Kubernetes and Application Infrastructure Engineer
Lawrence Livermore National Laboratory
169k - 214k USD/year
Office
Livermore, CA, United States
Full Time
Company Description
Join us and make YOUR mark on the World!
Are you interested in joining some of the brightest talent in the world to strengthen the United States’ security? Come join Lawrence Livermore National Laboratory (LLNL) where our employees apply their expertise to create solutions for BIG ideas that make our world a better place.
We are dedicated to fostering a culture that values individuals, talents, partnerships, ideas, experiences, and different perspectives, recognizing their importance to the continued success of the Laboratory’s mission.
Pay Range
$168,780 - $214,032 Annually for the SES.3 level
This is the lowest to highest salary we in good faith believe we would pay for this role at the time of this posting; pay will not be below any applicable local minimum wage. An employee’s position within the salary range will be based on several factors including, but not limited to, specific competencies, relevant education, qualifications, certifications, experience, skills, seniority, geographic location, performance, and business or organizational needs.
Job Description
We have an opening for a Kubernetes and Application Infrastructure Engineer. You will play a key role in creating reliable Helm charts and Kubernetes manifests, improving CI/CD pipelines, and ensuring smooth containerization and deployment of microservices. This position is part of the Enterprise Infrastructure Services (EIS) Division within the Computing Directorate, supporting the Livermore Information Technology (LivIT) program. This position is in the EIS Division within the Computing Directorate, is support of the LivIT program.
This position offers a hybrid schedule, blending in-person and virtual presence. You will have the flexibility to work from home one or more days per week.
You will
- Architect, implement, and manage highly available enterprise applications and scalable Kubernetes clusters across cloud, such as AWS, GCP, and Azure, and on-premises environments, leveraging strong knowledge of application servers, web services, and related technologies to support enterprise IT service delivery.
- Develop, optimize, and maintain Helm charts, Kubernetes manifests, and automation scripts to enable efficient deployment and operation of microservices architectures.
- Leverage systems programming and automation tools (e.g., Python, Bash, Terraform, Ansible) to orchestrate, monitor, configure, secure, and patch Enterprise applications, Kubernetes clusters and containerized services.
- Collaborate with cross-functional teams, including developers, IT managers, systems and database administrators, and security personnel, to design and deliver robust, secure, and scalable application infrastructures.
- Manage the full lifecycle of Enterprise application and Kubernetes environments, including capacity planning, upgrades, documentation, standards enforcement, security compliance, vulnerability remediation, and performance monitoring.
- Provide operational support for Enterprise Application, Kubernetes, Docker, and related technologies, such as ingress controllers, load balancers, and API gateways, to meet negotiated Service Level Agreements (SLAs).
- Implement and enforce security best practices within container environments, including RBAC, secrets management, network policies, vulnerability scanning, and DevSecOps principles.
- Perform other duties as assigned.
Qualifications
- Ability to obtain and maintain a US DOE Q-level security clearance which requires U.S. Citizenship.
- Bachelor’s degree in Computer Science, Software Engineering, Management Information Systems, or related field, or the equivalent combination of education and related experience.
- Advanced experience in DevOps, Application Infrastructure Engineer, or similar roles.
- Significant hands-on experience managing and operating application infrastructure and Kubernetes clusters in production environments.
- Extensive experience implementing, managing, and supporting applications and cloud service infrastructures, including monitoring, security, and lifecycle management, across a range of technologies, such as Java Play, Oracle WebLogic, Apache, Tomcat, IIS, load balancers, API gateways, Kubernetes, and various enterprise COTS solutions.
- Significant experience with systems programming and/or automation tools, such as Python, Bash, Go, Terraform, Ansible, and Helm, to create, configure, monitor, and automate the management of Kubernetes and application infrastructures, including O/S administration, configuration management, CI/CD deployments, or security administration.
- Advanced knowledge of Docker and containerization principles.
- Advanced experience with major cloud platforms and their managed Kubernetes services, such as AWS EKS, GCP GKE, Azure AKS.
- Advanced knowledge of core networking concepts, including load balancing, DNS, firewalls, and network policies within cloud-native and Kubernetes environments.
- Advanced knowledge of DevSecOps principles and proven experience in implementing security best practices and ensuring compliance within containerized infrastructure.
- Significant experience collaborating with cross-functional teams to jointly create infrastructure services that meet business requirements.
- Advanced communication, facilitation, and collaboration skills necessary to effectively present, explain, and advise senior management and/or external sponsors.
- Advanced troubleshooting, debugging, and root cause analysis skills for complex distributed systems.
Qualifications We Desire
- Master’s degree in Computer Science, Computer Engineering, or Management Information Systems.
- Experience leveraging Splunk or equivalent SIEM environment to operationally manage application infrastructure services.
- Experience working in a compliance-driven and secure environment, as well as project management experience with large, enterprise commercial off-the-shelf (COTs) application implementations.
Additional Information
#LI-Hybrid
Position Information
This is a Career Indefinite position, open to Lab employees and external candidates.
Why Lawrence Livermore National Laboratory?
- Included in 2025 Best Places to Work by Glassdoor!
- Flexible Benefits Package
- 401(k)
- Relocation Assistance
- Education Reimbursement Program
- Flexible schedules (*depending on project needs)
- Our values - visit https://www.llnl.gov/inclusion/our-values
Security Clearance
This position requires a Department of Energy (DOE) Q-level clearance. If you are selected, we will initiate a Federal background investigation to determine if you meet eligibility requirements for access to classified information or matter. Also, all L or Q cleared employees are subject to random drug testing. Q-level clearance requires U.S. citizenship.
Pre-Employment Drug Test
External applicant(s) selected for this position must pass a post-offer, pre-employment drug test. This includes testing for use of marijuana as Federal Law applies to us as a Federal Contractor.
Wireless and Medical Devices
Per the Department of Energy (DOE), Lawrence Livermore National Laboratory must meet certain restrictions with the use and/or possession of mobile devices in Limited Areas. Depending on your job duties, you may be required to work in a Limited Area where you are not permitted to have a personal and/or laboratory mobile device in your possession. This includes, but not limited to cell phones, tablets, fitness devices, wireless headphones, and other Bluetooth/wireless enabled devices.
If you use a medical device, which pairs with a mobile device, you must still follow the rules concerning the mobile device in individual sections within Limited Areas. Sensitive Compartmented Information Facilities require separate approval. Hearing aids without wireless capabilities or wireless that has been disabled are allowed in Limited Areas, Secure Space and Transit/Buffer Space within buildings.
How to identify fake job advertisements
Please be aware of recruitment scams where people or entities are misusing the name of Lawrence Livermore National Laboratory (LLNL) to post fake job advertisements. LLNL never extends an offer without a personal interview and will never charge a fee for joining our company. All current job openings are displayed on the Career Page under “Find Your Job” of our website. If you have encountered a job posting or have been approached with a job offer that you suspect may be fraudulent, we strongly recommend you do not respond.
To learn more about recruitment scams: https://www.llnl.gov/sites/www/files/2023-05/LLNL-Job-Fraud-Statement-Updated-4.26.23.pdf
Equal Employment Opportunity
We are an equal opportunity employer that is committed to providing all with a work environment free of discrimination and harassment. All qualified applicants will receive consideration for employment without regard to race, color, religion, marital status, national origin, ancestry, sex, sexual orientation, gender identity, disability, medical condition, pregnancy, protected veteran status, age, citizenship, or any other characteristic protected by applicable laws.
Reasonable Accommodation
Our goal is to create an accessible and inclusive experience for all candidates applying and interviewing at the Laboratory. If you need a reasonable accommodation during the application or the recruiting process, please use our online form to submit a request.
California Privacy Notice
The California Consumer Privacy Act (CCPA) grants privacy rights to all California residents. The law also entitles job applicants, employees, and non-employee workers to be notified of what personal information LLNL collects and for what purpose. The Employee Privacy Notice can be accessed here.
Kubernetes and Application Infrastructure Engineer
Office
Livermore, CA, United States
Full Time
169k - 214k USD/year
August 20, 2025

Lawrence Livermore National Laboratory
Livermore_Lab