Role: RH Ansible Automation Platform Principal Consultant
Location: Remote - Must work UK hours
Enterprise AAP Lifecycle & Multi-Cluster Mesh Architecture:
Elite competency in assessing current-state deployments, designing highly available target-state architectures, and orchestrating migrations across legacy AAP 1.x, AAP 2.4, and AAP 2.6 environments. Includes deep expertise in scaling hybrid topologies via Automation Mesh and optimizing VM execution node clustering.
Cloud-Native OpenShift & Operator-Based Engineering:
Hands-on knowledge of Red Hat OpenShift administration and cloud-native container infrastructure. This requires defining custom OpenShift resources, deploying and updating via the AAP Operator, and managing persistent state, storage parameters, and clustered database backups/restores within containerized environments.
Next-Gen Automation Ecosystem Guardrails (EDA & PAH): Production-level expertise in designing and optimizing Event-Driven Ansible (EDA) engines to consume real-time observability data (e.g., Red Hat Lightspeed alerts, webhooks) and trigger automated remediation rulebooks. Proven skill in implementing Private Automation Hub (PAH) frameworks to securely sign, cache, and govern enterprise execution environments and collections.
Playbook Modernization & Performance Optimization:
Deep capability in reviewing and refactoring large portfolios of legacy Ansible code to enforce coding standards, eliminate deprecated modules, and resolve structural changes required for Ansible Core 2.16+ execution environments. This includes mitigating security
vulnerabilities like template injection risks (e.g., CVE-2023-5764) within conditionals.
Enterprise Infrastructure & Network Topology Integration:
Mastery of physical, virtual, and hybrid-cloud environments across Red Hat Enterprise Linux (RHEL) and Windows infrastructure. Expertise encompasses navigating complex security boundaries, configuring secure proxy settings, managing air-gapped environment constraints, and integrating AAP with Enterprise CMDBs and CI/CD version control
architectures (Git).
Platform Security Governance, Auditing, and Compliance:
Strategic capability to translate rigorous corporate compliance and security profiles into system configurations, Role-Based Access Control (RBAC) tiers, and credential policies. Utilizes advanced auditing metrics (such as AAP 2.6 automated job labeling) to provide a verifiable chain of intent for automated remediation pipelines to auditors.
Business Continuity, Strategy, and Stakeholder Engagement:
Proven ability to author technical roadmaps, disaster recovery playbooks, architecture decision records (ADRs), and low-downtime cutover/rollback strategies. Highly developed executive-level communication skills used to bridge complex platform capabilities (like
ROI tracking dashboards or self-service portal features) directly into
organizational business outcomes.
OS Lifecycle & In-Place Upgrades (RHEL 8 to RHEL 9): Hands-on expertise managing enterprise operating system lifecycle transitions. Proficient in executing Red Hat Leapp framework upgrades, resolving OS-level software dependencies, repository mapping,
and validating system integrity across physical and virtual RHEL estates.
Phased Application & Schema Migration: Deep understanding of Red Hat''s "one-change-at-a-time" architectural constraint. Proven ability to extract legacy AAP data, perform
PostgreSQL database migrations (Postgres 13 to 15+), and execute seamless application-layer upgrades following decoupled OS maintenance windows.
RPM to Containerized Topology Modernization:
Specialized skill in managing legacy RPM-based AAP deployments on RHEL, with the distinct capability to architect the eventual platform transition from RHEL 9 RPM layouts into cloud-native, containerized, or OpenShift-Operator architectures.