Our 2026 Hiring Report is out — see what 146,050 job postings say about getting hired.

Read the report →
JOB DETAILS

Senior DevOps Engineer

CompanyEasySend
LocationTel Aviv
Work ModeOn Site
PostedSeptember 20, 2026
About The Company
EasySend is an AI-powered platform that digitizes complex customer workflows — turning manual, multi-step, multi-party processes into seamless digital journeys. Every field gets filled, every party gets included, and every piece of data syncs back to your CRM or core systems. Built for insurance, banking, financial services, and healthcare.
About the Role

EasySend is a no-code platform for building and optimizing digital customer journeys in insurance, banking, and financial services. Our platform turns paperwork-based processes into revenue-generating customer engagements for some of the largest financial institutions in Israel, the US, Europe, and APAC.

Behind that surface, our infrastructure is split the way our customers are. Enterprise customers demand isolation and get it: a dedicated single-tenant environment each, down to their own compute, data stores, identity provider, and sometimes encryption keys we cannot access. Lower-tier customers run on shared multi-tenant infrastructure. More than fifty production environments across six AWS regions, all from one GitOps pipeline.

That split is what makes this role heavy. On the shared platform, a single change is instantly global; on the dedicated fleet, it must land correctly everywhere before anyone feels it. Every new customer adds load and cost in a straight line - your job is to break that line, making the platform carry its own weight through self-service, automation, and AI agents, not more hands. Nobody sits between you and the customer.

Responsibilities

  • Both tenancy models, as one system. Terraform, Helm, and ArgoCD delivering to shared and dedicated environments alike. You own the pipeline and the guardrails on it: progressive rollout, blast-radius containment, and drift detection that catches a mistake before a customer does.
  • Efficiency and cloud cost. Dedicated infrastructure per customer makes unit economics an engineering concern, not a quarterly finance exercise. You own attribution, right-sizing, spot strategy, and autoscaling that actually scales down - and you defend efficiency as a design constraint on every new deployment.
  • Turning operations into product. Onboarding, version rollouts, and config changes are tickets today; they should be self-service and boring. You decide what gets automated, what goes back to the owning team, and what still needs an expert.
  • Scale under real load. Temporal, KEDA queue-based autoscaling, and Karpenter are live and still maturing. You own how the platform grows and shrinks against real traffic, and what that costs per customer.
  • Security engineering for regulated customers. KMS-based key management, SIEM pipelines, WAF policy, certificate and secret lifecycle, per-customer SSO, vulnerability remediation, and turning penetration test findings into shipped fixes. Our customers are banks, insurers, and health funds. Their auditors are effectively part of our roadmap.
  • AI-driven operations. Our infrastructure repositories are already built for agentic work, with an internal harness of shared skills and agents. You inherit it, extend it, and push it into places it does not reach yet: triage, rollout verification, cost anomaly investigation, log analysis, and the long tail of operational work that has never been worth a script.
  • Reliability of what you ship. You are on call for your own systems, paged through PagerDuty against alerts you own.

Requirements

  • 6+ years in DevOps, including production ownership of Kubernetes at meaningful scale. EKS preferred.
  • Operating a fleet, with infrastructure as code. You have run many similar-but-not-identical environments with Terraform, and felt what happens when a change has to reach all of them. You have designed modules other people build on, and you have recovered state when it went wrong.
  • GitOps in production. You have operated ArgoCD, or an equivalent GitOps controller, running automated sync with pruning and self-healing enabled, and you understand exactly how much power that hands to a single commit.
  • Deep AWS and Cloudflare as a production edge. You have run AWS at the account, network, and IAM level rather than consumed it, and you have operated Cloudflare in production: WAF policy, origin protection, DNS, and rate limiting.
  • You treat cloud cost as an engineering metric you own. You have measured it, attributed it, and brought it down - through right-sizing, spot, autoscaling, storage lifecycle, or architecture - and you can talk about what you saved and what it cost you in complexity or risk to save it.
  • Python and Bash as an engineer, not a scripter. Much of the leverage in this role comes from tooling you write yourself.
  • You have served regulated enterprise customers. Financial services, insurance, or healthcare - environments where penetration tests, security questionnaires, encryption requirements, and customer-imposed controls shape what you are allowed to build. You know how to satisfy an auditor without freezing the platform.
  • Genuine AI fluency in how you work. You use agentic coding tools (Claude Code, Cursor, or equivalent) as a core part of your engineering practice, and you have automated real operational work with them. You have a considered view on where to trust an agent in production and where not to, and you can defend it.
  • CI/CD across a mixed estate. Jenkins, CircleCI, and GitHub Actions all run here. You have owned pipelines in more than one of them and have an opinion about what belongs where.
  • Open-source observability you have operated, not just read. Prometheus, Grafana, and Loki as systems you have run, scaled, and tuned.
  • Proactive ownership. You find the problem before it is assigned to you, and work you pick up does not come back. On a team this size, nobody is tracking your queue for you.


Strongly preferred - any of these moves you up the stack:

  • Temporal.io in production: worker scaling, queue backpressure, and operating it as infrastructure rather than consuming it as a library.
  • Event-driven autoscaling with KEDA, and node lifecycle management with Karpenter, tuned against real cost and latency targets.
  • Secret management at fleet scale: SOPS, KMS, key rotation, and hold-your-own-key models where the customer holds the key material.
  • Multi-region production operations, including data residency and per-region compliance obligations.
  • Building internal developer platforms or self-service tooling that measurably reduced how often engineers had to ask for help.
  • Migrating source-control or CI/CD estates, or consolidating fragmented build tooling onto a single modern platform.
  • Kubernetes network and workload security in depth: CNI policy with Cilium or Calico, service mesh, and enforcing isolation between tenants at the network layer.
  • Startup instincts plus enterprise discipline. You have worked somewhere small enough that you owned the whole problem, and somewhere serious enough that "move fast" had a blast radius.

Who you are

null
Key Skills
DevOpsKubernetesAWSTerraformGitOpsArgoCDPythonBashCloudflarePrometheusGrafanaLokiTemporal.ioKEDAKarpenterSecurity Engineering
Categories
TechnologySoftwareEngineeringSecurity & SafetyFinance & Accounting
Job Information
📋Core Responsibilities
You will manage and scale complex multi-tenant infrastructure across AWS regions using GitOps, Terraform, and automation to ensure reliability and efficiency. Additionally, you will focus on security engineering, cost optimization, and developing self-service tools to streamline operations for regulated financial customers.
📋Job Type
full time
📊Experience Level
5-10
💼Company Size
56
📊Visa Sponsorship
No
💼Language
English
🏢Working Hours
40 hours
Apply Now →

You'll be redirected to
the company's application page