Container Security Engineer

Vanguard Group, Inc.

$100K — $130K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • Undergraduate degree in a related field or equivalent experience.
  • Hands-on experience securing AWS containerized environments (ECS/EKS) and serverless workloads, with knowledge of Azure AKS and GCP GKE.
  • Experience using Wiz for assessing and remediating cloud and container risks.
  • Strong understanding of container lifecycle and runtime security concepts.
  • Familiarity with CI/CD pipelines and cloud-native architectures.
  • Experience with application security tools (SAST, SCA, IAST, DAST) is a plus.
  • Certifications in cloud, containers, or DevSecOps are advantageous.

Responsibilities

  • Lead container security efforts in AWS environments, focusing on ECS, EKS, and serverless technologies.
  • Utilize Wiz to evaluate and mitigate risks across container and cloud configurations.
  • Drive the implementation and enhancement of container security controls.
  • Assess vulnerabilities in container images and deployment pipelines, ensuring engineering teams address them.
  • Develop strategies to secure cloud-native workloads, extending protection to other cloud platforms when needed.
  • Collaborate with engineering teams to enforce secure configurations and runtime protections.
  • Identify automation opportunities to streamline container security processes.

Benefits

  • Guidance and training provided on secure container development and best practices.
  • Access to AI/ML-driven capabilities for threat detection and risk prioritization.
  • Opportunities to gather metrics on container security posture and program maturity.
  • Ability to partner with diverse teams for a collaborative approach to security.
  • Support for maintaining documentation of security processes and tools.
Full Job Description
Duties and Responsibilities
  • Lead hands-on container security efforts across AWS environments (ECS, EKS, and Serverless), including image scanning, runtime visibility, and risk remediation.
  • Utilize Wiz to assess and remediate container, cloud configuration, and workload risks across build and runtime environments with risk-based prioritization.
  • Drive implementation and maturity of container security controls, including coverage, enforcement, and operational monitoring.
  • Assess vulnerabilities across container images, dependencies, and deployment pipelines, and drive remediation with engineering teams.
  • Develop and implement strategies to secure cloud-native workloads with a focus on containers and serverless architectures across AWS, extending consistent security controls to other cloud platforms (Azure, GCP) where applicable.
  • Partner with platform and engineering teams to ensure secure configurations, hardened base images, and consistent runtime protection.
  • Identify and execute automation opportunities to improve container security processes and reduce manual effort.
  • Leverage AI/ML-driven capabilities to enhance container and cloud threat detection, enable risk-based prioritization, and support automated remediation across build and runtime environments.
  • Gather and report metrics to provide visibility into container security posture and program maturity.
  • Provide guidance and training on secure container development, image hygiene, and deployment best practices.
  • Maintain documentation for container security processes, tools, and standards.


Qualifications
  • Undergraduate degree in a related field or equivalent experience.
  • Strong hands-on experience securing containerized environments in AWS (ECS/EKS) and serverless workloads, with working knowledge of container platforms in other cloud providers (Azure AKS, GCP GKE)
  • Experience with Wiz for container, cloud, and configuration risk visibility and remediation.
  • Strong understanding of container lifecycle, image management, and runtime security concepts.
  • Experience with CI/CD pipelines, cloud-native architectures, and deployment processes.
  • Experience with application security tools (SAST, SCA, IAST, DAST) is a plus.
  • Familiarity with industry frameworks such as NIST, OWASP, and MITRE.
  • Relevant certifications in cloud, containers, or DevSecOps are a plus.

Special Factors

Sponsorship
Vanguard is not offering visa sponsorship for this position.

Similar Jobs

More Jobs at Vanguard Group, Inc.

More Information Technology Jobs

Find similar Container Security Engineer jobs: