Lead security control assessments for containerized applications, Kubernetes clusters, and multi-cloud architectures against CIS benchmarks, zero trust pipelines, and enterprise guardrails
Job Summary
Lead security control assessments for containerized applications, Kubernetes clusters, and multi-cloud architectures against CIS benchmarks, zero trust pipelines, and enterprise guardrails.
Perform hands-on validation using SAST, DAST, and SCA tools to analyze source code, dependencies, and IaC for vulnerabilities.
Document and communicate technical findings, risk posture, and strategic recommendations to developers, architects, and executive government leadership.
Matching Summary
Lead security control assessments for containerized applications, Kubernetes clusters, and multi-cloud architectures against CIS benchmarks, zero trust pipelines, and enterprise guardrails.
Salary
$125,100.00 - $225,200.00
Skills & Requirements
Must-have
DevSecOps security control assessments
Containerized applications and Kubernetes
Cloud security principles (AWS, Azure, GCP)
SAST, DAST, and SCA tools
CI/CD pipeline security
Vulnerability management lifecycle
Nice-to-have
Zero trust pipelines
Enterprise guardrails
SLSA and Sigstore frameworks
Key Requirements
12+ years experience with BS or 10+ years experience with MS