> Markdown version of [/jobs/ext/656611-container-security-engineer](https://www.wearedevelopers.com/jobs/ext/656611-container-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Container Security Engineer - **Company:** Vanguard - **Location:** Malvern, PA, United States - **Contract:** Permanent contract - **Skills:** Kubernetes Security, Artificial Intelligence, Amazon Web Services, Microsoft Azure, Cloud Computing Security, Cloud Engineering, Continuous Integration, Image Management, Machine Learning, Open Web Application Security, Delivery Pipeline, Software Security, Containerization, Azure AKS, Devsecops, Serverless Computing, Static Application Security Testing, Dynamic Application Security Testing - **Published:** June 26, 2026 - **Apply:** http://www.vanguardjobs.com/job/23537610/container-security-engineer-malvern-pa/?utm_medium=%22mcloud%2Djobads%22&utm_campaign=Technology&utm_content=Container%20Security%20Engineer&utm_term=179530 ## About the Role * Undergraduate degree in a related field or equivalent experience. * Strong hands-on experience securing containerized environments in AWS (ECS/EKS) and serverless workloads, with working knowledge of container platforms in other cloud providers (Azure AKS, GCP GKE) * Experience with Wiz for container, cloud, and configuration risk visibility and remediation. * Strong understanding of container lifecycle, image management, and runtime security concepts. * Experience with CI/CD pipelines, cloud-native architectures, and deployment processes. * Experience with application security tools (SAST, SCA, IAST, DAST) is a plus. * Familiarity with industry frameworks such as NIST, OWASP, and MITRE. * Relevant certifications in cloud, containers, or DevSecOps are a plus. ## Description This role is focused specifically on owning and maturing container security across AWS environments (ECS, EKS, and Serverless) with a strong hands-on approach, while also supporting container security across other cloud platforms (Azure AKS and GCP GKE) where applicable. You will drive end-to-end container security-from image scanning and base image hardening to runtime visibility, risk prioritization, and remediation using platforms like Wiz. The expectation is to build and enforce scalable security controls, improve coverage and monitoring, and partner closely with engineering teams to ensure secure-by-default container deployments without impacting delivery. You will also focus on automation and AI-driven capabilities to enhance detection, reduce manual effort, and enable faster risk remediation. Additionally, the role is accountable for driving container security posture visibility through metrics, documentation, and developer guidance on secure image and deployment practices., * Lead hands-on container security efforts across AWS environments (ECS, EKS, and Serverless), including image scanning, runtime visibility, and risk remediation. * Utilize Wiz to assess and remediate container, cloud configuration, and workload risks across build and runtime environments with risk-based prioritization. * Drive implementation and maturity of container security controls, including coverage, enforcement, and operational monitoring. * Assess vulnerabilities across container images, dependencies, and deployment pipelines, and drive remediation with engineering teams. * Develop and implement strategies to secure cloud-native workloads with a focus on containers and serverless architectures across AWS, extending consistent security controls to other cloud platforms (Azure, GCP) where applicable. * Partner with platform and engineering teams to ensure secure configurations, hardened base images, and consistent runtime protection. * Identify and execute automation opportunities to improve container security processes and reduce manual effort. * Leverage AI/ML-driven capabilities to enhance container and cloud threat detection, enable risk-based prioritization, and support automated remediation across build and runtime environments. * Gather and report metrics to provide visibility into container security posture and program maturity. * Provide guidance and training on secure container development, image hygiene, and deployment best practices. * Maintain documentation for container security processes, tools, and standards. ## Related Videos - [Developer Tools for Microsoft Azure](https://www.wearedevelopers.com/videos/450-developer-tools-for-microsoft-azure) - [DevSecOps: Injecting Security into Mobile CI/CD Pipelines](https://www.wearedevelopers.com/videos/273-devsecops-injecting-security-into-mobile-ci-cd-pipelines) - [Azure-Well Architected Framework - designing mission critical workloads in practice](https://www.wearedevelopers.com/videos/1529-azure-well-architected-framework-designing-mission-critical-workloads-in-practice) - [Kubernetes Security Best Practices](https://www.wearedevelopers.com/videos/1411-kubernetes-security-best-practices) - [DevSecOps: Security in DevOps](https://www.wearedevelopers.com/videos/36-devsecops-security-in-devops) - [Enabling automated 1-click customer deployments with built-in quality and security](https://www.wearedevelopers.com/videos/83-enabling-automated-1-click-customer-deployments-with-built-in-quality-and-security) ## Related Articles - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Dev Digest 121 - AI goes offline](https://www.wearedevelopers.com/magazine/456-dev-digest-121-ai-goes-offline) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities)