Cloud Security Engineer (Kubernetes)
ΠΡΡΡ & Π‘ΠΎΠΏΡΠΎΠ²ΠΎΠ΄
ΠΠ»Ρ ΠΌΡΡΡΠ° Ρ ΡΡΠΎΠΉ Π²Π°ΠΊΠ°Π½ΡΠΈΠ΅ΠΉ Π½ΡΠΆΠ΅Π½ Plus
ΠΠΏΠΈΡΠ°Π½ΠΈΠ΅ Π²Π°ΠΊΠ°Π½ΡΠΈΠΈ
TL;DR
Cloud Security Engineer (Kubernetes/Cloud): Building and optimizing security controls for platform hosting and cloud environments with an accent on zero-trust architecture and service mesh security. Focus on automating security processes, managing PKI/mTLS, and securing multi-cloud Kubernetes clusters.
Location: Hybrid (USA)
Salary: $150,100 β $225,100 USD
Company
is the company behind the PlayStation brand, delivering cutting-edge hardware and network services to millions of users worldwide.
What you will do
- Manage service mesh architectures (Istio, Kong) and API gateways to enable secure east-west communication.
- Oversee PKI and certificate lifecycles, including issuance, rotation, and mTLS deployment in Kubernetes.
- Implement zero-trust security models and fine-grained access control policies across distributed systems.
- Secure Kubernetes environments using namespace isolation, workload identities, and network policies.
- Develop automation solutions in Python and Go to integrate security controls into DevSecOps pipelines.
- Collaborate with product and platform teams to define and implement cloud-based security applications.
Requirements
- Bachelor's degree or equivalent professional experience.
- Proficiency in Python and Go scripting and programming.
- Hands-on experience with AWS, GCP, and containerized environments (Kubernetes).
- Deep knowledge of security guidelines including mTLS, OAuth2, JWT, RBAC, and ABAC.
- Experience with monitoring and observability tools such as Grafana and Datadog.
- Must be eligible to work in the US (indicated by 401k and US benefit structure).
Nice to have
- Technical certifications such as CISSP or CCSP.
Culture & Benefits
- Comprehensive health package including medical, dental, and vision insurance.
- Matching 401(k) retirement plan.
- Paid time off and wellness programs.
- Employee discounts for Sony products.
- Flexible hybrid working policy.
ΠΡΠ΄ΡΡΠ΅ ΠΎΡΡΠΎΡΠΎΠΆΠ½Ρ: Π΅ΡΠ»ΠΈ ΡΠ°Π±ΠΎΡΠΎΠ΄Π°ΡΠ΅Π»Ρ ΠΏΡΠΎΡΠΈΡ Π²ΠΎΠΉΡΠΈ Π² ΠΈΡ ΡΠΈΡΡΠ΅ΠΌΡ, ΠΈΡΠΏΠΎΠ»ΡΠ·ΡΡ iCloud/Google, ΠΏΡΠΈΡΠ»Π°ΡΡ ΠΊΠΎΠ΄/ΠΏΠ°ΡΠΎΠ»Ρ, Π·Π°ΠΏΡΡΡΠΈΡΡ ΠΊΠΎΠ΄/ΠΠ, Π½Π΅ Π΄Π΅Π»Π°ΠΉΡΠ΅ ΡΡΠΎΠ³ΠΎ - ΡΡΠΎ ΠΌΠΎΡΠ΅Π½Π½ΠΈΠΊΠΈ. ΠΠ±ΡΠ·Π°ΡΠ΅Π»ΡΠ½ΠΎ ΠΆΠΌΠΈΡΠ΅ "ΠΠΎΠΆΠ°Π»ΠΎΠ²Π°ΡΡΡΡ" ΠΈΠ»ΠΈ ΠΏΠΈΡΠΈΡΠ΅ Π² ΠΏΠΎΠ΄Π΄Π΅ΡΠΆΠΊΡ. ΠΠΎΠ΄ΡΠΎΠ±Π½Π΅Π΅ Π² Π³Π°ΠΉΠ΄Π΅ β