onsite
Specialist System Engineer - Kubernetes Security - Bundesagentur fur Arbeit IT-Systemhaus Nurnberg
Systems Engineer
Lead the design, deployment, and hardening of Kubernetes clusters, ensuring robust security controls and compliance across the organization. Drive automation, incident response, and continuous improvement of container security practices.
About the role
Key Responsibilities
- Architect, implement, and maintain secure Kubernetes environments across multiple clusters.
- Define and enforce security policies, including network segmentation, pod security standards, and role‑based access control.
- Integrate security scanning, vulnerability management, and runtime protection into CI/CD pipelines.
- Collaborate with development and operations teams to remediate findings and improve overall security posture.
- Monitor cluster health, perform incident investigations, and provide post‑mortem analysis.
Requirements
- Proven experience with Kubernetes administration and security hardening.
- Strong knowledge of container security tools (e.g., Falco, Aqua, Sysdig) and vulnerability scanners.
- Hands‑on experience with CI/CD tools (GitLab CI, Jenkins, ArgoCD) and automation scripting (Bash, Python).
- Familiarity with cloud platforms (AWS, Azure, GCP) and infrastructure‑as‑code (Terraform, Helm).
- Excellent problem‑solving skills and a proactive approach to security best practices.