Platform Manager
RedCarbon.ai is a Turin-based cybersecurity startup looking for a Platform & Infrastructure Engineer to own their cloud-native, Kubernetes-based infrastructure across both SaaS and PaaS offerings. The ideal candidate brings production-grade Kubernetes experience, a GitOps-first mindset, and a strong SecOps background, with the ability to make autonomous architectural decisions in a security-critical environment. The role offers full remote, real ownership over a platform that supports multi-provider K8s portability, and direct influence over infrastructure and security architecture in a lean, fast-moving team.
About Us
RedCarbon operates in the cybersecurity sector. This means security isn’t an add-on layer for us. It’s the product. Our infrastructure is cloud-native, GitOps-first, and Kubernetes-based. We’re building a resilient platform that supports both SaaS and PaaS offerings, with an architecture designed to support multiple Kubernetes providers.
We’re looking for someone with a clear vision of how to build and maintain a reliable platform, and who is able to make autonomous technical decisions in a context where security is non-negotiable.
The Role
You’ll be the technical point of reference for everything related to infrastructure, platform, and operational security. You’ll work closely with the development team in a startup where things move fast and there’s no approval chain slowing you down.
Your main scope:
- Infrastructure management and evolution: end-to-end ownership of the existing infrastructure for availability, scalability, and cost
- GitOps and IaC: ownership of the existing GitOps workflow, with responsibility for quality, consistency, and security of the infrastructure change management process
- SecOps: cluster hardening, access policy management, network policies, service accounts with least privilege, audit logs, vulnerability management
- PaaS evolution: contribute to the design and rollout of the PaaS offering, defining tenant onboarding patterns, isolation, and secure multi-tenancy
- Kubernetes portability: prepare the architecture to support other K8s providers (EKS, AKS, on-prem) without structural lock-in
- Technical decisions: actively contribute to architectural choices by bringing analysis and perspective, interfacing with the development team and other functions involved
What We’re Looking For
Must have:
- Multi-year experience with Kubernetes in production, with direct ownership of complex infrastructures
- Solid knowledge of GCP or equivalent hyperscaler (AWS/Azure), with the ability to reason about costs, security, and availability
- A solid GitOps approach in practice: IaC, PR workflow
- SecOps mindset: you know RBAC, network policies, CVE management, secrets management, with a cross-functional approach to security regardless of the formal role boundary
- Ability to work autonomously and make technical decisions without waiting for constant validation
- Master’s degree in a related field
Nice to have:
- Experience building or managing a PaaS platform (multi-tenancy, self-service onboarding, namespace/cluster isolation)
- Knowledge of observability tools (Prometheus, Grafana, OpenTelemetry)
- Familiarity with multiple Kubernetes providers (EKS, AKS, k3s, on-prem)
- Background or strong interest in cybersecurity/compliance (ISO 27001, SOC2, NIS2)
- Familiarity with AI-assisted tools for development and infrastructure management
- Open source contributions or visible technical side projects
- Kubernetes certifications (CKA, CKS); CKS is considered a significant plus given the context
- Good written and spoken English, for technical documentation and interaction with international tools and communities
What We Offer
- Ownership of a platform that actually matters. Our customers trust us with their security.
- A strong technical base with real room to evolve the architecture
- Small team, fast decisions, minimal politics
- We follow what’s happening in the industry and aren’t afraid to adopt new tools when they make sense
- Sponsorship for conferences, events, and technical training
- Full remote
- Flexible working hours and schedule
- Meal vouchers
- Health insurance (CCNL)