Security Engineer – Kubernetes

Il y a 3 heures

Brussels, Brussels, Belgique Cloud Power Luxembourg Temps plein
ppWe are looking for an bexperienced Security Engineer /bto join a complex IT environment and contribute to securing a large-scale container platform. /p pYou will join a team specialized in container operations and platforms and act as the security reference for topics related to infrastructure, applications, and DevSecOps practices. /p pThis is a technical, operational, and cross-functional role, involving close collaboration with development teams, engineers, architects, and various stakeholders. /p pYour

Responsibilities:
/p pAs a Security Engineer, you will be responsible for : /p ulliAdvising teams on the security of container platforms and the applications deployed on them. /liliDefining, implementing, and monitoring security best practices in containerized environments. /liliConducting threat and risk assessments, preferably using the STRIDE methodology. /liliIntegrating security controls into DevSecOps and CI/CD processes. /liliImplementing and using SAST, DAST, vulnerability scanning, and compliance checking tools. /liliSupporting the development and continuous improvement of a Cloud-Native Application Protection approach. /liliDefining, implementing, and monitoring security and runtime policies. /liliIdentifying, analyzing, and tracking vulnerabilities in containers and container images. /liliAssessing security risks and proposing appropriate mitigation measures. /liliSupporting and coaching developers and technical teams on Secure Software Development practices and container security. /liliExplaining security requirements and measures to both technical and non-technical stakeholders. /liliCollaborating with various internal and external partners in a multidisciplinary environment. /liliTaking ownership of security-related topics across the container platform and ensuring their end-to-end follow-up. /li /ul pYour Technical Expertise : /p pYou have solid professional experience in IT Security and ideally have experience with several of the following technologies and concepts : /p ulliProven professional experience in cybersecurity / IT security. /liliStrong experience with container technologies and container platforms. /liliExcellent knowledge of Kubernetes. /liliExperience with Red Hat OpenShift 4 is a strong plus. /liliExperience with Cloud-Native Application Protection platforms. /liliKnowledge of Threat Modeling, preferably using STRIDE. /liliExperience with DevSecOps and integrating security into software development processes. /liliGood knowledge of CI/CD pipelines, preferably GitLab CI. /liliExperience with SAST and DAST tools. /liliKnowledge of vulnerability management and tracking. /liliExperience identifying and addressing vulnerabilities in container images. /liliStrong understanding of operating systems, networks, storage, and application technologies. /liliGood knowledge of current cybersecurity risks and experience implementing appropriate mitigation measures. /liliKnowledge of cloud technologies such as Azure, AWS, and/or GCP, including their security risks and key considerations. /liliPractical experience with scripting. /liliRelevant cloud or security certifications are a plus. /li /ul pYour Profile : /p pBeyond your technical expertise, you are able to bridge security requirements with operational realities. /p pYou can communicate security recommendations clearly and constructively while working pragmatically with developers, engineers, and other stakeholders to find workable solutions. /p pYou are: /p ulliAutonomous and able to take ownership of your responsibilities. /liliComfortable working in a multidisciplinary environment. /liliProactive and willing to take initiative. /liliA strong communicator with excellent interpersonal skills. /liliAble to explain complex security topics in a clear and understandable way. /liliComfortable collaborating with different stakeholders and building relationships with internal and external partners. /liliWilling to share knowledge and coach colleagues on security best practices. /li /ul pbExcellent written and spoken Dutch is required. /b /p pIf you are passionate about cybersecurity, Kubernetes, Cloud, and DevSecOps and would like to work on a large-scale container platform within a complex IT environment, we would be happy to hear from you. /p /p