Design, deploy, and operate production-grade AKS clusters, owning cluster architecture, networking, security hardening, observability, CI/CD, and incident response. Integrate AKS with Azure services, manage deployments with Docker/Helm and GitOps, run Terraform IaC, define SLIs/SLOs, perform vulnerability management and DR planning, and provide on-call escalation and runbook documentation.
Working for a company like Smile Digital Health means supporting our mandate for #BetterGlobalHealth. We strive towards this goal every day, and the results can be seen in the impact of our innovative health data platform and data management solutions, which are used in over 20 countries. We were #19 on Deloitte's Technology Fast 50 Ranking for 2024!
Smile Digital Health makes it easy for healthcare stakeholders to collect and exchange data with our leading FHIR-based data liberation platform.
At its heart, the Smile platform enables people and organizations to better manage healthcare data. We help generate and liberate structured healthcare data to ensure effective delivery across care teams and health systems bringing #BetterGlobalHealth to patients everyday!
Apply today and find plenty of reasons to SMILE!
The Azure Platform Engineer is responsible for designing, deploying, and operating production-grade Azure Kubernetes Service (AKS) clusters, with a strong focus on cluster internals, networking, security hardening, and reliability. This role owns the platform end-to-end from cluster architecture and CI/CD through to performance tuning, observability, and incident response for critical systems. Acting as the SME for Kubernetes deployments, blockers, and production issues. The successful candidate works closely with application, security, and platform teams to keep AKS environments reliable, observable, and production-ready.
Responsibilities:
- Act as the subject-matter expert (SME) for Kubernetes deployments, troubleshooting, and production issues across all environments.
- Design and deploy Azure Kubernetes Service (AKS) clusters with private cluster configurations, managed identities, and RBAC.
- Own the health, scaling, and lifecycle management of production AKS clusters, including upgrades, node pool management, autoscaling, and capacity planning.
- Configure AKS networking, including Azure CNI, internal load balancers, and ingress controllers (NGINX, Traefik).
- Design and maintain integrations between AKS with Azure Container Registry (ACR), Key Vault via CSI driver, Azure Monitor for containers, Azure SQL, Kafka/Event Hubs, Azure Storage, and other client-facing dependencies (DNS resolution, firewall rules, private endpoints, and service connectivity).
- Manage containerized application deployments using Docker and Helm; maintain reusable chart and templating standards, namespaces, resource quotas, and Azure Policy for AKS.
- Harden AKS environments through policy enforcement, network policies, and image scanning.
- Own container and cluster vulnerability management: scanning, triage, prioritization, and remediation coordination with engineering teams.
- Contribute to Terraform-based infrastructure as code for provisioning and managing Azure resources.
- Support Azure DevOps (or equivalent) CI/CD pipelines, including GitOps workflows (Flux/ArgoCD), to reduce deployment risk and improve release velocity.
- Design, implement, and manage observability across the Grafana stack (Prometheus, Loki, Tempo) and Azure-native tooling (Azure Monitor, Log Analytics Workspace, Application Insights) for critical systems; define SLIs/SLOs and tune alerting to reduce noise.
- Collaborate with performance engineering and application teams to identify, diagnose, and resolve performance bottlenecks spanning the AKS platform and its dependent services (database, messaging, network) to right-size node pools and workloads based on observed performance and utilization trends.
- Contributing to Disaster Recovery and Business Continuity Planning (DR/BCP) procedures for AKS-hosted workloads, including cross-team failover drill participation and RTO/RPO validation.
- Provide escalation support for production Kubernetes and infrastructure incidents; participate in on-call rotation, lead root-cause analysis, and drive preventative follow-up actions.
- Document runbooks and post-incident reviews, and operational knowledge; maintain a living knowledge base to reduce tribal knowledge.
- 5+ years of hands-on Kubernetes experience, including at least 2 years running AKS in production.
- Strong knowledge of Kubernetes internals scheduling, networking, storage, RBAC.
- Proficiency in Azure CNI networking and AKS private cluster configuration.
- Hands-on experience integrating AKS with Azure PaaS services (ACR, AKV, Azure SQL, Kafka and Managed Identities) and troubleshooting network-layer dependencies (DNS, firewall, private endpoints).
- Experience with Helm and GitOps workflows (Flux/ArgoCD).
- Working knowledge of Terraform for infrastructure as code.
- Working knowledge of Azure DevOps or similar CI/CD tooling.
- Hands-on experience implementing and operating observability platforms: Grafana stack (Prometheus, Loki, Tempo) and Azure-native monitoring (Azure Monitor, Log Analytics, Application Insights); experience defining SLIs/SLOs for production systems.
- Practical experience with container/cluster vulnerability management and remediation workflows.
- Scripting skills in Bash, Python.
- Certified Kubernetes Administrator (CKA), Or CKAD certification and Microsoft Certified: Azure Administrator (AZ-104) required.
- Excellent written and verbal communication skills; able to convey technical issues clearly to both technical and non-technical stakeholders.
Smile discloses that artificial intelligence (AI) may be used in portions of the recruitment and selection process, such as resume screening or application assessment. All hiring decisions are ultimately made by qualified human decision-makers, and AI tools are used to support — not replace — fair and equitable hiring practices.
This position is a new role, created to support Smile’s continued growth and commitment to operational excellence.
This position is a new role, created to support Smile’s continued growth and commitment to operational excellence.
Some of the benefits we offer:
* Remote Work Environment
* Flexible Time Away From Work Policy including PTO, Personal and Sick Days
* Competitive Salary and Health/Medical Benefits
* RRSP/TFSA/401K Employee Contribution
* Life and Disability
* Employee Assistance Program
* FHIR Study Program and Skillsoft Learning
* Super HAPI Fun Club
Smile's core values include respect, inclusion, embracing our differences, and celebrating shared values because our people are the foundation of our success. We are big on creating a sense of belonging and empowering each other to bring our authentic selves to work. We are dedicated to fostering a workplace that values diversity, equity, and inclusion.
We welcome and encourage candidates of all backgrounds to apply. Candidates are encouraged to inform us if they wish to discuss or require accommodations during interviews or while working at Smile.
Smile Digital Health Toronto, Ontario, CAN Office
Toronto, Canada
Smile Digital Health Toronto, Ontario, CAN Office
Toronto, Ontario, Canada
Similar Jobs
Artificial Intelligence • Cloud • Computer Vision • Hardware • Internet of Things • Software
The Staff Software Engineer will shape technical direction, build developer platforms, and design AI agents, enhancing developer productivity and collaboration across teams.
Top Skills:
Ai Coding ToolsCi/CdGoPythonTypescript
Artificial Intelligence • Cloud • Computer Vision • Hardware • Internet of Things • Software
Design, build, and maintain SparkSQL/PySpark data pipelines in the central data lake to ingest IoT, product, and unstructured data (video/audio). Produce reliable computed tables for analytics, model training, and dashboards; integrate external datasets; ensure high data quality and uptime; and collaborate with Data Science, ML, and cross-functional teams.
Top Skills:
AirflowAWSAzureDagsterData LakeDatabricksDelta LakeETLGCPGitGitPrefectPysparkPythonRest ApisSparkSparksqlSQL
Artificial Intelligence • Cloud • Computer Vision • Hardware • Internet of Things • Software
Lead detection, incident response, and digital forensics across macOS/Windows/Linux; act as Incident Commander, triage alerts, use SIEM, build investigation scripts and automated runbooks, collaborate with stakeholders on insider threat and security operations improvements.
Top Skills:
AWSGCPLinuxmacOSPythonSIEMTofuWindows
What you need to know about the Toronto Tech Scene
Although home to some of the biggest names in tech, including Google, Microsoft and Amazon, Toronto has established itself as one of the largest startup ecosystems in the world. And with over 2,000 startups — more than 30 percent of the country's total startups — Toronto continues to attract new businesses. Be it helping entrepreneurs manage their finances, simplifying business operations by automating payroll or assisting pharmaceutical companies in launching new drugs, the city's tech scene is just getting started.
