Security Automation & CI/CD Integration:Design and implement security gates within GitLab CI/CD pipelines (SAST, SCA, container scanning, credential scanning).Automate security testing and vulnerability scanning for containerized applications.Integrate security tools (e.g., Trivy, Snyk, Clair, etc) into the deployment workflow.Enforce policy-as-code using tools like OPA (Open Policy Agent) or Kyverno for Kubernetes.Kubernetes Security:Implement and maintain security controls for Kubernetes clusters (RBAC, Pod Security Standards, Network Policies).Deploy and manage admission controllers for runtime security enforcement.Configure secrets management solutions (e.g., HashiCorp Vault, Sealed Secrets, GitLab CI/CD secrets).Monitor container runtime security using tools like Falco or Sysdig.On-Premise Infrastructure Security:Design and implement secure on-premise infrastructure following industry best practices (CIS benchmarks, hardening guidelines).Secure bare-metal and virtualized infrastructure hosting Kubernetes clusters.Implement network segmentation, firewall rules, and DMZ architectures for self-hosted environments.Configure and maintain infrastructure monitoring and security controls.Collaboration & Training:Work closely with development, DevOps, and security stakeholders to foster a security-first culture.Provide security guidance and training to engineering teams.Champion DevSecOps best practices across the organization.Participate in security design reviews and threat modeling sessions.
بیت پین
در تهران
در وبسایت ایران استخدام(چند ساعت پیش)
اطلاعات شغل:
نوع همکاری: تماموقت
ساعت کاری:تمام وقت
متن کامل آگهی:
Security Automation & CI/CD Integration: Design and implement security gates within GitLab CI/CD pipelines (SAST, SCA, container scanning, credential scanning). Automate security testing and vulnerability scanning for containerized applications. Integrate security tools (e.g., Trivy, Snyk, Clair, etc) into the deployment workflow. Enforce policy-as-code using tools like OPA (Open Policy Agent) or Kyverno for Kubernetes. Kubernetes Security: Implement and maintain security controls for Kubernetes clusters (RBAC, Pod Security Standards, Network Policies). Deploy and manage admission controllers for runtime security enforcement. Configure secrets management solutions (e.g., HashiCorp Vault, Sealed Secrets, GitLab CI/CD secrets). Monitor container runtime security using tools like Falco or Sysdig. On-Premise Infrastructure Security: Design and implement secure on-premise infrastructure following industry best practices (CIS benchmarks, hardening guidelines). Secure bare-metal and virtualized infrastructure hosting Kubernetes clusters. Implement network segmentation, firewall rules, and DMZ architectures for self-hosted environments. Configure and maintain infrastructure monitoring and security controls. Collaboration & Training: Work closely with development, DevOps, and security stakeholders to foster a security-first culture. Provide security guidance and training to engineering teams. Champion DevSecOps best practices across the organization. Participate in security design reviews and threat modeling sessions.
این آگهی از وبسایت ایران استخدام پیدا شده، با زدن دکمهی تماس با کارفرما، به وبسایت ایران استخدام برین و از اونجا برای این شغل اقدام کنین.
هشدار
توجه داشته باشید که دریافت هزینه از کارجو برای استخدام با هر عنوانی غیرقانونی است. در صورت مواجهه با موارد مشکوک، با کلیک بر روی «گزارش مشکل آگهی» به ما در پیگیری تخلفات کمک کنید.