Senior DevOps Engineer

Location
Toronto
Workplace
Hybrid

About this role

About Haventree Bank   

Haventree Bank is a Schedule I Canadian bank dedicated to advancing financial security and upward mobility for Canadians underserved by traditional financial services. Through our broker-distributed alternative mortgage and GIC solutions, as well as our growing digital banking platform, we provide straightforward products that support long-term financial well-being and meaningful growth.

As a CDIC-insured, federally regulated bank, we offer the trust and stability of a traditional financial institution while embracing the innovation and customer-first mindset of a modern digital bank.

If you're looking for a place where your work has a direct impact, your ideas are valued, and innovation is encouraged, Haventree Bank is the place for you.

Position Summary:

Reporting to the Lead DevOps Engineer at Haventree Bank, you will be responsible for designing, implementing and managing a secure and efficient DevOps process as well as cloud infrastructure within Azure, AWS cloud environments.

Major Duties & Responsibilities:

  • CI/CD Pipeline Development: Architect and maintain robust, automated CI/CD pipelines for efficient software delivery and deployment. Leverage tools such as GitHub Actions, Sonar Cloud, and Snyk to streamline development processes.
  • Cloud Infrastructure Design & Management/Automation (IaaC): Drive automation in infrastructure provisioning, configuration management, and system monitoring using tools like Terraform and Bash/Python scripts.
  • Security & Compliance: Implement security best practices aligned with federal and provincial regulatory requirements (OSFI, etc.), including continuous monitoring and vulnerability management. Ensure compliance across all stages of development and deployment.
  • Azure Networking: Design and manage secure Azure network architectures including hub-and-spoke topologies, Virtual Networks (VNets), subnets, Network Security Groups (NSGs), User-Defined Routes, and VNet peering. Implement and operate Azure Firewall, Application Gateway with WAF, Azure Front Door, Private Endpoints, and Private Link to enforce zero-trust connectivity. Manage hybrid connectivity through ExpressRoute and Site-to-Site VPN gateways and administer Azure DNS (private and public zones) for reliable name resolution across environments. 
  • Containerization & Orchestration: Utilize Docker and Kubernetes to containerize applications and deploy them in scalable environments.
  • Performance Monitoring, Reporting & Optimization: Implement proactive monitoring, logging and reporting solutions (using Azure Monitor, MS Defender, AWS CloudWatch, etc.) to track and monitor system performance and identify potential issues before they impact operations.
  • Incident Response & Troubleshooting: Investigate production issues, ensuring fast resolution while conducting thorough root cause analysis and applying preventative measures.
  • Documentation & Reporting: Maintain comprehensive documentation of systems, processes, and configurations.
  • Cost Optimization: Provide consultation on cost-effective solutions, balancing performance, security, and scalability while managing budget constraints.

Qualifications & Experience:

Degrees, Diplomas & Certifications:

  • The position requires a Bachelor’s degree in Computer Science, Software Engineering, or a related field, or equivalent professional experience.

Years and Range of Experience Required to Perform the Job:

  • 7+ years of experience in DevOps, Software Development, Cloud Engineering, or similar roles.
  • Proven expertise in GitHub Actions/AzureDevOps, CI/CD pipeline design and implementation (Experience in AWS cloud platforms/DevOps is a plus)
  • Extensive experience with Terraform for infrastructure provisioning and management
  • Strong understanding of Azure networking concepts including hub-and-spoke architecture, VNets, subnets, NSGs, route tables, VNet peering, Private Endpoints, Azure Firewall, Application Gateway/WAF, Azure Front Door, ExpressRoute/VPN, and Azure DNS.Working knowledge of containerization technologies such  Docker and Kubernetes, AKS/EKS etc.
  • Familiarity with security principles and regulatory compliance (e.g., OSFIQuebec Law 25PCI-DSS).
  • Solid understanding of Azure Cloud services including monitoring, logging and reporting tools
  • Solid scripting experience in BashPowerShellPython, or similar languages.
  • Strong troubleshooting and performance tuning skills in distributed systems.
  • Experience working in an Agile, Kanban, or Scrum development environment.

Preferred Skills

  • Certifications:
    • Azure Cloud DevOps Engineer Certification.
    • HashiCorp Terraform Associate or higher certification.
  • Cloud Infrastructure & DevOps, CI/CD Tools: Experience with Amazon Web Service (AWS)  is a plus
  • Security: Knowledge of ZTNA/SASEDLP (Data Loss Prevention), Okta, and secure network topologies in cloud environments.
  • Scripting & Automation: Familiarity with tools like AnsibleChef, or Puppet for configuration management.
  • Monitoring Tools: Experience with Cloud Native monitoring, logging and reporting tools
  • Software Development: Experience with application development, tools and software engineering tools.

While we thank everyone for their interest in Haventree Bank, please note that only candidates selected for an interview will be contacted. Haventree Bank is committed to providing accommodation when needed. If you require an accommodation, we will work with you to meet your needs.  

  1. As a job candidate, our recruitment process includes collecting personal information. Please click the link here to review our Privacy Policy. Privacy Statement | Haventree Bank
  2. Stay in touch with us, if this position is not the right one for you – please click on this link for other roles at Careers | Haventree Bank or follow us on LinkedIn at www.linkedin.com/company/haventree-bank/
  3. Haventree Bank embraces equal opportunity, diversity, and inclusion. Please let us know if you require any accommodations during the recruitment and selection process by contacting [email protected]

#LI-TA1 

#LI-Hybrid

 

Tired of cold applications?

Sign up with Clera and we'll reach out the moment a role actually fits you — no more spraying applications into the void.

Know someone who'd be great for this?