19 Sep
|
Sapphire Software Solutions
|
Jharkhand
19 Sep
Sapphire Software Solutions
Jharkhand
Remote: Hybrid
HI FolksPlease check the JD and share your updated resume to my email and ping me on whatsapp (+91 (phone hidden)) along with your resumeRole: Container/Kubernetes Security SME 6 months plus contract100% Remote Job DescriptionWe are seeking a remote Container Security SME to join a global consulting firm. This person would be joining their Attack Surface Management team and would work to strengthen security posture across the organizations cloud-native technology stack. This contractor will provide deep technical expertise in container and Kubernetes security, drive vulnerability remediation, and shape security standards for containerized workloads across client’s multi-cloud environment.Success in this role will be measured by the following outcomes:- Assess and harden containerized environments, identifying gaps and driving remediation to closure with development and platform teams.- Own the end-to-end vulnerability management lifecycle for container workloads, from scan configuration through prioritization, tracking, and remediation coordination.- Advise on securing the container build and deployment pipeline,
including image integrity and registry governance.- Configure and optimize CNAPP tooling to meet client-specific visibility and compliance requirements.- Conduct threat modeling for containerized and serverless architectures.- Design and implement automated remediation workflows to reduce time-to-resolution.- Deliver security metrics and reporting that give leadership explicit visibility into posture and progress.- Maintain detailed tracking of all identified vulnerabilities through their full remediation lifecycle, including ownership assignment, status updates, and closure verification.- Monitor and enforce remediation SLAs across teams, flagging breaches early and driving accountability for timely resolution.- Manage the security exception and escalation process.REQUIRED SKILLS AND EXPERIENCE- 4+ years of cloud security experience with a primary focus on container security and vulnerability management- Hands-on experience securing container orchestration platforms and workloads at scale (working with hundreds of thousands of vulnerabilities)- Experience with Wiz or Orca- Production experience with CNAPP/CWPP tooling in an enterprise setting- Familiarity with at least one major cloud provider (AWS, Azure, or GCP)- Strong communication skills, with the ability to translate technical findings into clear, actionable guidance- Experience with Infrastructure as Code security scanning (Terraform, CloudFormation, or Helm chart analysis)NICE TO HAVE SKILLS AND EXPERIENCE- Proficiency in scripting (Python, Bash, or Go) for automation and tool integration- Any of the following certifications: CKS (Certified Kubernetes Security Specialist), CKA, CCSP, CCSK, AWS Security Specialty, Azure Security Engineer, or GCP Professional Cloud Security Engineer
📌 Kubernetes Security SME (Jharkhand)
🏢 Sapphire Software Solutions
📍 Jharkhand