DevOps Infrastructure Engineer
Design and operate mission-critical infrastructure for large-scale, high-load systems, with expertise in Linux systems, networking, monitoring, and VPN technologies.
A Senior DevOps / Infrastructure Engineer in this role is responsible for building, optimizing, and maintaining a high‑performance, secure, and globally distributed infrastructure. The position requires deep expertise in Linux systems, networking, monitoring, VPN technologies, and traffic‑evasion techniques used in modern privacy‑focused environments.
About the Role
You will design and operate mission‑critical infrastructure that supports large‑scale, high‑load systems. The work goes far beyond container management: it involves kernel‑level tuning, advanced networking, VPN stack engineering, and building monitoring systems from the ground up. This is a role for someone who understands how systems behave under pressure and knows how to automate everything that repeats.
Key Responsibilities
Develop and evolve infrastructure architecture to ensure stability, scalability, and high availability.
Build and automate CI/CD pipelines using GitLab, Ansible, and Terraform.
Maintain and optimize Linux systems for high‑load environments, including kernel tuning and network performance adjustments.
Configure and improve monitoring systems (Zabbix, Grafana), including custom templates, auto‑discovery, and alerting logic.
Manage and optimize VPN technologies such as StrongSwan, OpenVPN, and Xray.
Analyze complex incidents, identify root causes, and implement long‑term fixes.
Ensure infrastructure security through access control, firewall management, updates, and 2FA.
Collaborate with development and QA teams in a distributed environment.
Participate in architectural decisions and guide the team through best practices.
Core Skills and Expertise
Advanced proficiency with Zabbix and Grafana , including:
custom templates,
auto‑discovery rules,
external scripts,
alerting pipelines,
performance dashboards.
Deep understanding of kernel and OS tuning for high‑load systems:
network I/O optimization,
socket buffer tuning,
IRQ affinity and CPU interrupt balancing,
NIC queue configuration,
sysctl tuning for throughput and latency.
Hands‑on experience configuring and optimizing:
StrongSwan (IPsec) ,
OpenVPN ,
Xray-core (VLESS/REALITY, VMess, Shadowsocks).
Understanding how VPN protocols behave under different network conditions and censorship environments.
Knowledge of DPI/TSPU architecture and modern circumvention techniques:
domain fronting,
SNI masking,
ECH (Encrypted Client Hello),
REALITY,
uTLS fingerprinting.
Familiarity with obfuscation protocols such as Shadowsocks‑2022, Trojan‑G
Posted June 6, 2026