Live opening · Posted 5 days ago
At a glance
The key details from the original listing.
Your early-applicant advantage
Live timing from JobBeeper.
About the role
Description supplied by the original job listing.
Role Overview
We are seeking a highly skilled Security Engineer to design, implement, and maintain
robust security systems that protect our organization’s digital assets, infrastructure, and
networks. In this role, you will focus heavily on securing containerized environments,
ensuring orchestrators are locked down, and building trusted, hardened base images.
You will be responsible for proactively identifying vulnerabilities, responding to real-time
security incidents, and establishing a security-first culture across our engineering teams.
This position requires full-time, on-site presence at our office.
Key Responsibilities
● Container Hardening: Build, maintain, and audit secure, hardened base
images (Docker/OCI). Implement automated workflows to scan and update base
layers, minimizing the attack surface before images reach production.
● Orchestration Security: Design and enforce security policies within
Kubernetes clusters, including Role-Based Access Control (RBAC), Network
Policies, Admission Controllers, and pod security standards.
● Secure SDLC and DevSecOps: Integrate container vulnerability scanning (e.g.,
Trivy, Clair, Grype) and static analysis tools directly into CI/CD deployment
pipelines.
● Security Infrastructure and Architecture: Design, deploy, and manage security
systems, including firewalls, Intrusion Detection/Prevention Systems (IDS/IPS),
SIEM platforms, and data encryption protocols.
● Vulnerability and Risk Management: Conduct regular vulnerability
assessments, code reviews, and configuration audits across
infrastructure-as-code (IaC) and running environments.
● Incident Response: Monitor cluster workloads and network traffic for suspicious
activity. Act as a primary responder to mitigate and remediate real-time security
breaches.
Requirements and Qualifications
● Education: Bachelor’s degree in Computer Science, Cyber Security, Information
Technology, or a related field (or equivalent professional experience).
● Experience: 2 to 5+ years of proven hands-on experience in a dedicated
Security Engineering, DevOps Security, or Infrastructure Security role.
● Technical Proficiency:
○ Advanced, hands-on experience with Docker containerization and secure
image construction (e.g., distroless images, multi-stage builds, rootless
execution).
○ Strong expertise managing and securing Kubernetes ecosystems
(managed services like EKS/GKE/AKS or self-hosted).
○ Deep understanding of cloud-native security tools, service meshes, and
runtime security monitoring (e.g., Falco).
○ Experience with scripting languages (e.g., Python, Bash, or Go) to
automate routine security tasks and threat hunting.
○ Strong expertise in securing public cloud environments (e.g., AWS,
Microsoft Azure, or Google Cloud Platform).
● Work Arrangement: Ability to work full-time on-site at our designated office
location.
● Certifications (Preferred but not mandatory): Industry-recognized credentials
such as CKS (Certified Kubernetes Security Specialist), CISSP, or OSCP
significantly enhance a candidate's profile.
Professional Competencies
● Analytical Thinking: Exceptional problem-solving and troubleshooting skills to
dissect complex, fast-moving system anomalies.
● Communication: Ability to articulate complex technical security risks and
container vulnerabilities clearly to developers and non-technical business
stakeholders.
● Adaptability: A continuous learner who proactively stays ahead of emerging
cloud-native hacking tactics and vulnerabilities
Work arrangement
No
More openings worth a look
Recently tracked roles with full details and direct application links.