Jobs / Rumble

Senior Infrastructure Engineer - DNS

Rumble · Toronto, ON, Canada
Toronto, ON, CanadaExp: 8+ yrs132,000-195,000 CAD/yearlyRemote
Remuneration
132,000-195,000 CAD/yearly
Location
Toronto, ON, Canada
Visa sponsorship
Not specified

Job summary

Rumble is seeking a Senior Infrastructure Engineer (DNS) to build, operate, and advance the authoritative DNS infrastructure that supports Rumble's platform and related services.

Qualifications

  • Demonstrated experience operating a robust, production-grade authoritative DNS deployment.
  • Experience designing or operating high-availability, geographically distributed, and fault-tolerant infrastructure.
  • Knowledge of DNS security concepts, including DNSSEC, zone signing, key rotation, spoofing, cache poisoning, and amplification risks.
  • Experience with anycast DNS deployments and BGP-based traffic engineering.
  • Experience with DNS server software and tooling, such as BIND, Knot DNS, NSD, PowerDNS, Unbound, or comparable platforms.
  • Experience managing DNSSEC at scale, including automated signing, key management, rollover processes, and validation troubleshooting.
  • Experience with DNS-based global server load balancing, geo-routing, health checks, and traffic failover.
  • Experience with open-source routing daemons on Linux, such as BIRD or FRR.
  • Experience with DNS monitoring, query analytics, packet capture, and network-observability tools.

Responsibilities

  • Design, build, operate, and improve Rumble's authoritative DNS and global traffic-steering infrastructure.
  • Build fault-tolerant, secure, and highly available DNS services capable of handling large-scale query volume.
  • Develop and maintain DNS architecture, including zones, delegation, records, name-server infrastructure, recursive-resolution dependencies, and failover mechanisms.
  • Improve performance, resiliency, and reliability through anycast routing, load balancing, capacity planning, query analysis, and infrastructure automation.
  • Implement and maintain DNS security controls, including DNSSEC and protections against spoofing, cache poisoning, amplification, and other DNS-focused attacks.
  • Partner with CDN, network, systems, and security teams on service discovery, traffic routing, DDoS resilience, and incident response.
  • Build automation for zone management, configuration deployment, validation, change control, and operational maintenance.
  • Create and maintain architecture documentation, runbooks, incident postmortems, and operational procedures.
  • Participate in an on-call rotation, respond to incidents, and clearly communicate service status and remediation progress.

Skills

BashLinuxPerlPython

Relocation

No