Information Security Engineer

THE JUDGE GROUP, INC.
Charlotte, NC, United States
3 months ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
2 years minimum
Compensation
$143,520.0 - $153,920.0
Working hours
Regular working hours
Job source

Tech stack

Kubernetes Security Agile Methodology Amazon Web Services Microsoft Azure Cloud Computing Cloud Computing Security Cloud Engineering Cyber Security Continuous Integration Github Identity and Access Management Python (Programming Language)
+16 more
Scrum Methodology Security Information and Event Management Software Vulnerability Management Software Repository Google Cloud Software Security Multi-Cloud Gitlab-ci Kubernetes Patch Management Prisma Cloud Platform Devsecops Serverless Computing Jenkins Vulnerability Analysis Artifactory

Job description

We are seeking a highly experienced Information Security Engineer (Contingent) to join the Cloud Workload Lifecycle Security (CWLS) team within Cybersecurity - Vulnerability & Patch Management. This role plays a critical part in securing enterprise cloud transformation by protecting containerized and Kubernetes-based workloads across public and private cloud platforms.

You will serve as a technical lead and subject matter expert supporting the migration from Prisma Cloud Enterprise to Wiz CNAPP, with a primary focus on Cloud Workload Protection Platform (CWPP) capabilities. The role involves close collaboration with DevSecOps, Platform Engineering, and Infrastructure teams to reduce security risk at scale.

This position is ideal for someone who thrives in a fast-paced, large-enterprise environment and enjoys solving complex, ambiguous security challenges. Responsibilities

  • Deploy, configure, and operate Wiz CNAPP across multi-cloud environments including AWS, Azure, Google Cloud Platform, and Kubernetes.
  • Onboard cloud accounts, projects, subscriptions, and Kubernetes clusters into Wiz.
  • Integrate Wiz into CI/CD pipelines, container workflows, and Kubernetes platforms in partnership with DevSecOps and Platform teams.
  • Deploy and manage Wiz Sensors at enterprise scale to provide runtime workload visibility, vulnerability detection, and configuration assessment.
  • Automate sensor onboarding, upgrades, lifecycle management, health validation, and drift detection.
  • Enable and operate container registry scanning across enterprise registries (ACR, GCR, Artifactory, and others).
  • Configure and tune Wiz detections for:
  • Container and serverless vulnerabilities
  • Container security events
  • Network exposure and attack paths
  • Act as the subject matter expert (SME) for Wiz CWPP capabilities, roadmap features, and best practices.
  • Support vulnerability and exposure management programs by validating findings and reducing false positives.
  • Troubleshoot and resolve complex escalations related to cloud and container security tooling.
  • Contribute to internal automation and code repositories (primarily Python) to improve platform reliability and scalability.
  • Collaborate effectively with distributed teams across the U.S. and India to deliver secure solutions at scale.

Requirements

  • 5+ years of experience in Information Security Engineering or equivalent experience gained through work, consulting, training, military service, or education.
  • 4+ years of hands-on experience in Cloud Security, DevSecOps, or Cloud Engineering.
  • 2+ years of practical experience securing workloads in Azure and Google Cloud Platform, including architecture, services, configurations, and hardening practices.
  • Hands-on experience deploying and administering Wiz CNAPP in large-scale environments.
  • Strong understanding of Kubernetes, container security, IAM, networking, and cloud-native services.
  • Advanced proficiency in Python for automation and tooling.
  • Experience with CI/CD platforms such as GitHub Actions, GitLab CI, Jenkins, or Azure DevOps.
  • Strong analytical, problem-solving, and critical-thinking skills.
  • Ability to work independently while collaborating effectively with cross-functional teams.
  • Excellent written and verbal communication skills.
  • Experience working in Agile (Scrum or Kanban) environments.
  • Ability to manage multiple high-priority initiatives concurrently.

Preferred Qualifications

  • Experience integrating CNAPP tools with SIEM/SOAR platforms.
  • Background in vulnerability management or application security.
  • Experience supporting highly regulated or large-scale enterprise environments.
  • Familiarity with cloud security and risk frameworks (CIS, NIST, CSA).
  • Experience with enterprise change and incident management processes.
  • Industry-recognized security certifications such as CISSP, GIAC, CISA, CISM, CRISC, or CCSK.
  • Microsoft Azure and/or Google Cloud certifications.
  • Certified Kubernetes Security Specialist (CKS) or equivalent container security certification.

Additional Information

  • Kubernetes expertise is required and is the top priority skill.
  • Python and Wiz CNAPP experience are strongly preferred.
  • Work location: Charlotte, NC (preferred).

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on dice.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

6:36 min

Funding open source through GitHub Accelerator and Sponsors

Stormy Peters · WWC 2023

1:02 min

Applying an ETL methodology to infrastructure configuration management

Axel Barbier · WWC 2023

1:15 min

Key lessons learned from implementing automated mobile DevSecOps

Moataz Nabil Moataz Nabil · LIVE

1:53 min

Transitioning toward DevSecOps with dynamic scanning and secrets management

Christoph Ruggenthaler · LIVE

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

Videos

See all

Related articles

See all