DevOps Engineer
Listed on 2026-06-02
-
IT/Tech
Cloud Computing: Infrastructure & Operations, Systems Engineer
Bolt Graphics is a semiconductor startup based in Sunnyvale, CA building the fastest and most efficient graphics processors. We pride ourselves on our first principles approach to solving problems. We are energized by our mission to reduce the barrier of entry for content creation and consumption. Our goal is to enable everyone to easily create, simulate and consume immersive experiences as vividly as they can imagine them.
OurValues
- Be Fearless:
Unmute yourself. Test boundaries and get proven right. - Remain Adaptable:
Stay comfortable in a continuously changing world. If you’re wrong, concede and move on. - Educate Your Ego:
Selflessly collaborate towards our shared purpose.
We're hiring a Dev Ops Engineer to own our Git Lab‑based delivery platform end to end: the pipelines, the runners, the cloud integrations, and the on‑prem infrastructure behind them. You'll work across AWS, Azure, and Proxmox, partnering with developers, security, and product to keep code moving from commit to production quickly and safely.
We currently do not offer sponsorship or relocation for this role.
What you’ll doInitial Focus:
Git Hub‑to‑Git Lab Migration (1–3 Months)
A defined, time‑bound project. Once it's done and the dust settles, these duties wind down.
Migrate repos, history, branches, tags, LFS, releases, packages, issues, PRs/MRs, and CI config from Git Hub to Git Lab using Git Lab Importer, git filter‑repo, and custom tooling where needed.
Translate Git Hub Actions into Git Lab CI/CD: reusable workflows into CI components/templates, matrix strategies, environments, OIDC, and self‑hosted runner equivalents.
Map Git Hub constructs (branch protections, CODEOWNERS, status checks, secrets, orgs/teams) to their Git Lab equivalents and resolve the gaps with stakeholders.
Plan the cutover (big‑bang vs. phased), run mirrors during transition, and verify parity before retiring Git Hub assets.
Partner with app teams, security, compliance, and release managers to align the migration with how each team works today and where they need to land. Own the runbook and run enablement sessions.
Ongoing ResponsibilitiesPipelines & Releases
Build and maintain Git Lab CI/CD pipelines: multi‑stage workflows, parent/child pipelines, reusable CI components, and matrix builds. Run and scale Git Lab Runners on Kubernetes, AWS, Azure, and Proxmox, including executor tuning, tagging, and cache/artifact strategy. Ship via blue/green, canary, and rolling deployments with feature flags and automated rollback. Manage release governance: protected branches/tags, MR approvals, CODEOWNERS, environment‑scoped variables, and audit‑ready change records.
Cloud Integrations (AWS / Azure)
Wire Git Lab pipelines into AWS (ECR, EKS/ECS/Fargate, Lambda, S3, RDS, Cloud Formation/CDK) and Azure (ACR, AKS, Functions, App Service, ARM/Bicep). Set up OIDC federation so pipelines assume short‑lived cloud roles instead of using long‑lived keys or secrets. Integrate with AWS Secrets Manager / Azure Key Vault, Cloud Watch / Azure Monitor, and policy engines (AWS Config, Azure Policy). Feed Git Lab security scan results into AWS Security Hub or Microsoft Defender for Cloud.
Virtualization (Proxmox)
Operate Proxmox VE clusters: nodes, storage (ZFS, Ceph, NFS), networking (bridges, VLANs, SDN), HA, and Proxmox Backup Server. Provision VMs and LXC containers as code with Terraform (Telmate or bpg/proxmox), Packer templates, and cloud‑init. Use Proxmox for self‑hosted runners, ephemera ls build agents, and dev/staging environments. Keep parity with the cloud side so pipelines behave the same in both.
Infrastructure as Code
Build infrastructure with Terraform/Open Tofu: reusable modules, remote state, work spaces, and policy‑as‑code (OPA or Sentinel). Run Kubernetes (EKS, AKS, or self‑managed on Proxmox) with Helm and Kustomize. Use Ansible (or Puppet/Chef) for configuration;
Packer for golden images across AWS, Azure, and Proxmox. Implement Git Ops with Argo CD, Flux, or Git Lab’s Kubernetes Agent.
Security
Tune Git Lab security scanners (SAST, DAST, dependency, container, IaC, secret detection, license compliance) and triage findings with the relevant teams. Manage…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).