Staff Engineer, Software
Thermo Fisher · Bangalore, India
Free to search · AI fit score against your CV · tailor your résumé in one click
Thermo Fisher · Bangalore, India
Work Schedule Standard (Mon-Fri) Environmental Conditions Office Job Description Job Description At Thermo Fisher Scientific, our Mission is to enable our customers to make the world healthier, cleaner and safer. We are seeking a highly experienced Staff Engineer Software - DevOps and Platform Engineering professional to provide technical leadership and hands-on engineering across DevOps, DevSecOps, AWS infrastructure, CI/CD, platform engineering, build and release systems, automation, and developer productivity. This is a senior individual contributor role requiring deep technical expertise, strong architectural thinking, ownership, leadership, and the ability to influence engineering practices across multiple teams and products. The successful candidate will be expected to solve complex engineering problems, define scalable solutions, establish technical standards, mentor engineers, evaluate emerging technologies, and drive continuous improvement across the software delivery lifecycle. Purpose of the Role The Staff Engineer will provide end-to-end technical ownership and architectural leadership for cloud infrastructure, CI/CD platforms, DevSecOps, build and release engineering, automation, and software delivery systems. The role will focus on building secure, reliable, scalable, cost-effective, and highly automated engineering platforms that improve software delivery speed, platform reliability, developer productivity, and operational efficiency. Key Responsibilities DevOps Architecture and Technical Leadership • Define DevOps, cloud, CI/CD, build, release, and platform architecture across multiple products and engineering teams. • Design scalable, secure, reliable, maintainable, and cost-effective engineering solutions. • Establish reusable architectures, frameworks, standards, and engineering best practices. • Lead architecture reviews, complex technical investigations, and cross-product problem solving. • Identify technical risks and drive mitigation plans before they affect delivery or operations. • Provide technical direction to development, verification, automation, security, infrastructure, and release teams. • Mentor engineers and raise the technical capability of the broader organization. • Evaluate emerging technologies and introduce solutions that provide measurable engineering or business value. AWS Cloud and Infrastructure • Design, implement, and maintain secure and scalable AWS infrastructure across engineering environments. • Apply strong hands-on expertise across compute, networking, storage, identity, security, monitoring, and automation. • Design auto-scaling and on-demand build, test, and automation infrastructure. • Implement Infrastructure as Code using Terraform, AWS CDK, CloudFormation, or equivalent technologies. • Apply least-privilege IAM, centralized secrets management, and secure access patterns. • Drive AWS cost optimization through right-sizing, auto-scaling, storage lifecycle management, cleanup, and usage monitoring. • Design infrastructure for reliability, recovery, and operational continuity. CI/CD and Platform Engineering • Architect and maintain enterprise-grade CI/CD platforms using Jenkins, GitHub Actions, and related technologies. • Design reusable pipelines covering build, test, security scanning, packaging, signing, artifact publishing, deployment, and release. • Standardize CI/CD patterns across repositories and reduce duplication through reusable workflows and templates. • Improve build and release performance through parallel execution, caching, dependency optimization, and dynamic infrastructure. • Implement self-service platform capabilities that improve developer productivity and reduce manual intervention. • Ensure critical CI/CD services remain reliable, supportable, and highly available. DevSecOps and Software Supply Chain Security • Integrate security throughout the software development and CI/CD lifecycle. • Implement centralized secrets and credential management and eliminate hardcoded or long-lived credentials where possible. • Integrate automated security scanning including CodeQL, SonarQube, dependency scanning, secret scanning, and vulnerability analysis. • Implement secure code signing, certificate management, and software artifact integrity controls. • Support SBOM generation, dependency traceability, artifact provenance, and software supply chain security. • Partner with cybersecurity and compliance teams to implement applicable security and audit requirements. AI and GenAI Engineering • Evaluate and adopt AI and GenAI tools that improve software engineering, DevOps productivity, and quality. • Apply AI-assisted engineering to code development and review, CI/CD pipeline creation, infrastructure automation, log analysis, build failure diagnosis, incident troubleshooting, security analysis, test generation, and documentation. • Explore agentic AI opportunities for repetitive DevOps and engineering workflows. • Establish appropriate security, governance, privacy, and human-review practices for AI-generated outputs. • Guide engineering teams in responsible and effective use of AI-assisted engineering tools. Reliability and Observability • Establish monitoring, logging, metrics, dashboards, and alerting across engineering platforms. • Monitor CI/CD availability, build performance, failure trends, deployment reliability, and infrastructure utilization. • Conduct root