Job Closed
This listing is no longer active.
Service Mesh Engineer (Istio / Linkerd)
Location
United States
Posted
7 days ago
Salary
100K - 150K / year
Seniority
Mid Level
Job Description
Service Mesh Engineer (Istio / Linkerd)
Bright Vision Technologies
Role Description We are looking for a Service Mesh Engineer to design, deploy, and operate service mesh platforms — primarily Istio and Linkerd — that provide secure, observable, and reliable service-to-service communication across our Kubernetes estate. The role focuses on platform engineering, mesh adoption, mTLS, traffic policy, and helping application teams reap the benefits of a mesh without paying for unnecessary complexity. The ideal candidate has operated service mesh in production, deeply understands Envoy and the data plane, and brings both platform engineering discipline and pragmatic adoption strategies. Key Responsibilities - Design and operate service mesh platforms — primarily Istio and Linkerd — across multi-cluster Kubernetes environments. - Implement and operate mTLS, certificate rotation, and identity propagation across the mesh. - Define traffic management policies including routing, retries, circuit breaking, and fault injection. - Integrate the mesh with ingress, egress, and API gateway tiers for unified traffic management. - Build observability for mesh traffic including distributed tracing, golden signals, and topology visualization. - Design multi-cluster and cross-cluster mesh topologies for high availability and tenant isolation. - Profile and optimize mesh performance, sidecar resource usage, and control-plane footprint. - Develop paved-road adoption patterns and onboarding guides that make mesh adoption easy for app teams. - Implement authorization policies and zero-trust patterns at the service mesh layer. - Operate service mesh upgrades, control-plane lifecycle management, and configuration governance. - Partner with SRE, platform, and security teams on mesh policy and incident response. - Troubleshoot complex networking, mTLS, and traffic issues spanning sidecar and gateway tiers. - Maintain runbooks, architecture diagrams, and onboarding materials for the service mesh platform. - Stay current with Istio, Linkerd, Cilium, and broader service mesh ecosystem developments. Qualifications - Bachelor’s degree in Computer Science or a related field. - Five or more years of experience in platform engineering, SRE, or networking roles. - Hands-on experience operating Istio or Linkerd in production. - Strong understanding of Envoy proxy internals and configuration. - Deep Kubernetes expertise including networking, CNI, and ingress. - Strong understanding of mTLS, PKI, and certificate lifecycle management. - Experience with distributed tracing and observability for mesh traffic. - Proficiency in Go or Python for tooling and automation. - Strong troubleshooting skills across networking, application, and control plane layers. - Excellent communication and collaboration skills. Preferred Qualifications - Experience with multi-cluster Istio or Linkerd deployments. - Familiarity with Cilium service mesh and eBPF networking. - Open-source contributions to service mesh projects. - Experience with SPIFFE/SPIRE for workload identity. - Exposure to zero-trust networking initiatives at enterprise scale. How to Apply Would you like to know more about this opportunity? For immediate consideration, please send your resume to [email protected] or contact us at (908) 676-4399. Learn more about Bright Vision Technologies at www.bvteck.com . Equal Employment Opportunity (EEO) Statement Bright Vision Technologies (BV Teck) is committed to equal employment opportunity (EEO) for all employees and applicants without regard to race, color, religion, sex, sexual orientation, gender identity or expression, national origin, age, genetic information, disability, veteran status, or any other protected status as defined by applicable federal, state, or local laws.
Related Guides
Related Categories
Related Job Pages
More Engineer Jobs
Identity, Credential and Access Management Engineer
CACI International IncExpertise and Technology for National Security
• Implement ICAM solutions to support PIV, Certificate Base Authentication, FIDO 2. • Engineer and build a secure and robust enterprise identify and access management solution • Responsible for installing, customizing, configuration and supporting SailPoint Identity and Access Management tool and processes. This includes automated provisioning/deprovisioning to downstream applications. • Facilitate and support ICAM integration to business applications and third parties, including Single Sign On enablement and management • Collaborate with customer to define organization constructs/naming conventions and user access roles • Assist with the development of process and workflows to support ICAM operation activities such as user onboarding, user lifecycle management and privilege access management • Provide assistance with the integration of an Enterprise PKI solution. • Engage with, and advise stakeholders within the business on Identity and Access Management best practices • Define, improve, and support Active Directory, Azure Active Directory and Privileged Access Management within the organization • Identify areas for delivery automated solutions (e.g. onboarding/offboarding) and maturation of existing processes by leveraging scripting
• Identificar: Detectar piezas fuera de producción (OOP) en la lista de solicitudes de cambio (CR) o números de pieza (PN) proporcionados • Analizar: Evaluar la criticidad de las piezas OOP mediante análisis y clasificación de la probabilidad e impacto en las operaciones • Proponer: Sugerir y justificar soluciones para las piezas OOP ante la Junta de Control Industrial de nuestro cliente final • Desarrollar e Implementar Soluciones: Coordinar con interesados y proponer soluciones alternativas en caso de problemas o bloqueos
Visualization Engineer Intern
LeidosLeidos is an innovation company rapidly addressing the world’s most vexing challenges in national security and health.
• Receive assignments in the form of objectives and establish goals to meet outlined objectives. • Perform analysis, design, development and test of specific requirements related to visualizations, User Interface and User Experience (UI/UX), 3D modeling, AR/Vr simulation and visualization, and COTS integration. • Determine system and software specifications and architecture to meet customer requirements.
• Process tenders from transmission system operators (TSOs) for protection and secondary systems in high- and extra-high-voltage substations • Design and size protection systems for 220 kV and 380 kV installations in accordance with standards and operational safety • Develop protection concepts such as distance protection, differential protection and breaker-failure logic • Configure protection relays such as Siemens SIPROTEC (e.g., 7SA6, 7SD6) and create consistent device settings • Conduct technical clarifications and coordinate with TSOs, planners, customers and internal specialist departments • Prepare protection diagrams, logic matrices, deviation lists and technical specifications • Create and review FAT and SAT test plans for factory acceptance and commissioning tests • Supervise protection tests and support fault analysis and commissioning



