Security Engineer

Inspyr Solutions
Fulton, MD, United States
11 days ago

Role details

Contract type
Temporary contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Compensation
$145,600.0 - $174,720.0
Working hours
Regular working hours
Job source

Tech stack

Kubernetes Security Microsoft Windows Amazon Web Services Microsoft Azure Cloud Computing Cloud Computing Security Cyber Security Computer Networks Information Leak Prevention DevOps Identity and Access Management Python (Programming Language)
+26 more
Key Management Network Protocols PCI Data Security Standards Role-Based Access Control Azure Active Directory Security Information and Event Management TCP/IP Tripwire Software Vulnerability Management Scripting Spring Cloud Office365 Mitre Att&ck Cyber Threat Analysis Azure Security Center Containerization Kubernetes Information Technology Cybercrime Microsoft Sentinel Azure AKS Cloudwatch Prisma Cloud Platform Splunk Cisco Vulnerability Analysis

Job description

  • Monitor security alerts and events using SIEM and security monitoring tools.
  • Analyze and triage escalated security incidents; conduct in-depth investigations.
  • Respond to and contain security incidents, ensuring proper escalation when necessary.
  • Perform root cause analysis and recommend mitigation strategies.
  • Support threat hunting activities and proactive identification of risks.
  • Develop and tune correlation rules, alerts, and dashboards.
  • Monitor and investigate security events in Kubernetes and containerized environments, identifying misconfigurations, suspicious activity, and potential threats.
  • Collaborate with infrastructure and DevOps teams to improve the security posture of Kubernetes clusters and container workloads.
  • Document incidents, investigations, and recommendations in ticketing systems.
  • Collaborate with IT, engineering, and business units to ensure security best practices.
  • Mentor and assist Tier 1 analysts with complex investigations.
  • Serve as a subject matter expert by investigating and presenting intelligence on the latest cyber threats, vulnerabilities, and industry best practices weekly or bi-weekly.

Requirements

  • 5+ years of experience in a Security Operations Center or similar security role.
  • Strong analytical and problem-solving skills.
  • Proactively identify tasks and take ownership to ensure their completion.
  • Demonstrate initiative and the capability to work autonomously with minimal supervision.
  • Experience securing and monitoring Kubernetes clusters and containerized workloads.
  • Understanding of Kubernetes architecture, including pods, namespaces, services, RBAC, network policies, and secrets management.
  • Experience with Kubernetes security tools such as Falco, Kubescape, Trivy, Aqua Security, Prisma Cloud, or Wiz Kubernetes Security is a plus.
  • Experience with the following tools/platforms:
  • Cloud Security: Wiz, Azure Defender for Cloud, AWS Security Hub, related cloud-native security tools
  • Container & Kubernetes Security: Kubernetes, Amazon EKS, Azure AKS, container runtime security, image scanning, admission controllers
  • Vulnerability Management: Tenable
  • SIEM & Monitoring: Splunk, Microsoft Sentinel, Amazon CloudWatch, AWS CloudTrail
  • EDR & Threat Protection: Microsoft Defender for Cloud, Microsoft Defender for Endpoint, Cisco AMP
  • Identity & Access: Microsoft Defender for Identity, Azure Active Directory
  • Data Loss Prevention: Code42, O365 DLP
  • Familiarity with Microsoft 365 security and Azure security controls.
  • Experience with AWS security tools and controls.
  • Knowledge of TCP/IP, network protocols, and common attack vectors.
  • Ability to interpret and analyze log data from various sources, including Kubernetes audit logs and container runtime logs.
  • Understanding of incident response methodologies and frameworks (e.g., NIST, SANS).
  • Knowledge of vulnerability management processes and remediation.
  • Experience with scripting (Python) for automation and investigation is a plus.
  • Excellent written and verbal communication skills.
  • Ability to work in a fast-paced, 5x8 SOC environment., * Bachelor’’s degree in Computer Science, Information Security, or related field, or equivalent experience.
  • Relevant certifications (e.g., Security+, CEH, GCIA, GCIH, Azure Security Engineer, AWS Security Specialty, Certified Kubernetes Security Specialist (CKS) or Certified Kubernetes Administrator (CKA)).
  • Experience with threat intelligence platforms (TIPs).
  • Familiarity with regulatory frameworks (e.g., FedRAMP, GDPR, HIPAA, PCI-DSS, MITRE ATT&CK).
  • Experience with SOAR platforms for orchestration and automation.
  • Experience securing cloud-native applications, Kubernetes platforms (EKS, AKS), and containerized CI/CD pipelines.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.dice.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:40 min

Assessing common Kubernetes security incidents and misconfigurations

Rico Komenda Rico Komenda · WWC 2025

5:02 min

Mapping distributed compute paradigms to modern vehicles

Joachim Werner · LIVE

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 · LIVE

1:29 min

Expanding practical knowledge with community sandboxes and resources

Stuart Clark · LIVE

3:50 min

Queues in TCP stacks and continuous network connections

Clemens Vasters Clemens Vasters · WWC 2022

3:10 min

Correlating dispersed logs using structured request tracing

Michael Eder +1 · LIVE

Videos

See all

Related articles

See all