TA and Platform Engineer (RHEL & OCP Specialist)
Indexed description
๐ We're Hiring: TA and Platform Engineer (RHEL & OCP Specialist)! ๐
We are looking for a skilled and driven TA and Platform Engineer specializing in Red Hat Enterprise Linux (RHEL) and OpenShift Container Platform (OCP). The ideal candidate will have at least 5 years of experience, demonstrating expertise in managing, deploying, and optimizing enterprise-level platforms. Join our dynamic team to play a key role in supporting mission-critical environments.
๐ Location: Singapore, Singapore
โฐ Work Mode: Work from Office
๐ผ Role: TA and Platform Engineer (RHEL & OCP Specialist)
Main Role and Responsibilities
โ RHEL Platform Management (Primary Focus)
โ Own and maintain the RHEL OS fleet underpinning OCP worker/control-plane nodes and non-containerised application servers
โ Plan and execute RHEL OS patching cycles (EUS channel management, kernel upgrades, reboot sequencing) with minimal service disruption
โ Implement and validate OS hardening benchmarks โ SELinux policies, firewalld rules, auditd configuration, and cryptographic policy settings
โ Troubleshoot system-level issues: kernel parameters, resource limits (ulimits, cgroups), storage mounts (NFS, iSCSI, SMB/CIFS PVs on OCP)
โ Manage RHEL subscriptions, entitlements, and satellite/image registries
โ OCP Cluster Administration (Primary Focus)
โ Deploy, upgrade, and maintain OCP 4.x clusters โ including control plane, etcd health, and worker node lifecycle
โ Configure and manage OCP Machine Config Operator (MCO) for node-level OS customisation: chrony NTP, SSH hardening, kernel arguments, and custom MachineConfigs
โ Manage cluster certificates, ingress/route configurations, HAProxy timeout tuning for long-running enterprise workloads (e.g., Pega BIX, batch jobs)
โ Administer Quay mirror registry โ image mirroring, vulnerability scanning results, VAPT remediation for bundled components (e.g., jQuery CVEs)
โ Implement OCP RBAC, SCCs, network policies, and resource quotas across multiple namespaces and project environments
โ Support JVM and container resource tuning for Java workloads on OCP (heap sizing, Metaspace limits, G1GC flags, container memory budgeting)
โ Application Platform & Integration Support
โ Take ownership of one or more application platforms (e.g., Pega Infinity, WebSphere, IBM MQ) โ covering setup in HA mode, application patching, and ongoing operational support
โ Participate in architecture sessions with build teams, advising on integration points (web services, MQ, SFTP, API gateway)
โ Support container provisioning, image lifecycle, and deployment of containerised services across DEV / SIT / UAT / PROD environments
โ Operational Governance & Security
โ Define and execute operational processes: OS patching, application-level patching, performance monitoring, housekeeping, backup and recovery
โ Support VAPT engagements โ assess Nessus/vulnerability findings, coordinate remediation, and produce risk acceptance or remediation reports
โ Apply government-grade security hardening principles (IM8 compliance, SSCT framework, CIS benchmarks) across RHEL and OCP layers
โ Contribute to DevSecOps tooling and automation concepts โ CI/CD pipelines, IaC, and operational runbooks
โ Support AWS administration tasks where applicable (CloudWatch monitoring, IAM, S3, hybrid integration)
Top 3 Must-Have Skills
โ RHEL System Administration (Required โ Primary Differentiator)
โ Hands-on experience administering RHEL 8/9 in enterprise production environments
โ Proficiency in OS-level patching, package management (dnf/yum), SELinux enforcement, and system hardening per CIS/DISA benchmarks
โ Experience with RHEL Extended Update Support (EUS) lifecycle management and version upgrades
โ Familiarity with RHEL subscription management, satellite server, and image-based deployments (RHEL Image Mode / Bootc)
โ OpenShift Container Platform (OCP) Administration (Required โ Primary Differentiator)
โ Hands-on experience deploying, configuring, and administering OCP 4.x clusters (bare metal or IaaS)
โ Proficiency with OCP Day-2 operations: node management, Machine Config Operator (MCO), cluster upgrades, certificate rotation, and resource quota management
โ Experience with OCP networking (Routes, Ingress, HAProxy), storage (PV/PVC, storage classes), and role-based access control (RBAC)
โ Familiar with OCP security hardening: SSH cipher/MAC remediation via MCO, SCC policies, network policies, and image vulnerability scanning (Quay/Clair)
โ Experience with Quay registry administration including mirror registry setup for air-gapped or restricted environments
โ Enterprise Container Architecture & Integration Platforms
โ Designing and operating multi-tier containerised architectures on OCP/Kubernetes
โ Working knowledge of IBM MQ messaging โ queue manager setup, channel administration, troubleshooting, and HA configuration
โ Familiar with microservices architecture, API gateway integration, and container image lifecycle management
Ready to take your expertise to the next level? ๐ Apply now and be part of our innovative journey!
Create a free Caio profile to unlock more results and save your role and location preferences.
Unlock free search