Containers/Kubernetes Engineer

TEKsystemsChandler, AZ
4d$70 - $75Hybrid

About The Position

Position Overview: Wells Fargo is seeking an experienced Lead Information Security Engineer (Information security Engineer 4 - Contingent) to join our Cloud Workload Lifecycle Security (CWLS) team, within the Cybersecurity – Vulnerability & Patch Management organization. Be a part of one of the core teams working on Wells Fargo's digital transformation; join our dynamic, diverse, fast-paced team environment where we secure and reduce risk for our Enterprise cloud migration. The Information security Engineer 4 – Contingent – Containers/Kubernetes Engineer will support the WF migration from Prisma Cloud Enterprise to the Wiz CNAPP (Cloud Native Application Protection Platform) tool, with specific focus on Cloud Workload Protection Platform or the CWPP module of the Wiz product. This area of our team specializes in engineering and support for Public & Private Cloud containers/Kubernetes envs. (TAS/OCP/GKE/AKS) to operate vulnerability and compliance scanning for runtime images and images in container image registry, along with the associated integrations to partner systems for logging, delivery of Findings, etc KEY RESPONSIBILITIES: • Implement, configure, and manage the Wiz CNAPP platform across multi cloud environments (AWS, Azure, GCP, Kubernetes). • Onboard cloud accounts, subscriptions, projects, and Kubernetes clusters into Wiz. • Partner with DevSecOps and Platform teams to integrate Wiz into: o CI/CD pipelines o Container and Kubernetes workflows • Deploy and manage Wiz Sensor in large scale for enhanced workload and Kubernetes visibility, including host level telemetry, vulnerability detection, and configuration assessment. • Automate Wiz Sensor onboarding and lifecycle management to ensure consistent, repeatable deployments. • Automate sensor upgrades, health validation, and drift detection to maintain coverage and minimize operational overhead. • Enabling and operating Wiz Container Registry Scanning across enterprise container registries (e.g. ACR, GCR, Artifactory). • Enable and tune Wiz detection for: o Vulnerabilities (Containers, serverless) o Container Security events o Network exposure and attack paths • Act as the subject matter expert (SME) for Wiz capabilities, roadmap features, and best practices specific to CWPP. • Support vulnerability and exposure management programs by validating findings and reducing false positives. • Troubleshoot and resolve support escalation cases related to Wiz CSPM. • Contribute to internal code repositories to continuously improve overall code quality for the team. • Be a motivated self-starter, quick to adapt and stay focused on delivering results in a fast-paced environment with aggressive deadlines. • Work effectively with a virtual Team consisting of members across various locations in the U.S. and India

Requirements

  • devsecops
  • cloud security
  • Azure
  • GCP
  • python
  • automation
  • Wiz
  • kubernetes
  • yaml
  • csa

Nice To Haves

  • Experience integrating CNAPP tools with SIEM/SOAR platforms
  • Background in vulnerability management or application security
  • Experience supporting regulated or enterprise environments
  • Experience with change and incident management practices in large enterprises
  • Familiarity with various cloud security and related risk frameworks (Cloud Security Alliance (CSA), CIS, NIST, etc.)
  • Experience with change and incident management practices in large enterprises
  • Security certifications such as Certified Information Systems Security Professional (CISSP), Global Information Assurance Certification (GIAC), or equivalent, CISA, CISM, CISSP, CRISC, CCSK
  • Microsoft Azure and/or Google Cloud Certifications
  • Kubernetes Security (CKS) certification

Responsibilities

  • Implement, configure, and manage the Wiz CNAPP platform across multi cloud environments (AWS, Azure, GCP, Kubernetes).
  • Onboard cloud accounts, subscriptions, projects, and Kubernetes clusters into Wiz.
  • Partner with DevSecOps and Platform teams to integrate Wiz into: o CI/CD pipelines o Container and Kubernetes workflows
  • Deploy and manage Wiz Sensor in large scale for enhanced workload and Kubernetes visibility, including host level telemetry, vulnerability detection, and configuration assessment.
  • Automate Wiz Sensor onboarding and lifecycle management to ensure consistent, repeatable deployments.
  • Automate sensor upgrades, health validation, and drift detection to maintain coverage and minimize operational overhead.
  • Enabling and operating Wiz Container Registry Scanning across enterprise container registries (e.g. ACR, GCR, Artifactory).
  • Enable and tune Wiz detection for: o Vulnerabilities (Containers, serverless) o Container Security events o Network exposure and attack paths
  • Act as the subject matter expert (SME) for Wiz capabilities, roadmap features, and best practices specific to CWPP.
  • Support vulnerability and exposure management programs by validating findings and reducing false positives.
  • Troubleshoot and resolve support escalation cases related to Wiz CSPM.
  • Contribute to internal code repositories to continuously improve overall code quality for the team.
  • Be a motivated self-starter, quick to adapt and stay focused on delivering results in a fast-paced environment with aggressive deadlines.
  • Work effectively with a virtual Team consisting of members across various locations in the U.S. and India

Benefits

  • Medical, dental & vision
  • Critical Illness, Accident, and Hospital
  • 401(k) Retirement Plan – Pre-tax and Roth post-tax contributions available
  • Life Insurance (Voluntary Life & AD&D for the employee and dependents)
  • Short and long-term disability
  • Health Spending Account (HSA)
  • Transportation benefits
  • Employee Assistance Program
  • Time Off/Leave (PTO, Vacation or Sick Leave)
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service