Overview
Skills
Job Details
Location: Lehi, UT (Preferred) / Seattle, San Jose (Onsite)
Experience : 15 Years required
The Opportunity
Adobe's Cloud Operations Enablement Services team is seeking an experienced engineer to assist in delivering a global workload identity service. Based on the SPIFFE reference architecture, we will be establishing a new platform to accurately attest workloads and assign them verifiable identity documents in the form of x509 certificates. You'll be instrumental in building a new Tier Zero service at Adobe which will be a foundation platform for future efforts including a global Service Mesh. We are seeking someone with a strong background in deploying cloud-based infrastructure, a solid understanding of public key infrastructure, and the ability to work collaboratively with Adobe's engineering teams across multiple geographic regions.
What you'll Do- Architect a cloud compute platform based on SPIFFE
- Perform SRE roles including deployment, capacity management, observability, and performance tuning
- Collaborate with our Security Architecture team to define attestation for a variety of workloads spanning multiple compute platforms
- Support engineering teams who will be onboarding to this new service
- Proficiency in operating and supporting cloud-based services using IaC (infrastructure as code, Terraform)
- Proven experience as a systems administrator or service reliability engineer
- Experience with CI/CD processes and source control mechanisms (GitHub)
- Solid understanding of cryptography including x509 certificates
- Knowledge of federated trust models for identity and security
- Understanding and use of public cloud infrastructure (AWS, Azure, Google Cloud Platform)
- Experience with Kubernetes
- Strong focus on prioritizing customer experience and support
- Ability to communicate clearly and efficiently with customers and leadership
- Experience working with large enterprises with heterogeneous compute platforms
Note: This role will help shape the workload identity service at Adobe, a cross-platform, multi-cloud, identity service to authoritatively attest the provenance of software workloads at Adobe.