Jobs and Careers
EM

Senior Container Security Engineer

Empower
Overland Park, United Statesfull_timeVerifiedPosted 1 Jul 2024
💰 $174,825/yr($120,600/yr$174,825/yr)

About the role

Grow your career with a growing organization

Whether they’re helping people reach their long-term financial goals or providing personal wealth management strategies, every associate contributes to changing the lives of those we serve for the better. When it comes to job satisfaction, that’s hard to beat. And from a personal satisfaction perspective, you’ll enjoy the freedom to support causes that matter to you and experience a truly inclusive work environment. Your future starts now.

As a Senior Engineer for Container Security, you’ll provide direction to the team for container security policies, standards, and procedures that adhere to industry best practices and gitops. You’ll be responsible for ensuring that the corporate IT environment is secure and complies with all internal and external audit requirements. Additionally, you’ll provide direction to the team for implementing security hardening standards for container infrastructure.

What you will do:

  • Evangelize our container security platform and manage associated security components and micro segmentation controls
  • Manage, monitor, audit, threat hunt, and educate security teams about container security controls and underlying containerization platforms
  • Evaluate, design, and implement security related solutions, adhering to established change control processes
  • Provide technical security planning, implementation, configuration, support and troubleshooting services on all security technologies
  • Coordinate with systems and network engineers to ensure servers and network devices conform to security standards, and that security devices and controls are working as designed
  • Assist in defining the security strategy and integrating regulatory compliance requirements (e.g., PCI, GLBA) into the organizational security roadmap
  • Implement and maintain cryptographic controls (e.g. data at rest, data in transit) in line with security requirements
  • Define and assist in the management of an Incident Response Team that addresses potential or in-progress security events, establishing and adhering to escalation procedures and response times
  • Review and approve submitted application and systems change requests for security compliance
  • Participate in 24x7 on-call rotation

What you will bring

  • 3+ years of experience with container security, container workload protection, managing associated security controls, to include defining policies and administering container platform policies, RBAC, and micro segmentation controls.
  • 6 + years of technical experience working with security solutions and conducting security operations
  • 6+ years of network security experience and reviewing security tools and solutions and making recommendations on utilization and strategy
  • 6 + years of experience with network protocols, data flows and attacks within an IP environment
  • 5+ years of experience in building configurations for security devices and building an automated process to support large-scale deployment
  • 3+ years of experience with commercial and open source security applications and technologies (e.g. malware prevention, DLP, IDS/IDP, cryptography, vulnerability scanning and penetration testing), as well as related protocols and tools (e.g. SSH, SSL/TLS, snort, port scanners, rootkit detectors, etc.)
  • 2+ years of experience performing network and application security administration, penetration testing and/or threat assessments ISSP, GIAC certification(s)
  • 2+ years programming/scripting experience – one or more of: C, C++, Java, Perl, PHP, Python, shell

What will set you apart:

  • A passion for container security
  • Extensive knowledge and experience with security software, firewalls, intrusion detection systems and other security systems and network monitoring
  • Extensive hands-on technical knowledge of network systems, protocols, and standards such as Ethernet, LAN, WAN and TCP/IP
  • Experience as a security specialist in a regulated IT environment including some combination of SOX, HIPAA, GLBA, PCI and responsible for compliance and performing/coordinating audits (1+ years)
  • Experience with technologies such as Wiz, Twistlock, Laceworks, SumoLogic, Prisma Cloud Compute, Kubernetes, Docker, LXC or similar
  • Certificates (or their equivalents) such as AWS Associate Solution Architect, Kubernetes certification
  • Demonstration or presentation of detailed implementation/cutover planning that illustrates your ability to safely implement technologies
  • Github repository showing proficiency in a programming/scripting

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

Empower

View company profile →