Security Engineer – Kubernetes
Il y a 3 heures
Brussels, Brussels, Belgique
Cloud Power Luxembourg
Temps plein
Gratuit avec email ou Google
Enregistrez cette offre et organisez votre recherche
Créez un compte gratuit pour enregistrer des offres d'emploi, créer des alertes et revenir à cette liste depuis votre tableau de bord.
Gratuit avec email ou Google
ppWe are looking for an bexperienced Security Engineer /bto join a complex IT environment and contribute to securing a large-scale container platform. /p pYou will join a team specialized in container operations and platforms and act as the security reference for topics related to infrastructure, applications, and DevSecOps practices. /p pThis is a technical, operational, and cross-functional role, involving close collaboration with development teams, engineers, architects, and various stakeholders. /p pYour
Responsibilities:
/p pAs a Security Engineer, you will be responsible for : /p ulliAdvising teams on the security of container platforms and the applications deployed on them. /liliDefining, implementing, and monitoring security best practices in containerized environments. /liliConducting threat and risk assessments, preferably using the STRIDE methodology. /liliIntegrating security controls into DevSecOps and CI/CD processes. /liliImplementing and using SAST, DAST, vulnerability scanning, and compliance checking tools. /liliSupporting the development and continuous improvement of a Cloud-Native Application Protection approach. /liliDefining, implementing, and monitoring security and runtime policies. /liliIdentifying, analyzing, and tracking vulnerabilities in containers and container images. /liliAssessing security risks and proposing appropriate mitigation measures. /liliSupporting and coaching developers and technical teams on Secure Software Development practices and container security. /liliExplaining security requirements and measures to both technical and non-technical stakeholders. /liliCollaborating with various internal and external partners in a multidisciplinary environment. /liliTaking ownership of security-related topics across the container platform and ensuring their end-to-end follow-up. /li /ul pYour Technical Expertise : /p pYou have solid professional experience in IT Security and ideally have experience with several of the following technologies and concepts : /p ulliProven professional experience in cybersecurity / IT security. /liliStrong experience with container technologies and container platforms. /liliExcellent knowledge of Kubernetes. /liliExperience with Red Hat OpenShift 4 is a strong plus. /liliExperience with Cloud-Native Application Protection platforms. /liliKnowledge of Threat Modeling, preferably using STRIDE. /liliExperience with DevSecOps and integrating security into software development processes. /liliGood knowledge of CI/CD pipelines, preferably GitLab CI. /liliExperience with SAST and DAST tools. /liliKnowledge of vulnerability management and tracking. /liliExperience identifying and addressing vulnerabilities in container images. /liliStrong understanding of operating systems, networks, storage, and application technologies. /liliGood knowledge of current cybersecurity risks and experience implementing appropriate mitigation measures. /liliKnowledge of cloud technologies such as Azure, AWS, and/or GCP, including their security risks and key considerations. /liliPractical experience with scripting. /liliRelevant cloud or security certifications are a plus. /li /ul pYour Profile : /p pBeyond your technical expertise, you are able to bridge security requirements with operational realities. /p pYou can communicate security recommendations clearly and constructively while working pragmatically with developers, engineers, and other stakeholders to find workable solutions. /p pYou are: /p ulliAutonomous and able to take ownership of your responsibilities. /liliComfortable working in a multidisciplinary environment. /liliProactive and willing to take initiative. /liliA strong communicator with excellent interpersonal skills. /liliAble to explain complex security topics in a clear and understandable way. /liliComfortable collaborating with different stakeholders and building relationships with internal and external partners. /liliWilling to share knowledge and coach colleagues on security best practices. /li /ul pbExcellent written and spoken Dutch is required. /b /p pIf you are passionate about cybersecurity, Kubernetes, Cloud, and DevSecOps and would like to work on a large-scale container platform within a complex IT environment, we would be happy to hear from you. /p /p
Responsibilities:
/p pAs a Security Engineer, you will be responsible for : /p ulliAdvising teams on the security of container platforms and the applications deployed on them. /liliDefining, implementing, and monitoring security best practices in containerized environments. /liliConducting threat and risk assessments, preferably using the STRIDE methodology. /liliIntegrating security controls into DevSecOps and CI/CD processes. /liliImplementing and using SAST, DAST, vulnerability scanning, and compliance checking tools. /liliSupporting the development and continuous improvement of a Cloud-Native Application Protection approach. /liliDefining, implementing, and monitoring security and runtime policies. /liliIdentifying, analyzing, and tracking vulnerabilities in containers and container images. /liliAssessing security risks and proposing appropriate mitigation measures. /liliSupporting and coaching developers and technical teams on Secure Software Development practices and container security. /liliExplaining security requirements and measures to both technical and non-technical stakeholders. /liliCollaborating with various internal and external partners in a multidisciplinary environment. /liliTaking ownership of security-related topics across the container platform and ensuring their end-to-end follow-up. /li /ul pYour Technical Expertise : /p pYou have solid professional experience in IT Security and ideally have experience with several of the following technologies and concepts : /p ulliProven professional experience in cybersecurity / IT security. /liliStrong experience with container technologies and container platforms. /liliExcellent knowledge of Kubernetes. /liliExperience with Red Hat OpenShift 4 is a strong plus. /liliExperience with Cloud-Native Application Protection platforms. /liliKnowledge of Threat Modeling, preferably using STRIDE. /liliExperience with DevSecOps and integrating security into software development processes. /liliGood knowledge of CI/CD pipelines, preferably GitLab CI. /liliExperience with SAST and DAST tools. /liliKnowledge of vulnerability management and tracking. /liliExperience identifying and addressing vulnerabilities in container images. /liliStrong understanding of operating systems, networks, storage, and application technologies. /liliGood knowledge of current cybersecurity risks and experience implementing appropriate mitigation measures. /liliKnowledge of cloud technologies such as Azure, AWS, and/or GCP, including their security risks and key considerations. /liliPractical experience with scripting. /liliRelevant cloud or security certifications are a plus. /li /ul pYour Profile : /p pBeyond your technical expertise, you are able to bridge security requirements with operational realities. /p pYou can communicate security recommendations clearly and constructively while working pragmatically with developers, engineers, and other stakeholders to find workable solutions. /p pYou are: /p ulliAutonomous and able to take ownership of your responsibilities. /liliComfortable working in a multidisciplinary environment. /liliProactive and willing to take initiative. /liliA strong communicator with excellent interpersonal skills. /liliAble to explain complex security topics in a clear and understandable way. /liliComfortable collaborating with different stakeholders and building relationships with internal and external partners. /liliWilling to share knowledge and coach colleagues on security best practices. /li /ul pbExcellent written and spoken Dutch is required. /b /p pIf you are passionate about cybersecurity, Kubernetes, Cloud, and DevSecOps and would like to work on a large-scale container platform within a complex IT environment, we would be happy to hear from you. /p /p