Turnberry Solutions is a consulting company that provides insights into company data and advanced analytics solutions. As a Senior Data Engineer, you will be responsible for building and deploying infrastructure, supporting production readiness, and producing comprehensive technical documentation.
Responsibilities:
- Infrastructure Build and Deployment
- Provision and administer Kubernetes clusters across AKS, GKE/GKS, and on-premises platforms
- Deploy Apigee Hybrid runtime components (Message Processor, Synchronizer, MART, Cassandra, etc.) on target Kubernetes environments
- Deploy Akamai Noname remote engines and connectors on AKS, GKS, and on-premises environments
- Establish and validate secure, outbound-only control plane connectivity from Hybrid runtimes to the centralized GCP Control Plane
- Configure Azure networking (VNets, NSGs, Private Link) and GCP networking to support multi-cloud traffic flows
- Author and maintain Terraform/Infrastructure as Code (IaC) modules for repeatable, auditable deployments across all target environments
- Integration and Observability
- Integrate Apigee Hybrid and Akamai telemetry with enterprise observability platforms
- Integrate security event data with enterprise SIEM platforms
- Implement asynchronous, non-blocking telemetry patterns to avoid performance impact on runtime traffic
- Support integration with enterprise CI/CD pipelines for infrastructure and configuration changes
- Operational Support and Stabilization
- Support production readiness reviews, stabilization, and go-live activities aligned to Akamai milestone dependencies
- Participate in incident response, runtime upgrades, and capacity management during transitional operations
- Monitor and maintain multi-cloud infrastructure health across GCP, Azure, and on-premises
- Knowledge Transfer and Documentation
- Produce comprehensive technical documentation: runbooks, SOPs, architecture diagrams, and points-of-contact references
- Participate in on-call and joint operational support during transition
- Governance and Collaboration
- Navigate client governance, change management, and approval processes for infrastructure changes
- Collaborate with the external Apigee Hybrid implementation partner during joint delivery activities
- Coordinate with Akamai implementation teams to ensure infrastructure readiness gates are met on schedule
Requirements:
- Bachelor's degree in Computer Science, Information Technology, related field, or equivalent 5+ years of experience
- 5+ years of hands-on experience programming in SQL
- 3+ years of experience building and maintaining automated data pipelines and data assets using batch and/or streaming processes
- 3+ years hands-on experience administering Kubernetes clusters (AKS required; GKE/GKS and on-premises Kubernetes strongly preferred)
- Experience with node pool management, namespace isolation, resource quotas, RBAC, and cluster upgrades
- Familiarity with Helm charts, Kubernetes operators, and custom resource definitions (CRDs) used in platform-level product deployments
- Hands-on experience administering Google Cloud Platform environments (Cloud SQL, BigQuery, IAM, networking)
- Hands-on experience administering Azure cloud environments — specifically Azure Kubernetes Service (AKS), Azure networking (VNets, NSGs, Private Link), and Azure IAM/RBAC
- Multi-cloud infrastructure experience — ability to manage parallel environments across GCP and Azure with consistent IaC patterns and governance
- Proficiency with Terraform or equivalent IaC tooling for multi-cloud deployments
- Experience with CI/CD pipelines for infrastructure changes (e.g., Azure DevOps, GitHub Actions, Jenkins, Cloud Build)
- Experience with or exposure to Apigee Hybrid architecture — understanding of the split between centralized control plane (GCP-hosted) and customer-managed Hybrid runtimes
- Understanding of outbound-only control plane connectivity models and the networking requirements to support them
- Experience with or understanding of edge platform integration (Akamai preferred; Cloudflare or similar acceptable) — specifically edge routing, DDoS protection, and WAF enforcement
- Familiarity with Akamai connector/remote engine deployment models and how edge security layers interact with downstream API gateways
- Understanding of traffic flow architecture where edge platforms are authoritative entry points and API gateways enforce policy only
- Experience integrating infrastructure and application telemetry with enterprise observability platforms
- Experience integrating with SIEM platforms for security event correlation
- Understanding of asynchronous, non-blocking telemetry patterns
- Understanding of security fundamentals, access provisioning, and Zero-Trust security principles
- Enables others: Navigate complex access processes and clears paths for the team
- Self-directed problem solving: Identify the right contacts and required approvals
- Milestone-driven delivery mindset: Comfortable working within tight, dependency-driven timelines where infrastructure readiness gates downstream partner deliverables
- Cross-environment operational awareness: Ability to manage and troubleshoot infrastructure spanning cloud (GCP, Azure) and on-premises environments simultaneously
- Platform exploration: Stay current on GCP/Azure evolution; evaluate new services and capabilities
- Automation mindset: Seek to reduce manual configuration and approval friction
- Proactively identify bottlenecks in environment setup and propose solutions
- Produce technical documentation (runbooks, procedures, points of contact) for completed infrastructure
- Bring awareness of new platform capabilities that could accelerate delivery
- Take initiative to streamline repetitive access/provisioning tasks
- Edge-to-gateway security architecture awareness: Understand that security enforcement is layered — edge handles routing/DDoS/WAF while the API gateway handles API-level policy — and can configure infrastructure to support this separation
- Partner engagement skills: Able to work effectively alongside an external implementation partner, including joint troubleshooting, shared environments, and coordinated change management
- Knowledge transfer readiness: Willingness and ability to participate in a shadow → lead → own model as both learner and teacher
- Ability to clearly document and explain proposed changes to navigate governance and approval processes
- Prior experience working in healthcare or similarly regulated environments (HIPAA, SOC 2)
- Google Cloud Professional Cloud Architect or Professional Cloud DevOps Engineer certification
- Microsoft Azure AZ-104 (Azure Administrator) or AZ-305 (Azure Solutions Architect) certification
- Certified Kubernetes Administrator (CKA) or Certified Kubernetes Application Developer (CKAD)
- Experience with Apigee Hybrid installation, configuration, and operations
- Experience deploying or managing Akamai Noname (API security) remote engines
- Familiarity with GitOps patterns (ArgoCD, Flux) for Kubernetes-based deployments
- Experience with Anthos, Rancher, or OpenShift for on-premises Kubernetes