Openshift Security Engineer We are open to look into candidates who are in Texas and Arizona as well.
About the Role
We are looking for a skilled OpenShift Container Security Engineer to strengthen our container platform security posture. The ideal candidate will have hands-on experience with Red Hat OpenShift, deep understanding of Kubernetes security, and a practical approach to securing workloads, images, and clusters in hybrid or multi-cloud environments.
You will work closely with application, DevOps, and cloud engineering teams to implement, monitor, and enforce container security controls and ensure compliance with enterprise standards.
Key Responsibilities
- Design, implement, and maintain security controls across OpenShift clusters (OCP 4.x preferred).
- Perform container image scanning, vulnerability management, and compliance remediation using tools like Prisma, Wiz
- Develop and enforce OPA Gatekeeper Kyverno , or Pod Security Standards policies across namespaces.
- Collaborate with platform teams to implement RBAC, Network Policies, and Security Context Constraints (SCCs)
- Automate cluster and security operations using Python or Shell scripting
- Integrate CI / CD pipelines with container security tools and ensure shift-left security practices.
- Work with cloud service providers ( AWS / GCP / Azure ) to ensure consistent enforcement of container security controls.
- Conduct periodic security reviews, audits, and threat modeling for workloads running on OpenShift.
- Contribute to documentation, standards, and best practices for secure OpenShift operations.
Required Qualifications
5+ years of experience in DevSecOps, Cloud, or Container Platform Engineering.Strong, hands-on experience with Red Hat OpenShift (OCP 4.x) — installation, configuration, and security hardening.In-depth understanding of Kubernetes security concepts — RBAC, PSP / SCC, Admission Controllers, and namespaces.Proficiency in container image security CVE remediation , and runtime protectionScripting skills in Python, Bash, or Shell.Experience with CI / CD pipelines (Jenkins, GitHub Actions, GitLab CI) and container registries (Quay, Harbor, ECR, GCR).Knowledge of cloud platforms (AWS / GCP / Azure).Preferred Qualifications
CKA (Certified Kubernetes Administrator) or Red Hat OpenShift certification (EX280, EX288)Familiarity with ISTIO / service mesh security policies.Experience with compliance frameworks (CIS Benchmarks, NIST 800-190).Exposure to container runtime security tools (Falco, Sysdig Secure).Soft Skills
Strong problem-solving and analytical mindset.Effective communicator — able to work cross-functionally with application and platform teams.Detail-oriented and proactive in identifying and mitigating security risks.