Live opening · Posted 1 day ago
At a glance
The key details from the original listing.
Your early-applicant advantage
Live timing from JobBeeper.
About the role
Description supplied by the original job listing.
MincaAI is an AI-native insurance software company. HQ at Station F (Paris) x Mexico, operations across LatAm. We build production AI systems for enterprise insurance carriers across three pillars — underwriting, policy issuance, and billing automation.
The Role
This is a builder role with real ownership. Architecture is not one-size-fits-all. We operate a SILO model — each client engagement has a different infra topology.
With some clients, we coordinate with their in-house infrastructure team.
With others, we own QA and Prod end-to-end. You need to be comfortable pivoting between these modes and pragmatic about which pattern fits which client.
Workload split.
This engagement is roughly 80% platform / DevOps (K8s, OpenShift, GitOps, CI/CD, observability) and 20% code quality ownership.
What You'll Own
Operate and evolve the self-managed K8s cluster on AWS (ingress, TLS automation, bootstrap tooling).
GitOps with ArgoCD: sync policies, drift/self-heal, automated image reconciliation.
Helm charts: zero-downtime rollouts, HPA, PDBs, quotas, default-deny network policies, migration hooks.
CI/CD on GitHub Actions with self-hosted runners: path-aware pipelines, semantic releases, environment gates.
Secrets & supply chain: SOPS + AWS KMS, IAM hygiene, secret scanning, immutable tags, fail-closed defaults.
AWS + Terraform: managed Postgres/Redis, object storage with tenant isolation, KMS, ECR, pod-level IAM.
Observability: OpenTelemetry (logs/traces/metrics), Prometheus-compatible backend, alerting on AI workloads.
SonarQube ownership
DevEx & CLI tooling: contribute to internal developer tooling, CLIs, and workflows that make the whole team faster.
Continuous improvement, not one-off setup: ongoing maintenance and evolution of infrastructure and workflows as the product and client base grow.
Our Stack
Orchestration: Kubernetes (self-managed), OpenShift, Helm, ArgoCD
CI/CD: GitHub Actions on self-hosted runners
Cloud/IaC: AWS (ECR, S3, KMS, RDS, ElastiCache, IAM), Terraform
Secrets: SOPS + AWS KMS
Data: PostgreSQL + pgvector, Redis (streams + cache), S3
Observability: OpenTelemetry, Grafana, Prometheus-compatible store
Apps: Python / FastAPI microservices, Vite + React + TypeScript
How We Work
SOLID, DRY, KISS. Small focused changes. No new tech debt.
If a request conflicts with best practice, you push back and propose better.
Reproducible by default: IaC + GitOps as source of truth.
Reproduce before you fix: bugs get captured in a test before the patch lands.
Success
Deploys on both clusters are one-click, observable, reversible.
Secrets, image, and IAM hygiene pass audit with fail-closed defaults.
CI is fast and trustworthy — flakiness and manual steps are gone.
Autoscaling and quotas tuned. Environments stable under load, no over-provisioning.
LogisticsContract: Freelance, 4 months (extension possible based on fit and roadmap).
Location: Remote, LatAm-based (Argentina / Colombia / Mexico preferred).
Languages: Professional English required. Spanish required.
Start: ASAP.
How to Apply
Send your CV + a short note (5 lines max) on the hardest production incident you personally led to resolution, to john.fofe@mincaai.com
Work arrangement
Yes
More openings worth a look
Recently tracked roles with full details and direct application links.