SMTS - Development [CN-AOS]
Hungry, Humble, Honest, with Heart.
The Opportunity
We are seeking a highly experienced Senior Software Engineer with a specialized background in system security, Kubernetes internals, and distributed storage. In this high-impact role, you will be the primary technical driver for securing the intersection of our CN-AOS platform and NKP.
You will design secure-by-default architectures, develop Kubernetes Custom Resource Definitions (CRDs) and operators, and ensure our Container Storage Interface (CSI) implementations are hardened against modern attack vectors while effortlessly serving enterprise and AI workloads.
About the Team
The Cloud Native AOS (CN-AOS) team is building enterprise-grade storage and data services platform for containerized world. We are evolving our industry-leading distributed infrastructure into a fully cloud-native architecture designed to run seamlessly on top of any Kubernetes platform be it NKP, EKS or any managed/upstream Kubernetes environment.
Your Role
- Security Architecture & Hardening: Lead the threat modeling and secure-by-design architecture for the CN-AOS distributed storage fabric. Ensure secure deployment and operations across NKP, EKS, and other Kubernetes platforms by implementing robust Authentication and Authorization (AuthN/AuthZ) for storage microservices, deeply integrating with K8s RBAC, OIDC, and workload identity frameworks (e.g., SPIFFE/SPIRE)
- Platform Hardening & Compliance: Drive the implementation of security controls to ensure the CN-AOS platform complies with strict industry standards, specifically CIS (Center for Internet Security) benchmarks for Kubernetes and Linux, as well as FIPS compliance and zero-trust guidelines.
- Cloud-Native Development: Design and build advanced Kubernetes Controllers, Operators, and CRDs in Golang to natively orchestrate and secure storage workloads.
- Distributed Systems Engineering: Tackle complex problems in large-scale distributed systems, focusing on performance, scaling out, and resiliency.
- Technical Leadership: Drive architectural reviews, establish secure coding standards, and mentor junior and mid-level engineers to act as a technical force multiplier
What You Will Bring
- Experience: 10+ years of software engineering experience, with at least 3+ years focused on building scalable distributed systems, cloud platforms, or security infrastructure.
- Kubernetes Expertise: Deep expertise in Golang and extensive experience with Kubernetes internals, building K8s Operators/Controllers, and working with the Cluster API (CAPI).
- Security Domain Knowledge: Strong understanding of applied cryptography, PKI, TLS/mTLS, secure network protocols, secrets management (KMS), and zero-trust architecture principles.
- Storage Fundamentals: Solid conceptual and practical understanding of distributed storage systems (block, file, object), data replication, deduplication, and high availability.
- Systems Engineering: Strong background in Linux OS internals, networking, container runtimes (containerd, Docker), and kernel security modules.
- Education: Bachelor’s or Master’s degree in Computer Science, Computer Engineering, or a related field.
Work Arrangement
Hybrid: This role operates in a hybrid capacity, blending the benefits of remote work with the advantages of in-person collaboration. In locations where our workplace policy applies (i.e. San Jose, Durham, Mexico City, Bangalore, Pune, Hoofddorp, Belgrade, Barcelona, Singapore, Sydney and Tokyo), employees are expected to work onsite a minimum of 3 days per week to foster collaboration, team alignment, and access to in-office resources. Workplace type may vary based on location and team requirements. Please speak with your recruiter for details. Additional team-specific guidance and norms will be provided by your manager.
--
Nutanix is an equal opportunity employer.
Nutanix is an Equal Employment Opportunity and (in the U.S.) an Affirmative Action employer. Qualified applicants are considered for employment opportunities without regard to race, color, religion, sex, sexual orientation, gender identity or expression, national origin, age, marital status, protected veteran status, disability status or any other category protected by applicable law. We hire and promote individuals solely on the basis of qualifications for the job to be filled. We strive to foster an inclusive working environment that enables all our Nutants to be themselves and to do great work in a safe and welcoming environment, free of unlawful discrimination, intimidation or harassment. As part of this commitment, we will ensure that persons with disabilities are provided reasonable accommodations. If you need a reasonable accommodation, please let us know by contacting [email protected].