10 дней назад
OS Image Factory Engineer (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
OS Image Factory Engineer (Cybersecurity): Designing and maintaining standardized, secure, version-controlled RHEL, Windows, and container images with an accent on automated CI/CD pipelines, DISA STIG hardening, and compliance validation. Focus on implementing FIPS-enabled builds, image signing and software supply chain attestation, and managing artifact lifecycle controls for AWS GovCloud and regulated environments.
Location: 100% Remote
Company
is a rapidly growing company recognized by the Inc. 5000 and Best Places to Work programs.
What you will do
- Design, build, and maintain standardized RHEL, Windows, and container images for enterprise and government environments.
- Build automated image creation and release pipelines using EC2 Image Builder, HashiCorp Packer, Ansible, and CI/CD tooling.
- Integrate vulnerability scanning, DISA STIG hardening, OpenSCAP validation, FIPS configurations, and security policy enforcement.
- Implement image signing, provenance, integrity validation, and software supply chain attestation for Zero Trust requirements.
- Manage image artifacts, metadata, versions, dependencies, promotion workflows, retention policies, patching, deprecation, and retirement.
- Partner with platform, cloud, cybersecurity, and application teams while maintaining documentation, governance processes, and automated tests.
Requirements
- Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, Information Systems, or a related technical discipline.
- Hands-on experience engineering OS images for RHEL and Windows, as well as creating, managing, scanning, and maintaining container images.
- Experience with EC2 Image Builder, HashiCorp Packer, or comparable image automation technologies.
- Strong experience with CI/CD pipelines, Ansible configuration management, infrastructure as code, version control, and release management.
- Experience with DISA STIG hardening, OpenSCAP or comparable compliance validation, vulnerability scanning, FIPS configurations, artifact repositories, and container registries.
- Strong troubleshooting, documentation, governance, and cross-functional collaboration skills.
Nice to have
- Experience with AWS GovCloud, government, defense, or other regulated cloud environments.
- Familiarity with Zero Trust principles and software supply chain integrity.
- RHCE, Red Hat Certified Specialist, CKA, CKAD, or Microsoft Certified: Windows Server Hybrid Administrator Associate certification.
Culture & Benefits
- Fully remote workplace.
- Work on secure infrastructure supporting enterprise and government environments.
- Focus on repeatability, reliability, security controls, governance, and continuous improvement.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
3 дня назад
Information Systems Security Engineer (Cybersecurity)
4 дня назад
Security Engineer
3 дня назад
Sr Cybersecurity Engineer
6 дней назад
Principal Technical Consultant - Network Security
4 дня назад
Sr. Engineer (Cybersecurity)
Anthropic
4 дня назад
Security Engineer, Corporate Security
320 000 - 405 000$