardening benchmarks — SELinux policies, firewall rules, audit configuration, and cryptographic policy settings
- Troubleshoot system-level issues: kernel parameters, resource limits (ulimits, cgroups), storage mounts (NFS, iSCSI, SMB/CIFS PVs on OCP)
- Manage RHEL subscriptions, entitlements, and satellite/image registries
OCP Cluster Administration (Primary Focus)
- Deploy, upgrade, and maintain OCP 4.x clusters — including control plane, etcd health, and worker node lifecycle
- Configure and manage OCP Machine Config Operator (MCO) for node-level OS customisation: chrony NTP, SSH hardening, kernel arguments, and custom MachineConfigs
- Manage cluster certificates, ingress/route configurations, HAProxy timeout tuning for long-running enterprise workloads (e.g., Pega BIX, batch jobs)
- Administer Quay mirror registry — image mirroring, vulnerability scanning results, VAPT remediation for bundled components (e.g., jQuery CVEs)
- Implement OCP RBAC, SCCs, network policies, and resource quotas across multiple namespaces and project environments
- Support JVM and container resource tuning for Java workloads on OCP (heap sizing, Metaspace limits, G1GC flags, container memory budgeting)
Application Platform & Integration Support
- Take ownership of one or more application platforms (e.g., Pega Infinity, WebSphere, IBM MQ) — covering setup in HA mode, application patching, and ongoing operational support
- Participate in architecture sessions with build teams, advising on integration points (web services, MQ, SFTP, API gateway)
- Support container provisioning, image lifecycle, and deployment of containerised services across DEV / SIT / UAT / PROD environments
Operational Governance & Security
- Define and execute operational processes: OS patching, application-level patching, performance monitoring, housekeeping, backup and recovery
- Support VAPT engagements — assess Nessus/vulnerability findings, coordinate remediation, and produce risk acceptance or remediation reports
- Apply security hardening principles (IM8 compliance, SSCT framework, CIS benchmarks) across RHEL and OCP layers
- Contribute to DevSecOps tooling and automation concepts — CI/CD pipelines, IaC, and operational runbooks
- Support AWS administration tasks where applicable (CloudWatch monitoring, IAM, S3, hybrid integration)
Requirements
- Degree in Computer Science, Information Technology, Systems Engineering, or equivalent practical experience.
- At least 3-4 years of relevant working experiences
- Hands-on experience administering RHEL 8/9 in enterprise production environments
- Hands-on experience deploying, configuring, and administering OpenShift Container Platform (OCP) 4.x clusters (bare metal or IaaS)
- Designing and operating multi-tier containerised architectures on OCP/Kubernetes
- Working knowledge of IBM MQ messaging — queue manager setup, channel administration, troubleshooting, and HA configuration
- Familiar with microservices architecture, API gateway integration, and container image lifecycle management
Shortlisted candidates will be offered a 1 Year agency contract employment.