Senior Cloud Engineer - Secure Deployments

ClickHouse ClickHouse · Data AI · Product & Engineering

This role focuses on engineering secure, air-gapped deployments of ClickHouse Cloud for government and enterprise clients. It involves designing, developing, and securing the platform in isolated environments with zero internet connectivity, ensuring compliance with various security frameworks and optimizing performance for on-premise and government cloud deployments. The role requires expertise in Kubernetes, containerization, automation, and secure system architecture.

What you'd actually do

  1. Design and develop a highly available, scalable, and secure ClickHouse Cloud tailored for airgapped systems.
  2. Build novel deployment automation for disconnected systems
  3. Work closely with existing Dataplane and Core teams to ensure software parity with existing cloud infrastructure.
  4. Solve unique scaling challenges in classified/regulated environments
  5. Design and deploy ClickHouse Cloud on Kubernetes and containerized environments ensuring high availability, replication and backup.

Skills

Required

  • 6+ years of relevant software development industry experience building and operating scalable, fault-tolerant, distributed systems.
  • Experience with ClickHouse or relational (PostgreSQL, MySQL) and NoSQL (MongoDB, Cassandra) databases.
  • Proficiency with Kubernetes tools (Helm, Kustomize, operators, Istio, serviceMesh)
  • Strong understanding of airgapped architectures, data isolation.
  • Experience with containerized deployments (Docker, Kubernetes, OpenShift) in government environments.
  • Experience with cloud platforms (AWS, Azure, GCP, AWS GovCloud, Azure Government, or on-prem equivalents).
  • Proficiency in programming/scripting languages (Python or Go) for automation and integration.
  • excellent communication skills
  • strong problem solver
  • solid production debugging skills

Nice to have

  • Optimize ClickHouse Cloud database performance and storage architecture for on-premise, hybrid, and government cloud deployments.
  • Integrate secure authentication, encryption, and access control mechanisms.
  • Develop and maintain technical documentation for system architecture, security, and compliance audits.
  • Troubleshoot and resolve database performance, security, and operational issues.
  • Automate deployments and lifecycle management using Terraform, Ansible, or CI/CD pipelines.

What the JD emphasized

  • U.S. Citizenship required
  • airgapped architectures
  • containerized deployments (Docker, Kubernetes, OpenShift) in government environments
  • NIST, FedRAMP, Protected B, IRAP