This role involves assessing current DevSecOps, CI/CD, container build, registry, scanning, and deployment practices. The architect will identify gaps related to container security, image provenance, vulnerability management, artifact signing, SBOM generation, disconnected deployment, and operational controls. A key responsibility is to design a secure reference architecture for trusted container construction, scanning, signing, transfer, deployment, upgrade, and tracking. The architect will also define and implement a foundational trusted container build pipeline, support the creation of hardened container image patterns, and configure or integrate SBOM generation, vulnerability scanning, artifact signing, and signature verification. Additionally, the role includes defining approaches for offline vulnerability feed updates and scanner database refresh for disconnected environments, supporting the packaging and transfer of container artifacts across air-gapped processes, and assisting with the deployment and validation of container workloads in disconnected or lab environments. The architect will also define image upgrade, rollback, re-scan, and operational support processes, design asset tracking for deployed images and related metadata, prepare comprehensive documentation, and conduct knowledge-transfer sessions.
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Job Type
Full-time
Career Level
Senior
Education Level
No Education Listed