What You'll Do
- Improve the security of containerized workloads in Kubernetes by leveraging CNAPP tooling for vulnerability scanning, runtime security, and compliance reporting
- Partner with developer, DevOps, and security teams to integrate CNAPP and SIEM tools into CI/CD pipelines and infrastructure-as-code workflows
- Test and refine Kubernetes security policies to strengthen enforcement and adoption
- Support investigation and remediation of container-related security issues
- Create documentation and best practices for secure container usage and deployment
- Provide reporting and evidence to support compliance with frameworks such as PCI DSS, HIPAA, SOC 2, NIST, and ISO 27001
- Stay current with new tools and approaches to improve Kubernetes and container security
- Support DevOps needs by participating in deployments and troubleshooting developer workloads
- Participate in an on-call rotation shared across 13 engineers. Each engineer typically covers one weekday every two weeks. If your shift falls on a Friday, the on-call period extends through the weekend until Monday at 10 AM. The on-call rotation begins after 3 months of employment
Qualifications - We encourage you to apply if you think your experience may be a match, even if you do not meet all of the qualifications.
- 2+ years of hands-on, production-level experience with Kubernetes and containerization, including running and troubleshooting workloads in production environments is required.
- Experience with on-premises k8s, a bonus.
- Familiarity with CI/CD pipelines and tooling, (Jenkins, GitLab CI, ArgoCD)
- Basic scripting and automation skills (Python, Bash); experience with Go (Golang), a bonus.
- Experience with vulnerability scanning and container security workflows (Sysdig, Trivy, or similar)
- Familiarity with CNAPP and SIEM platforms (Sysdig, Rapid7, or similar), or a strong interest in developing expertise with them
- Understanding of networking concepts (TCP/IP, DNS, load balancing, firewalls, and Kubernetes network policies)
- Familiarity with compliance frameworks (PCI DSS, HIPAA, SOC 2, NIST, ISO 27001) and how to support evidence/reporting needs
- Understanding of security fundamentals such as Secure SDLC and secure coding principles
- Strong collaboration and communication skills, with the ability to translate security requirements into practical guidance for developers
Top Skills
What We Do
At Vail we develop innovative technology to enhance the way people communicate. Our mission is to create business value for our clients and growth opportunities for our employees by developing solutions that inspire people to interact freely and authentically.
Why Work With Us
We are constantly learning. That's why we organize hackathons, workshops, and book clubs, and encourage continued education via courses and seminars. Bringing great minds together is important for our success, so we hire people with diverse backgrounds, stay active in our fields, attend conferences, and are always learning from our peers.
Gallery
Vail Systems, Inc. Offices
Hybrid Workspace
Employees engage in a combination of remote and on-site work.
We observe a hybrid work arrangement based on business and team needs.










