
Container Security Engineer – Vulnerability & Misconfiguration Management
- Chicago, IL
- $100,000-141,900 per year
- Permanent
- Full-time
- Perform container image scanning to identify vulnerabilities, misconfigurations, and insecure base images.
- Manage and optimize container security platforms.
- Develop and enforce Kubernetes security baselines, focusing on RBAC, network policies, secrets management, and runtime controls.
- Partner with DevOps and applications teams to integrate security checks into CI/CD pipelines.
- Continuously monitor for container runtime threats, privilege escalations, and drift from security baselines.
- Collaborate across engineering, operations, and compliance teams to ensure vulnerabilities and misconfigurations are remediated in line with risk priorities.
- Research and track emerging container security risks, threats, and industry best practices.
- Contribute to governance, policies, and playbooks for container security lifecycle management.
- 3+ years experience in container or cloud-native security
- Hands-on experience with Kubernetes and container runtimes
- Experience with container security scanning tools and vulnerability management tools (Aqua, Wiz, Qualys)
- Knowledge of Kubernetes security principles
- Familiarity with linuz security fundamentals, container isolation, and namespace/cgroups
- Strong problem-solving, analytical, and communication skills.
- Understanding of DevSecOps and CI/CD pipeline integration through security engineering lifecycles.
- Ability to communicate complex concepts to all levels of understanding and technical ability.
- CISSP/CCSP/CISM
- Cloud specific Security certifications such as SANS/GIAC
- Vendor specific and relevant certifications – AZ-500, SC-200, AZ-204, CKA, CKS, RHCE, etc
- Bachelor’s degree in Computer Science, Cybersecurity, or related field, or equivalent work experience.