M
Secops / Security Engineer
MindSource
🇺🇸 United States
Remote
5 days ago
- Kubernetes
- Linux
- NoSQL
- Elastic
- Splunk
- Incident Response
- Python
- CI/CD
- RBAC
- DevSecOps
- Ansible
- GitHub Actions
- Trivy
- Falco
- IaC
- Terraform
- Wazuh
- SIEM
- Network Security
- PostgreSQL
- MariaDB
- Zero Trust
- Penetration Testing
5 days ago
Location: 100% Remote
Duration: Long term
Type: Contract - W2
Â
Experience: Minimum 5+ years in a security engineering role, with a focus on large-scale infrastructure and experience in open-source projects, development, and tooling.
Â
Technical Skills:
- Strong experience with Kubernetes and container orchestration.
- Proficient in Linux system administration.
- Extensive knowledge of databases (both relational and NoSQL) with experience in elastic databases.
- Advanced knowledge of Splunk for monitoring, incident response, and integration with SOC processes.
- Strong in Python for development, scripting and automation.
- Demonstrated experience in developing and integrating open-source security tools.
- Proven experience with SOC automation and streamlining incident response processes.
Key Responsibilities:
Kubernetes Infrastructure & Deployment Security:
- SecureKubernetes clusters, containerized workloads, and cloud-native applications.
- Implementsecure CI/CD pipelines to enforce security policies in deployments.
- ConductKubernetes security hardening, RBAC configuration, and audit logging.
- Work withopen-source security tools to monitor, detect, and remediate vulnerabilities.
- Be a builder of securty infra NOT a user
DevSecOps & Automation:
- Developautomated security workflows usingPython, Ansible, and GitHub Actions.
- Integratecontainer security tools (e.g.,Trivy, Falco, Anchore, Open Policy Agent (OPA)).
- Implementinfrastructure-as-code (IaC) security usingAnsible and Terraform.
- Automate compliance checks and enforcesecurity guardrails in CI/CD processes.
Security Monitoring & Incident Response:
- UtilizeWazuh, Teleport, and OpenCTI forsecurity monitoring, threat detection, and log analysis.
- Set upintrusion detection and SIEM solutions for Kubernetes environments.
- Respond tosecurity incidents, conduct forensic analysis, and implement remediations.
Database & Network Security:
- SecurePostgreSQL and MariaDB databases with encryption, access control, and monitoring.
- Implementnetwork security controls, includingfirewall rules, Zero Trust principles, and intrusion detection.
- Perform regularvulnerability scans and penetration testing to identify security gaps.
Â
Secops / Security Engineer · MindSource