Cloud and Container Security Specialist
We are seeking a skilled Cloud and Container Security Specialist to join our team.
About the Job
The Cloud and Container Security Specialist will design, implement, and secure Kubernetes clusters, configure and maintain Kubernetes networking, enforce network policies, and integrate Kubernetes networking with Azure VNets.
This role is responsible for leading threat detection, incident response, and vulnerability remediation across cloud and container platforms.
Responsibilities
- Design and implement Kubernetes clusters (AKS and self-managed)
- Configure and maintain Kubernetes networking (CNI plugins such as Calico or Cilium, ingress controllers like NGINX / Traefik, service mesh with Istio / Linkerd)
- Enforce network policies, pod security standards, and RBAC inside Kubernetes
- Integrate Kubernetes networking with Azure VNets, NSGs, private endpoints, and load balancers
- Manage and configure enterprise firewalls (Fortinet, Palo Alto, Cisco ASA / FTD, or Check Point)
- Secure workloads using Firewalls, Application Gateway, WAF, DDoS Protection, and private endpoints
- Lead threat detection, incident response, and vulnerability remediation across cloud and container platforms
- Administer Microsoft Entra ID (Azure Active Directory) for SSO, MFA, RBAC, and conditional access
- Manage DNS (Azure DNS, BIND, Microsoft DNS), DHCP, SSL / TLS, DNSSEC, and public domain registrations
- Integrate Entra ID with Kubernetes workloads and role-based access policies
- Create and enforce security baselines, GPOs, and organizational security policies
- Align all configurations to ISO, SOC2, POPIA, and GDPR compliance
- Monitor and troubleshoot network, Kubernetes, DNS, and firewall issues
- Participate in incident response, root cause analysis, and DR testing
Automate operational tasks
Automate operational tasks
Requirements
- Proficiency in designing and implementing Kubernetes clusters
- Experience with Kubernetes networking, including CNI plugins and ingress controllers
- Knowledge of network policies, pod security standards, and RBAC inside Kubernetes
- Experience with integrating Kubernetes networking with Azure VNets, NSGs, private endpoints, and load balancers
- Proficiency in automating Kubernetes infrastructure
- Experience with managing and configuring enterprise firewalls
- Knowledge of zero-trust models and secure workload deployment
- Experience with administering Microsoft Entra ID (Azure Active Directory)
- Knowledge of DNS, DHCP, SSL / TLS, DNSSEC, and public domain registrations
- Experience with integrating Entra ID with Kubernetes workloads and role-based access policies
- Proficiency in deploying and maintaining endpoint security solutions
- Knowledge of security baselines, GPOs, and organizational security policies
- Experience with aligning configurations to ISO, SOC2, POPIA, and GDPR compliance
- Ability to monitor and troubleshoot network, Kubernetes, DNS, and firewall issues
- Experience with participating in incident response, root cause analysis, and DR testing
- Proficiency in automating operational tasks
Please submit your application if you meet the requirements and are passionate about cloud and container security.