<

DevOps Engineer

Location
Indonesia
Department
Payments Technology
Share
Apply for this job

About Us

M-DAQ Global is a pioneering fintech group specialising in foreign exchange (FX) and payment solutions that facilitate seamless cross-border transactions for businesses worldwide. Its proprietary technology delivers FX clarity, certainty, and payment mobility through a single API, empowering large enterprises and SMEs to manage global trade and FX exposure with confidence. 

 

Headquartered in Singapore with an expanding presence across ASEAN and 7 countries and territories, M-DAQ Global provides a comprehensive suite of FX, collections, and payment solutions. This includes AI-enabled onboarding, compliance, and enhanced risk management solutions, enabling businesses to transact across borders with ease amidst evolving needs. 

 

Our employee experience and growth have also been recognised through industry and workplace accolades, including:

  • The Financial Times High-Growth Companies Asia-Pacific 2026

  • The Straits Times Singapore’s Fastest Growing Companies 2026

  • Tech in Asia Singapore’s Top Fintech Companies 2026

  • Employee Experience Awards - Best Hybrid Work Model

For more information, please visit: www.m-daq.com.

About the Role 

We run cross-border payment infrastructure, money movement across multiple jurisdictions, on regulated rails, with real settlement deadlines. That means our platform has two non-negotiables: it stays up, and every change to it is explainable to an auditor six months later. 

You'll own the systems that make that possible: our EKS clusters, our Terraform/OpenTofu estate, our CI/CD pipelines, and our GitOps delivery path. This is a hands-on senior role. You will write code, not just review other people's. 

What You'll Do 

  • Own and evolve our Kubernetes platform on AWS EKS, workload isolation, autoscaling, resource governance, upgrade cycles, and the ingress/service-mesh layer. 

  • Extend our infrastructure-as-code estate in Terraform/OpenTofu, organised with Terraspace across multiple AWS accounts and regions. 

  • Build and maintain GitHub Actions pipelines that engineers actually want to use: fast, reproducible, with sensible caching and no flaky steps that people learn to re-run twice. 

  • Run continuous delivery through ArgoCD, app-of-apps structure, progressive rollout, drift detection, and a clean story for what's deployed where. 

  • Improve observability and on-call: meaningful SLOs, alerts that correspond to user pain, dashboards someone can read at 3am. 

  • Reduce toil. If a task is done manually more than twice, your instinct should be to automate it or delete the need for it. 

  • Partner with engineering squads on production readiness, capacity planning, and incident response — including blameless postmortems and follow-through on action items. 

  • Support our security and compliance posture (ISO 27001, regulatory audits): access controls, secrets management, evidence trails, change approval. 

What We're Looking For 

  • Kubernetes. Several years running production Kubernetes, ideally EKS. You understand scheduling, networking (CNI, services, ingress), RBAC, storage, and what actually happens during a node rotation. You've debugged something ugly at the kubelet or CNI level and can tell the story. 

  • AWS. Deep working knowledge of VPC design, IAM, EKS, RDS/Aurora, ElastiCache, S3, ALB/NLB, Route 53, CloudWatch, and cost management. Multi-account and multi-region experience is a strong plus. 

  • Infrastructure as Code. Fluent in Terraform and/or OpenTofu. module design, state management, drift handling, plan review discipline. Experience with Terraspace is a significant advantage; if you haven't used it, you should be able to explain why that layer exists at all. 

  • CI/CD with GitHub Actions. You've built non-trivial workflows: reusable workflows, composite actions, matrix builds, OIDC-based cloud auth, self-hosted runners, artifact and cache strategy. You treat pipeline code as real code. 

  • GitOps with ArgoCD. You've run declarative delivery in production, and you're comfortable with ApplicationSets, sync waves and hooks, health checks, drift handling, and the trade-offs between pull-based delivery and imperative deploys. 

  • Fluency in DevOps culture, not just DevOps tooling. You can hold your own in a conversation about SRE principles, error budgets, blameless postmortems, "you build it, you run it," toil, and shift-left security and you know when the idealism meets reality and needs to bend. We want someone who has both the vocabulary and the scar tissue.  

Nice to Have 

  • Experience in fintech, payments, or another regulated environment 

  • Node.js/TypeScript microservices at scale 

  • RabbitMQ, Redis, Aurora MySQL operations 

  • Observability stacks (Prometheus, Grafana, OpenTelemetry, Cloudwatch, Opensearch, or similar) 

  • Secrets management (AWS Secrets Manager, Vault, External Secrets Operator) 

  • Policy-as-code (OPA/Gatekeeper, Kyverno), supply-chain security, SAST/DAST integration 

  • Contributions to open-source infrastructure tooling 

Apply for this job