OpenShift and Container Security Expert
Il y a 19 heures
Paris, Île-de-France
Keoni
Temps plein
Gratuit avec email ou Google
Enregistrez cette offre et organisez votre recherche
Créez un compte gratuit pour enregistrer des offres d'emploi, créer des alertes et revenir à cette liste depuis votre tableau de bord.
Gratuit avec email ou Google
En continuant, vous acceptez nos Conditions d’utilisation & Politique de confidentialité.
Context: Overall objective: To support container security, OpenShift; vulnerability analysis and managementOperational Security Engineer – Container Security – Level 4Key project constraint: Heterogeneous environment, on-premises and public cloudAs part of our efforts to strengthen the security of our cloud-native infrastructures, we are seeking an OpenShift and Container Security Expert (M/F) with solid operational experience. Integrated into the Security teams, you will be the technical lead across the entire value chain: from securing the overall architecture to container runtime, including fine-grained network segmentation within clusters.
Main
responsibilities:
1. Securing OpenShift clusters & the Control Plane: Deploy and enforce the least privilege model via RBAC and Security Context Constraints (SCC). Harden the configuration of nodes, IPI/UPI, and Control Plane components (etc., API Server). Implement and manage secret rotation, certificate management, and integration with a secret manager. Ensure compliance and monitoring of the Red Hat OpenShift CIS benchmark.2. Container Security & DevSecOps Chain: Integrate and automate vulnerability scanning and image signing within CI/CD. Define and enforce admission rules (Validating/Mutating Webhooks, OPA/Gatekeeper, or Kyverno). Monitor runtime security (anomaly detection, suspicious behavior).3. Network Architecture & Segmentation: Design and maintain the multi-tenant network segmentation strategy (isolation of namespaces, projects, environments). Participate in the drafting of Network Policies.4. Security Maintenance (MCS) & Incident Response: Analyze OpenShift audit logs and integrate them into the company's SIEM. Participate in the management of vulnerabilities (CVEs) affecting the platform or containerization chain. Write best practice guides for secure development and support application teams.
Technical Skills
• Container Security – Expert – Essential
• OpenShift and Kubernetes – Expert – Essential
• Application Security – Proficient – Important
• DevSecOps – Proficient – ImportantLanguage skills
• Professional English (Important)Application: CV + cover letter + copies of diplomas to be sent to contact@keoni.fr #J-18808-Ljbffr
Main
responsibilities:
1. Securing OpenShift clusters & the Control Plane: Deploy and enforce the least privilege model via RBAC and Security Context Constraints (SCC). Harden the configuration of nodes, IPI/UPI, and Control Plane components (etc., API Server). Implement and manage secret rotation, certificate management, and integration with a secret manager. Ensure compliance and monitoring of the Red Hat OpenShift CIS benchmark.2. Container Security & DevSecOps Chain: Integrate and automate vulnerability scanning and image signing within CI/CD. Define and enforce admission rules (Validating/Mutating Webhooks, OPA/Gatekeeper, or Kyverno). Monitor runtime security (anomaly detection, suspicious behavior).3. Network Architecture & Segmentation: Design and maintain the multi-tenant network segmentation strategy (isolation of namespaces, projects, environments). Participate in the drafting of Network Policies.4. Security Maintenance (MCS) & Incident Response: Analyze OpenShift audit logs and integrate them into the company's SIEM. Participate in the management of vulnerabilities (CVEs) affecting the platform or containerization chain. Write best practice guides for secure development and support application teams.
Technical Skills
• Container Security – Expert – Essential
• OpenShift and Kubernetes – Expert – Essential
• Application Security – Proficient – Important
• DevSecOps – Proficient – ImportantLanguage skills
• Professional English (Important)Application: CV + cover letter + copies of diplomas to be sent to contact@keoni.fr #J-18808-Ljbffr