(Senior) Cloud Engineer / Kubernetes Platform Security - STACKIT

Schwarz Unternehmenskommunikation GmbH & Co. KG
Heilbronn, Germany
about 1 month ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Working hours
Regular working hours
Job source

Tech stack

Audit Trail User Authentication Cloud Engineering Cyber Security Computer Networks Linux Linux Servers OpenID Role-Based Access Control Security Assertion Markup Language (SAML) Software Engineering Policy as Code
+3 more
Selinux Kubernetes Vulnerability Analysis

Job description

Join us and contribute to digital sovereignty in Europe. With us, you will work at the intersection of agility and security: You will benefit from fast decision-making processes, enjoy genuine creative freedom in your projects, and be able to build upon the stable foundation of the Schwarz Group., * Together with your SKE Security Crew, you drive the development and implementation of new security-relevant features for the STACKIT Kubernetes Engine (SKE).

  • You develop comprehensive security policies for Kubernetes clusters, including RBAC, Admission Controllers, Network Policies, and Policy-as-Code solutions like Kyverno.
  • You implement security measures such as Pod Security Standards, Image Scanning, Audit Logging, and Runtime Security Monitoring with Falco.
  • You act as an interface to the Cyber Security Team to implement security-relevant requirements.
  • You automate and implement processes to ensure security compliance, such as regular security audits and vulnerability scans.

Requirements

  • You have several years of experience in operating Linux servers and Kubernetes clusters.
  • You have several years of experience in software development (ideally Go), and ideally, you have already developed Kubernetes Operators.
  • You have a strong awareness of security aspects, and you enjoy challenging existing security concepts and designing and implementing architectures.
  • You have extensive experience with authentication (OIDC, SAML) and authorization (RBAC, ReBAC) protocols, as well as hardening in the Kubernetes and Linux (AppArmor, SELinux, Seccomp, eBPF) context.

About the company

Schwarz Digits creates the technological foundation for digital sovereignty in Europe. As the IT and digital division of the Schwarz Group, we develop and manage the IT infrastructures for the retail divisions Lidl and Kaufland, as well as Schwarz Production and PreZero. At the same time, we operate as an independent provider in the external market to support companies across Europe in their digital transformation. We bundle our core services in the areas of Cloud, Cyber Security, Data & AI, Communication, and Workspace.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on de.indeed.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:47 min

Exploring career opportunities and recruitment open positions

Kurt Eder · LIVE

5:44 min

Tightening the security perimeter using SELinux

Dimitrij Klesev +1 · LIVE

4:35 min

Setting up passwordless federated identity configuring OpenID Connect patterns

Marcel Lupo · LIVE

52 sec

Running persistent Linux environments directly on Windows

Ben Breard Ben Breard · WWC 2025

4:12 min

Utilizing pre-integrated observability and authentication platform tools

Aarno Aukia · LIVE

9:38 min

Troubleshooting SELinux container permission denials live

Dimitrij Klesev +1 · LIVE

Videos

See all

Related articles

See all