Location: India (Remote)
Company: Pull Logic, Inc.
Pull Logic is transforming the retail supply chain with a revolutionary availability-oriented paradigm that directly links customer preferences with real-time inventory. Backed by cutting-edge research from Georgia Tech's School of Industrial and Systems Engineering, our AI-driven SaaS platform helps retailers and brands reduce lost sales, improve profitability, and elevate customer satisfaction.
We're a fast-growing startup looking for a Principal DevOps Engineer to join our core technology team. This is a unique opportunity to shape the foundation of Pull Logic's enterprise-grade Retail Tech products and work on solutions that have a direct impact on how modern retailers operate.
What You'll Do
- Own multi-cloud infrastructure: design, build, and operate AWS and Azure environments (VPC/VNet, subnets, routing, NAT, security groups/NSGs, IAM/AAD roles, Azure MS SQL, EC2, Lambda, S3, Sagemaker, Athena etc..).
- Kubernetes at scale: run production workloads on AWS EKS (ALB Ingress, IPVS mode, EBS CSI driver, auto-scaling node groups), and light AKS where needed; define manifests/Helm and rollout strategies (blue/green, canary).
- CI/CD with Azure DevOps: craft reusable YAML templates and multi-stage pipelines for apps (Python, Node, Frappe/ERPNext, React/Vue), containers, IaC, and data jobs; manage environments, approvals, and release gates.
- Terraform first: model everything as code (networking, EKS, RDS, S3, CloudFront, IAM, Azure resources); maintain modules, plan/apply workflows, and state backends with proper locking and workspaces.
- Containers & registries: build minimal, secure Docker images (multi-stage, cache-efficient), push to ECR/ACR, sign/scan images, and standardize runtime configs (ConfigMaps/Secrets).
- Observability & reliability: wire up CloudWatch/CloudTrail, Azure Monitor/Log Analytics, metrics (Prometheus/Grafana), centralized logs, alerts/SLOs; perform capacity & cost optimization.
- Security & compliance: implement least-privilege IAM, S3 object-lock/retention, CloudTrail Lake, AWS Config aggregators (multi-account), and SOC 2 control enablers. Integrate static/IaC/container scans in PRs (MSDO with Bandit/ESLint/Checkov/Trivy, plus Gitleaks/OSV).
- Data & app platform: support RDS/MariaDB and Azure SQL MI, Redis, S3 data lakes, and scheduled EC2 workers for batch analytics; enable multi-tenant isolation and per-client configuration.
- MLOps support: provision GPU/CPU runners and artifact storage, enable model packaging and deployment pipelines, and manage secrets/keys safely.
- Mentor & collaborate: partner with software/data/ML engineers; review designs and PRs; document runbooks and guide incident response
What We're Looking For
- 7-12+ years in DevOps/SRE/platform roles building enterprise-grade systems.
- Expert in AWS & Azure fundamentals (networking, identity, security, storage, compute) and cross-cloud patterns.
- Azure DevOps pro: YAML multi-stage pipelines, variable groups/key vaults, environments, self-hosted agents, gated releases.
- Terraform mastery: modules, workspaces, remote state, CI plans, policy checks (fmt/validate/tflint/checkov).
- Kubernetes production experience (EKS/AKS): autoscaling, upgrades/patching, node group rotations, Ingress controllers (ALB), service meshes (nice-to-have), secrets management.
- Shell scripting (Bash/PowerShell) and at least one language (Python preferred) for tooling and automation.
- Security mindset: IAM least privilege, secret rotation, artifact signing, image/IaC/security scans in CI, audit logging & retention; familiarity with SOC 2 controls.
- Observability: logs/metrics/traces, dashboards and actionable alerts; capacity & cost tuning.
- Strong communicator with a bias for automation, documentation, and ownership in a fast-moving startup.
Nice to Have
- Helm/Kustomize; ArgoCD or Flux (even if we primarily use Azure DevOps).
- Experience with Frappe/ERPNext deployments, Redis, and MariaDB operations at scale.
- CDN & edge: CloudFront, Route 53, custom SSL/TLS, multi-origin strategies.
- Data pipelines: S3/Parquet, chunked Pandas/Arrow, SQL perf tuning.
- Security tooling: Semgrep, Microsoft Security DevOps, Trivy, Checkov, Gitleaks, OSV-Scanner; SAST/DAST pipelines.
- Compliance: implementing SOC 2 evidence collection (Config/CloudTrail Lake/Log Analytics exports, policy-as-code).
Why Pull Logic
- Be part of a mission-driven company redefining supply chain intelligence for the retail world.
- Work on cutting-edge technology with real-world impact and high visibility
- Collaborate with researchers and engineers from Georgia Tech, one of the top engineering schools in the world.
- Grow with a dynamic, fast-paced team and play a key role in building the future of our platform.
- High ownership, high visibility, and the chance to set platform standards from the ground up.
Ready to Build What's Next
Send your resume to [Confidential Information] and let's start the conversation