Software Engineer - Kubernetes

AnaVation, LLC
San Antonio, TX, United States
4 days ago
Apply on startup.jobs
Prepare application

Role details

Contract type
Contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
4 years minimum
Working hours
Regular working hours
Job source

Tech stack

Kubernetes Security Amazon Web Services Microsoft Azure Cloud Computing Configuration Management Cyber Security Linux Network Control Network Planning and Design Network Segmentation Open Source Technology OpenShift
+18 more
Role-Based Access Control Ansible Zero Trust Network Access Software Engineering Software Factory Software Vulnerability Management Cloud Platform System Istio Kubernetes Helm Charts Git Flow Kubernetes Information Technology AWS Fargate CIS Benchmarks Terraform Oracle Cloud Infrastructure Devsecops Docker

Job description

Position Responsibilities: This position sets the technical standard for securing container orchestration platforms and hardened workloads while keeping control evidence continuously validated and audit-ready., * Design, build, and run Kubernetes/OpenShift clusters and manage providers (Amazon EKS/Fargate, Azure KS, Google KE) or self-managed clusters.

  • Design network connectivity and provisioning strategy, and assess/design RBAC to keep the cloud foundation strong and compliant.
  • Maintain, configure, and monitor containers using Infrastructure as Code (Terraform, Helm) across development, test, and live environments.
  • Implement and validate security controls, security-relevant changes (SRCs), and Security Impact Assessments (SIAs) supporting IATT, ATO, and cATO readiness.
  • Perform full-stack Kubernetes (K8s) risk assessments and apply STIGs, CIS Benchmarks, and Iron Bank hardened images.
  • Advance control inheritance and automation aligned with the Government’s Cyber Assessment Roadmap.
  • Support container vulnerability management against CVEs and open-source threat reporting, coordinating remediation with Value Stream engineering.
  • Collaborate with ISSEs, ISSMs, DevSecOps engineers, COT, CPT, and Government stakeholders across Value Stream sprint cadences.
  • Create and maintain documentation for implementations and supporting Bodies of Evidence (BOE).
  • Support Zero Trust enforcement and cloud-native security best practices across mission environments.
  • Maintain and validate A&A control evidence in eMASS (control implementation, SIAs, SRCs, POA&Ms) supporting continuous monitoring and cATO readiness.

Requirements

  • Clearance: U.S. Citizen; TS/SCI.
  • Education: Bachelor’s degree in Computer Science, Cybersecurity, IT, or related field; software development background.
  • Certification: DoD 8140/8570 IAT Level II and Certified Kubernetes Administrator (CKA).
  • Location: Full-time on-site in San Antonio, TX.
  • Experience and Knowledge:
  • Senior level comprehensive knowledge across key tasks and high-impact assignments; plans and leads major technology assignments; functions as a technical expert across the team; may lead others.
  • Demonstrated knowledge: Kubernetes, Istio, GitOps, custom Kubernetes Operators, custom Helm charts, custom Admission Controllers, custom CRDs and Controllers.
  • Extensive Linux and networking; understands each component of the Kubernetes control plane.
  • Experience building automation and configuration management with Ansible and Terraform; Docker, Terraform, and Helm.
  • Security and compliance knowledge for Kubernetes; knowledge of Cloud (AWS, Azure, OCI).
  • Experience working with a product that has end-users; creating and maintaining implementation documentation.
  • Minimum years of experience - 4 years of relevant experience, * Clearance: Active TS/SCI.
  • Education: Advanced degree in a related technical field.
  • Certification: Certified Kubernetes Security Specialist (CKS), Red Hat OpenShift, or CCSP.
  • Experience and Knowledge:
  • Mastery of the DoD Enterprise DevSecOps Reference Design; Kubernetes and Istio expert.
  • Experience supporting software factory environments (Iron Bank, Big Bang) and hardened containers.
  • Experience supporting Continuous Authority to Operate (cATO).
  • Experience supporting IL4, IL5, or IL6 cloud environments.
  • Experience supporting COT, CPT, or Security Control Assessors.
  • Experience with Twistlock runtime defense, Anchore image scanning, container signing (e.g., cosign/sigstore), and micro-segmentation. Benefits

Benefits & conditions

  • Generous cost sharing for medical insurance for the employee and dependents
  • 100% company paid dental insurance for employees and dependents
  • 100% company paid long-term and short-term disability insurance
  • 100% company paid vision insurance for employees and dependents
  • 401k plan with generous match and 100% immediate vesting
  • Competitive Pay
  • Generous paid leave and holiday package
  • Tuition and training reimbursement
  • Life and AD&D Insurance

About the company

In a world of technology, people make the difference. We believe if we invest in great people, then great things will happen. At AnaVation, we provide unmatched value to our customers and employees through innovative solutions and an engaging culture., AnaVation is seeking a Software Engineer - Kubernetes to support one of our cybersecurity programs in our San Antonio office. In this position, the right candidate will support engineering, hardening and continuously validating the security of Kubernetes and OpenShift platforms that host Government mission applications across value streams. The role designs, builds, and runs resilient, secure architectures using service-meshand loosely coupled design, and sustains Interim Authority to Test (IATT), Authority to Operate (ATO), and Continuous Authority to Operate (cATO) readiness aligned with the Government’s Cyber Assessment Roadmap., AnaVation is the leader in solving the most complex technical challenges for collection and processing in the U.S. Federal Intelligence Community. We are a US owned company headquartered in Chantilly, Virginia. We deliver groundbreaking research with advanced software and systems engineering that provides an information advantage to contribute to the mission and operational success of our customers. We offer complex challenges, a top-notch work environment, and a world-class, collaborative team. If you want to grow your career and make a difference while doing it, AnaVation is the perfect fit for you! AnaVation is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to sex, race, color, religion, national origin, disability, protected Veteran status, age, or any other characteristic protected by law.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on startup.jobs
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:39 min

Introduction to Kubernetes security challenges and opportunities

Marc Nimmerrichter · World Congress 2022

52 sec

Running persistent Linux environments directly on Windows

Ben Breard Ben Breard · World Congress 2025

2:53 min

Configuring dynamic proxy updates with Istio Pilot

Jan Mensch Jan Mensch · World Congress 2026 Europe

2:07 min

Inspecting default bridge architectures and custom Docker networks

Oliver Seitz Oliver Seitz · World Congress 2025

4:40 min

Assessing common Kubernetes security incidents and misconfigurations

Rico Komenda Rico Komenda · World Congress 2025

3:55 min

Demonstrating .NET installation on Debian and Azure Linux

Silvano Coriani Silvano Coriani · Europe 2026 Virtual

Videos

See all

Related articles

See all