Ontario Government | Gouvernement de I'Ontario logo
Government

DevOPS Cloud Engineer

Toronto, ON · On-site · Contract

Rate

CAD $90–$100/hr

Duration

12 months

How your profile and resume fit this job

Get AI-powered advice based on your Wirehead Score.

Tailor my Resume

Required skills

  • AWS
  • Terraform
  • Ansible
  • OpenShift ROSA
  • GitLab CI / Azure DevOps
  • Kubernetes
  • Docker

About the role

Responsibilities

  • Design, build and support cloud environments to create digital products
  • Monitor and assess the performance of applications in a cloud environment to ensure solutions are available
  • Create, test and implement safeguards to maintain data integrity and protect against unauthorized access

General Skills

Experience in one of the leading cloud platforms such as AWS, Azure or Google Cloud, etc

Experience in maintaining complex Linux cloud environments, like CentOS, Ubuntu, or CoreOS, to support modern web technologies: LAMP, Drupal and Elasticsearch / Elasticloud

Experience setting up development environments and mechanism using tools such as JIRA, Confluence, Maven and Jenkins or similar tools

Experience in scripting languages like Python, Bash, PHP, Java, JavaScript, Node, etc.

Experience in build tools like Git, Ansible, Chef, Puppet etc. for continuous integration

Knowledge of container-based virtualization technology like Docker or Kubernetes

Integration experience in building and using APIs

Experience applying industry web, architectural and security standards and best practices

Experience in mobile device management for various versions of cellular and tablets

Experience and Skill Set Requirements

Cloud Infrastructure & AWS

  • Design, provision, and manage AWS infrastructure including VPCs, subnets, security groups, IAM policies, EC2, ECS, EKS, RDS, S3, Route 53, and CloudFront.
  • Architect multi-account AWS environments following AWS Well-Architected Framework principles.
  • Manage AWS cost optimization strategies including Reserved Instances, Savings Plans, and rightsizing.
  • Implement and maintain CloudTrail, Config, GuardDuty, Security Hub, and AWS Organizations SCPs.

Infrastructure as Code — Terraform/Terraform Cloud

  • Develop, maintain, and refactor Terraform modules and configurations for all cloud infrastructure.
  • Manage Terraform Cloud workspaces, remote state backends, variable sets, and team access policies.
  • Enforce IaC standards including module versioning, input/output conventions, and documentation.
  • Implement drift detection and remediation workflows using Terraform Cloud run tasks and policy-as-code (Sentinel or OPA).
  • Lead Terraform code review processes and mentor junior team members on best practices.

Configuration Management — Ansible

  • Author and maintain Ansible playbooks, roles, and collections for server configuration, application deployment, and compliance enforcement.
  • Manage Ansible inventories across dynamic cloud environments using AWS dynamic inventory plugins.
  • Integrate Ansible automation with CI/CD pipelines for repeatable and auditable deployments.
  • Use Ansible Vault for secrets management and always ensure secure handling of credentials.
  • Develop idempotent, well-tested automation that reduces manual toil and configuration drift.

Container Platform — OpenShift ROSA

  • Operate and administer Red Hat OpenShift Service on AWS (ROSA) clusters, including cluster upgrades, node scaling, and add-on management.
  • Define and enforce OpenShift RBAC, NetworkPolicies, and SecurityContextConstraints (SCCs).
  • Manage Operators, Helm charts, and Kustomize overlays for workload deployment on ROSA.
  • Ensure cluster hardening against CIS benchmarks and organizational security policies.

CI/CD Pipelines

  • Design and maintain CI/CD pipelines (GitLab CI, Azure DevOps Service) for infrastructure and application delivery.
  • Implement GitOps workflows using ArgoCD for declarative, auditable deployments to OpenShift ROSA.
  • Integrate security scanning tooling (SAST, container scanning, dependency auditing) into pipeline gates.
  • Champion shift-left testing principles, ensuring infrastructure changes are validated before promotion to production.
  • Maintain pipeline-as-code standards with versioned, peer-reviewed pipeline definitions.

Security & Compliance

  • Serve as a key contributor to the team's security posture, embedding security controls throughout the infrastructure and CI/CD lifecycle.
  • Implement secrets management solutions (AWS Secrets Manager) and enforce least-privilege access.
  • Support vulnerability management processes by triaging findings from infrastructure and container scanning tools.
  • Participate in incident response and post-mortem processes, ensuring remediation actions are tracked and resolved.

Observability & Reliability

  • Build and maintain end-to-end observability solutions using AWS CloudWatch.
  • Define and track SLOs and SLIs for critical platform services and workloads.
  • Lead on-call incident response for platform-level issues, conducting RCAs and driving permanent fixes.
  • Produce and maintain runbooks and architectural decision records (ADRs).

Key Focus Areas

  • Extensive experience working with container and non-container workloads
  • Extensive experience working with Designing and building Terraform/IAC and ansible playbooks.

Must Have

  • Design, provision, and manage AWS infrastructure including VPCs, subnets, security groups, IAM policies, EC2, ECS, EKS, RDS, S3, Route 53, and CloudFront.
  • Architect multi-account AWS environments following AWS Well-Architected Framework principles.
  • Manage AWS cost optimization strategies including Reserved Instances, Savings Plans, and rightsizing.
  • Develop, maintain, and refactor Terraform modules and configurations for all cloud infrastructure.
  • Author and maintain Ansible playbooks, roles, and collections for server configuration, application deployment, and compliance enforcement.
  • Operate and administer Red Hat OpenShift Service on AWS (ROSA) clusters, including cluster upgrades, node scaling, and add-on management.
  • Design and maintain CI/CD pipelines (GitLab CI, Azure DevOps Service) for infrastructure and application delivery.

How to Apply

Apply for this contract using the Apply now button at the top of this page.

Learn more about senior I&IT contract opportunities at wirehead.com/talent-community.

Interested in working with us in the future?

Join our Talent Network and we'll notify you when new contracts match your profile.

I'm Interested

Wirehead is a leading national recruitment firm. We only communicate with candidates through official @wirehead.com email addresses. We thank all candidates for their interest, but advise that only candidates selected for interviews will be contacted. Your resume will be kept in our database and considered for future opportunities. Applicants must be authorized to work in Canada.

Not quite the right fit?

Browse all open Wirehead contracts across Government of Canada and the Big Six banks.

See all contracts

Looking for something specific?

Create a profile and we'll match you to senior I&IT roles as they open.

Create profile