Do you want to build a career that is truly
worthwhile? Working at the World Bank Group provides a unique opportunity for
you to help our clients solve their greatest development challenges. The World
Bank Group is one of the largest sources of funding and knowledge for
developing countries; a unique global partnership of five institutions
dedicated to ending extreme poverty, increasing shared prosperity and promoting
sustainable development. With 189 member countries and more than 130 offices
worldwide, we work with public and private sector partners, investing in
groundbreaking projects and using data, research, and technology to develop
solutions to the most urgent global challenges. For more information, visit www.worldbank.org
ITS Vice Presidency Context:
The Information and Technology Solutions (ITS) Vice Presidential Unit (VPU) enables the World Bank Group to achieve its mission of ending extreme poverty and boost shared prosperity on a livable planet by delivering transformative information and technologies to its staff working in over 150+ locations. For more information on ITS, see this video:https://www.youtube.com/watch?reload=9&v=VTFGffa1Y7w
Information and Technology
Solutions (ITS) enables the WBG to achieve its mission of ending extreme
poverty and promote shared prosperity in a sustainable way by delivering
transformative information and technologies to its staff working in over 150
locations.
Our vision is to transform how
the Bank Group accomplishes its mission through information and technology. In
this fast-paced, ever-changing world, the formulation and implementation of the
ITS strategy is an ongoing, iterative process of learning and adaptation
developed through extensive consultations with business partners throughout the
World Bank Group.
ITS shapes its strategy in
response to changing business priorities and leverages new technologies to
achieve three high-level business outcomes: business enablement, by
providing Bank Group units with innovative digital tools and technologies to
transform how they deliver value for their clients; empowerment &
effectiveness, by ensuring that all Bank Group staff are connected, able to
find information, and productive to accelerate the delivery of development
solutions globally; and resilience, by equipping the Bank Group to
provide risk-based cybersecurity and robust data protection for a global
network and a growing cloud platform.
Implementation of the strategy
is guided by three core principles. The first is to deliver solutions for
business partners that are customer-centric, innovative, and transformative.
The second is to provide the Bank Group with value for money with selective and
standard technologies. The third principle is to excel at the basics by
providing a high performing, robust, and resilient IT environment for the
organization.
The Technology
Platforms Team (ITSPL) is anchored in the Chief Technology Officer (ITSTO)
division in ITS. ITS Technology Office (ITSTO) drives technology-enabled
innovation and delivers the digital backbone for WBG's mission. It develops
future-ready technology strategy, modernizes infrastructure, manages
innovation, and fosters agility. The unit collaborates across the organization
to leverage technology as a force multiplier, accelerating development impact
and digital transformation globally.
ITSPL delivers
secure, cloud-first IT platforms with automation, self-service, IAM , &
Platform Engineering (IaC). It manages databases, integrations, & cloud ops
to ensure reliable, scalable, & cost-effective alignment with enterprise
standards. The primary programs that the ITSTO unit is responsible for is
providing a wide range of technical infrastructure services to meet the
institution's computing needs, from mid-range servers, large scale servers, and
the respective system, network, and supporting software on those platforms. It
provides engineering, integration, and system administration services for
Server Administration, Server Security, Backup/Restore, Storage, Virtual
infrastructure (on premise and in cloud), load balancing, PKI Management and
Data Center Management.
The role requires a hands-on
approach hands-on position in a very multicultural environment which supports
diversity, continuous learning, enhancing skillsets and collaboration. The
candidate must demonstrate excellent communication skills as the position
requires interaction with other teams. The candidate must possess a strong
sense of curiosity, adaptability, and the drive to learn and innovate.
We provide a meaningful, open,
and collaborative environment. We have many interesting problems to solve,
providing you an opportunity to develop your skills while contributing to the
mission of the bank. We value teamwork, openness, curiosity, and persistence.
About the Position:
The rapid
evolution of cloud computing and cybersecurity necessitates a specialized role
to design, implement, and manage secure, scalable infrastructure that
integrates Application Delivery Controllers (ADC), WAF/CDN,
and CloudHSM-backed PKI systems. This position focuses on optimizing
load balancing for high availability, automating secure deployments using
Terraform (IaC), and embedding Zero Trust principles across hybrid
environments. The engineer will ensure seamless traffic management using advanced
ADC configurations (e.g., TLS termination, caching) while securing API gateways
and application platforms with robust encryption and centralized PKI lifecycle
management. By leveraging Zero Trust architecture and integrating modern
security frameworks like SASE, the role mitigates risks such as DDoS attacks
while enhancing operational resilience. Additionally, this position will
implement SRE practices to achieve resilience, automate standards and
future-proof Security Development Controller infrastructure
Competencies
Required:
Technical
Proficiency & Cognitive skills:
- Experience as a Site Reliability Engineer with hands-on knowledge of Site Reliability Engineering (SRE) practices & Principles, including implementing and managing SLOs, error budgets, observability, incident response, and automation in high-availability environments.
- Proven track record in configuring and supporting F5 infrastructure, including advanced ADC configurations such as TLS termination and caching.
In-depth knowledge and practical experience with Cloudflare's DDoS protection and Web Application Firewall (WAF) capabilities.
- Strong understanding and hands-on
experience in setting up and managing PKI systems, including
CloudHSM-backed PKI lifecycle management.
- Experience in supporting middleware
environments for various platforms such as JAVA, .NET, NodeJS, and
Angular.
- Solid understanding of database
concepts and their application in modern infrastructure.
- Proficiency in modern DevOps
practices, including continuous integration and continuous deployment
(CI/CD) processes.
- Experience with infrastructure as
code using tools like Terraform and Ansible for automating secure
deployments.
- Strong knowledge of Azure Active
Directory (AD) for authentication and authorization.
- Expertise in configuring and
managing load balancers (F5, NGINX, ALB, App GW) and monitoring tools such
as Splunk.
- Experience with AWS services
including EC2, VPC, CloudFront, S3, Route53, RDS, Lambda, and more.
- Experience with Azure services such
as Virtual Machines, Storage, App Service, Azure Functions, Azure SQL,
PostgreSQL, AKS, and more.
- Client Understanding and Advising: Advocates for client needs and perspectives.
- Learning Orientation: Keeps up with new SRE, cloud, middleware, Application Delivery Controller and automation trends.
- Analytical Thinking: Strong diagnostic and troubleshooting skills.
- Foundation Architecture Knowledge: Supports standards for hybrid cloud and on-prem Load balancing and PKI Infrastructure.
- Strategic Technology Planning: Contributes to technological roadmaps, especially for SRE and cloud (Platform as a product)
- Technology Knowledge: Deep understanding of hybrid cloud, containerization, and middleware.
- Modernize and Innovate: Develops innovative solutions in automation, observability, and cloud migration.
- Deliver Results for Clients: Ensures high reliability and performance.
- Collaboration: Works effectively across teams and locations.
- Knowledge Sharing: Actively participates in knowledge transfer and documentation.
- Decision Making: Makes informed decisions, especially in incident response.
- Communication: Excellent written and verbal English; able to explain complex technical concepts.
Roles &
Responsibilities:
Independent
contributor IT professional providing advanced expertise to ensure the
effective performance of one or more elements of the organization’s technical
infrastructure.
* Maintain and modernize the existing
load balancing environment, ensuring high availability and optimal
performance.
* Support the bank’s Enterprise load balancer infrastructure and its associate modules (F5 , Cloudflare , Cloud Native Load Balancing Services)
* Setup and configure Cloudflare services, including DNS, CDN and security features like DDoS and WAF.
* Implement and maintain WAF rules and page rules.
* Monitor website performance and security using Cloudflare analytics and logs.
* Optimize caching strategies and content delivery to improve load times and user experience.
* Oversee the lifecycle management of
SSL certificates for both external and internal CA signing authorities.
* Manage the internal PKI authority
and associated private key management through CloudHSM, seeking
opportunities to modernize the PKI infrastructure.
* Look at enhancements and opportunities for modernizing the PKI Infrastructure
* Develop new and support existing applications that support services provided by the Platform Engineering team.
Plan, Install, maintain, configure Azure and AWS services including but not limited to ALB, App GW, App Proxy
* Automate repetitive manual tasks and make it available as a self-service catalog item.
* Build tools to reduce occurrences of errors and improve customer experience
* Review work done by junior team members and provide technical support and mentorship
* Embrace Site Reliability Engineering (SRE) practices to enhance resilience and operational efficiency.
* A good knowledge on Cloud Technologies is essential for this role to help support the cloud migration road map.
* Follow best practices by enforcing standards across various technologies.
* When provided with an objective to improve performance in their area(s) of technology, develops and implements action plans needed to effect the change.
* Provides technical support and mentorship to team members.
* Support in adopting cloud native middleware services.