ResMed

Senior Engineer,Platform Engineering

Halifax, Canada Full time

Global Technology Solutions (GTS) at ResMed is a division dedicated to creating innovative, scalable, and secure platforms and services for patients, providers, and people across ResMed. The primary goal of GTS is to accelerate well-being and growth by transforming the core, enabling patient, people, and partner outcomes, and building future-ready operations.

The strategy of GTS focuses on aligning goals and promoting collaboration across all organizational areas. This includes fostering shared ownership, developing flexible platforms that can easily scale to meet global demands, and implementing global standards for key processes to ensure efficiency and consistency.

At Resmed, we are changing lives with every breath – we improve patient quality of life, prevent chronic disease progression and reduce healthcare system costs. The Platform Compute Networking (EKS) Team’s mission is to reduce the cognitive load of Resmed's development teams with an opinionated, yet empathetic experience that avoids surprise, balances usability with functionality, and abstracts the complexities of modern networking practices to accelerate the pace of Resmed’s next generation Healthcare Informatics platform.

As a Senior Software Engineer on our compute team, you must possess strong technical skills and a sense of empathy for your fellow developers.  You will work closely with other talented engineers, architects and senior stakeholders to design, implement, and deliver on our roadmap.

Our Ideal Candidate

  • Distills Kubernetes & cloud networking (identity, routing, segmentation, exposure) into clear, lightweight abstractions that cut cognitive load for product teams

  • Claims ownership of hard connectivity challenges end‑to‑end, including design, rollout, adoption, and lifecycle producing solutions with company‑wide impact

  • Practices surgical precision in feature development, delivering high value while avoiding complexity that delays or bloats

  • Delivers work permeated with excellence including readable code, automated tests, clear documentation, consistent maintenance, and polished observability

  • Intuitively understands packet flow, service identity, and secure communication with a keen ability to simplify them

  • Understands the importance of resilience and reliability in production operations and upgrades

Responsibilities and Accountabilities

  • Design and evolve self‑service connectivity abstractions enabling scoped segmentation, governed exposure, adaptive ingress/egress, and traceable traffic

  • Own service identity & trust (mTLS, cert automation, least‑privilege east‑west, governed egress) with broad coverage and low friction

  • Engineer resilient traffic paths (timeouts, retries, circuit breaking, failure isolation) and harden them via chaos tests, automated remediation, and MTTR reduction

  • Establish observability standards so end‑to‑end request path and applied policies are visible (source, identity, route, outcome, saturation, cost) across environments

  • Provide approachable docs & diagnostics (guides, diagrams, ‘why can’t this connect?’ flows) to shorten support loops

  • Optimize performance & cost (latency budgets, cross‑AZ transfer, IP consumption, LB efficiency) and act on anomalies

  • Apply threat & abuse modelling to connectivity surfaces (API exposure, egress, identity propagation) using industry principles while keeping solutions developer‑friendly

  • Steward lifecycle and adoption including versioning, safe migrations, deprecations, usage telemetry, and proactive pruning of unused resources

  • Mentor engineers and partner with adjacent DevX teams to embed networking abstractions into golden paths, raising organizational fluency and consistency

  • Own, operate, and maintain network related infrastructure within and adjacent to EKS

Qualifications and Experience

  • BS/MS in Computer Science (or equivalent) and 8+ years of experience building and operating distributed/platform systems with production Kubernetes/EKS ownership

  • Proficiency in at least one language (Go, TypeScript, Python, Java) and disciplined SCM workflows (branching, reviews, automated gates)

  • Solid grounding in cloud + Kubernetes networking, for example VPC & subnet layout, routing, east-west segmentation, service exposure, DNS/CoreDNS, policy enforcement, and CNI behaviour

  • Practical service trust & identity knowledge such as mTLS, certificate automation/rotation, PKI/CA or SPIFFE/SPIRE concepts

  • Working understanding of traffic resilience & performance: timeouts, retries, backoff, circuit breaking, rate limiting, failure isolation, latency and saturation analysis

  • Experience with developer connectivity abstractions: K8s CRDs/operators, guardrails (admission, lint, simulation) and automated tests

  • Competence in observability & SLOs (metrics, tracing, structured logs, L4/L7 telemetry, end‑to‑end request path, visibility into applied policies, SLI/SLO definition & enforcement)

  • Experience with infrastructure as code and delivery: Terraform or CDK, GitOps (Argo/Flux), progressive/canary rollouts, policy-as-code integration

  • Operational experience: chaos/fault injection, component upgrades (CNI, proxies, cert issuers), incident response

  • Ability to communicate and mentor on networking & identity across varied fluency levels

  • Working knowledge of eBPF / Cilium Hubble or Envoy extensions is an asset

  • Exposure to Gateway API or service mesh (Istio, Linkerd, ambient), multi region failover, IPv6/dual stack planning is an asset

  • Comfort with advanced DNS/discovery (split horizon, conditional forwarding), policy engines (Kyverno/OPA), API inventory & cost attribution metadata is an asset

Joining us is more than saying “yes” to making the world a healthier place. It’s discovering a career that’s challenging, supportive and inspiring. Where a culture driven by excellence helps you not only meet your goals, but also create new ones. We focus on creating a diverse and inclusive culture, encouraging individual expression in the workplace and thrive on the innovative ideas this generates. If this sounds like the workplace for you, apply now! We commit to respond to every applicant.