RQ11363 – Senior DevOps/Cloud Engineer
Client: Ministry of Public and Business Service Delivery and Procurement
Work Location: 222 Jarvis St, Toronto, Ontario, Canada — Onsite
Estimated Start Date: August 17, 2026
Estimated End Date: August 16, 2027
Business Days: 252.00
Extension: Probable after the initial mandate
Hours: 7.25 hours per day
Security Level: CRJMC
Role Overview
We are seeking a Senior DevOps/Cloud Engineer to design, build, manage, and support secure, scalable, highly available cloud environments supporting digital products. The successful candidate will bring strong hands-on expertise in AWS, Terraform/Terraform Cloud, Ansible, Red Hat OpenShift Service on AWS (ROSA), CI/CD, cloud security, and observability.
The role will focus on cloud infrastructure architecture, Infrastructure as Code, configuration management, container platforms, automated delivery pipelines, security and compliance, and platform reliability.
Key Responsibilities
- Cloud Infrastructure & AWS — 25%
- Design, provision, and manage AWS infrastructure, including VPCs, subnets, security groups, IAM policies, EC2, ECS, EKS, RDS, S3, Route 53, and CloudFront.
- Architect multi-account AWS environments following AWS Well-Architected Framework principles.
- Implement AWS cost optimization strategies, including Reserved Instances, Savings Plans, and resource rightsizing.
- Implement and maintain CloudTrail, AWS Config, GuardDuty, Security Hub, and AWS Organizations SCPs.
- Design, build, and support cloud environments for digital products.
- Monitor and assess application and cloud infrastructure performance to ensure availability and reliability.
- Infrastructure as Code – Terraform/Terraform Cloud — 20%
- Develop, maintain, and refactor Terraform modules and configurations for cloud infrastructure.
- Manage Terraform Cloud workspaces, remote state backends, variable sets, and team access policies.
- Establish and enforce IaC standards covering module versioning, input/output conventions, and documentation.
- Implement infrastructure drift detection and remediation using Terraform Cloud run tasks and policy-as-code solutions such as Sentinel or OPA.
- Lead Terraform code reviews and mentor junior team members on Infrastructure as Code best practices.
- Configuration Management – Ansible — 15%
- Author and maintain Ansible playbooks, roles, and collections for server configuration, application deployment, and compliance enforcement.
- Manage Ansible inventories across dynamic cloud environments using AWS dynamic inventory plugins.
- Integrate Ansible automation with CI/CD pipelines to support repeatable and auditable deployments.
- Use Ansible Vault for secure secrets and credential management.
- Develop idempotent, well-tested automation to reduce manual effort and configuration drift.
- Container Platform – OpenShift ROSA — 10%
- Operate and administer Red Hat OpenShift Service on AWS (ROSA) clusters.
- Perform cluster upgrades, node scaling, and add-on management.
- Define and enforce OpenShift RBAC, Network Policies, and SecurityContextConstraints (SCCs).
- Manage Operators, Helm charts, and Kustomize overlays for workload deployments on ROSA.
- Ensure cluster hardening in accordance with CIS benchmarks and organizational security policies.
- CI/CD Pipelines — 10%
- Design and maintain CI/CD pipelines using GitLab CI and Azure DevOps Service for infrastructure and application delivery.
- Implement GitOps workflows using ArgoCD for declarative and auditable deployments to OpenShift ROSA.
- Integrate security scanning tools, including SAST, container scanning, and dependency auditing, into pipeline gates.
- Promote shift-left testing practices by validating infrastructure changes before production promotion.
- Maintain pipeline-as-code standards through version-controlled and peer-reviewed pipeline definitions.
- Security & Compliance — 10%
- Contribute to the team’s security posture by embedding security controls throughout the infrastructure and CI/CD lifecycle.
- Implement secrets management solutions such as AWS Secrets Manager.
- Enforce least-privilege access and secure credential management practices.
- Support vulnerability management by triaging findings from infrastructure and container scanning tools.
- Participate in incident response and post-mortem activities.
- Track remediation actions through successful resolution.
- Observability & Reliability — 10%
- Build and maintain end-to-end observability solutions using AWS CloudWatch.
- Define and track SLOs and SLIs for critical platform services and workloads.
- Participate in and lead on-call incident response for platform-level issues.
- Conduct Root Cause Analysis (RCA) and drive permanent corrective actions.
- Create and maintain operational runbooks and Architectural Decision Records (ADRs).
General Skills & Experience
- Experience with one or more leading cloud platforms, including AWS, Microsoft Azure, or Google Cloud.
- Experience maintaining complex Linux cloud environments, including CentOS, Ubuntu, or CoreOS.
- Experience supporting modern web technologies such as LAMP, Drupal, and Elasticsearch/Elastic Cloud.
- Experience setting up development environments and mechanisms using tools such as JIRA, Confluence, Maven, Jenkins, or similar technologies.
- Strong scripting experience with languages such as Python, Bash, PHP, Java, JavaScript, or Node.js.
- Experience with build and automation tools such as Git, Ansible, Chef, and Puppet.
- Knowledge of container-based virtualization technologies such as Docker and Kubernetes.
- Experience building and consuming APIs and integrations.
- Experience applying industry-standard web, architectural, security, and cloud best practices.
- Experience with mobile device management across various versions of cellular and tablet platforms.
- Robust understanding of DevOps, cloud infrastructure automation, security, and continuous integration/delivery practices.
Must-Have Technical Expertise
- AWS Infrastructure & Architecture
- AWS Well-Architected Framework
- Terraform / Terraform Cloud
- Ansible Automation
- Red Hat OpenShift Service on AWS (ROSA)
- GitLab CI / Azure DevOps Service
- ArgoCD / GitOps
- AWS Security Services
- CloudWatch / Observability
- Linux Cloud Environments
- Docker / Kubernetes
- Python / Bash or equivalent scripting
- Cloud Security & Compliance
How to Apply If you are interested and your profile matches the requirements, please send the following documents to
[email protected] by Wednesday, August 19, 2026, at 10:00 AM EST:
- Updated Resume in Word format — Mandatory
- References — Mandatory
- Expected Hourly Rate — Mandatory
- Visa Status — Mandatory
- LinkedIn ID — Mandatory
Important: Without all mandatory documents, we cannot submit a candidate. If this role is not suitable for you, please forward this opportunity to qualified Senior DevOps/Cloud Engineers with strong experience in AWS infrastructure, Terraform, Ansible, OpenShift ROSA, CI/CD, cloud security, and observability.
📌 DevOPS/Cloud Engineer - Senior (Toronto)
🏢 S M Software Solutions
📍 Toronto