Senior Container Security Engineer

Posted Yesterday
Be an Early Applicant
Hiring Remotely in RE
Remote
130K-200K Annually
Senior level
Cloud • Software • Cybersecurity
The Role
Lead CVE remediation and security hardening for Linux-based container images. Analyze vulnerabilities, patch and rebuild images, reduce attack surfaces, and develop automated remediation pipelines integrated with CI/CD and GitOps. Maintain SBOMs, troubleshoot dependency and runtime issues, optimize image performance, research cloud-native threats, and establish secure image delivery standards across containerized environments.
Summary Generated by Built In
Senior Container Security Engineer – CVE Remediation & Image Hardening
 
About the Role
We are looking for a hands-on Senior Container Security Engineer to lead vulnerability remediation and image hardening across Linux-based container environments.
 
This role focuses on deep operating system and container security engineering rather than simple vulnerability scanning. You will analyze, remediate, rebuild, harden, and continuously optimize container images used in modern cloud-native platforms. You will work closely with platform engineering, DevOps, infrastructure, and security teams to build automated remediation pipelines, reduce the attack surface, and deliver production-ready hardened images.
 
What You’ll Do
 
- Own end-to-end CVE remediation across Linux-based container images.
- Analyze vulnerabilities across OS packages, libraries, runtimes, and dependencies.
- Patch, rebuild, validate, and maintain hardened container images at scale.
- Reduce attack surface by removing unnecessary packages, binaries, services, and dependencies.
- Build and scale automated remediation pipelines for continuous image patching.
- Improve image security posture while minimizing operational disruption.
- Generate, validate, and maintain SBOMs to support supply chain visibility and compliance.
- Integrate remediation workflows into CI/CD and GitOps pipelines.
- Optimize image size, startup performance, and operational efficiency.
- Research emerging Linux, container, Kubernetes, and software supply chain threats.
- Troubleshoot complex dependency, package compatibility, and runtime security issues.
- Help define internal standards for hardened images and secure software delivery.
 
What You Bring
 
- 5+ years of experience in Linux systems engineering, platform engineering, DevSecOps, security engineering, or SRE.
- Deep understanding of Linux distributions (Debian, Ubuntu, Alpine, RHEL).
- Strong hands-on experience with Docker, Kubernetes, and containerized environments.
- Proven experience remediating CVEs within Linux packages and container ecosystems.
- Proficiency with package management systems (apt, yum/dnf, apk, rpm).
- Experience with scanning tools such as Trivy, Grype, or Clair.
- Strong scripting or programming skills in Python, Bash, or Go.
- Solid understanding of container image layering and filesystem structures.
- Familiarity with CI/CD automation and infrastructure-as-code workflows.
- Experience with cloud-native infrastructure (AWS, Azure, or GCP).
 
Nice to Have
 
- Experience building minimal or distroless container images.
- Familiarity with SBOM standards (SPDX, CycloneDX, Syft).
- Experience with image signing and verification tools (Cosign, Sigstore).
- Knowledge of software supply chain security frameworks like SLSA.
- Familiarity with Kubernetes security controls and eBPF.
 
What Success Looks Like
 
- Delivery of production-ready container images with near-zero exploitable CVEs.
- Established scalable automated remediation and image hardening pipelines.
- Significant reduction in container attack surface and image bloat.
- Improved remediation speed and operational efficiency.
- Repeatable standards for secure container image delivery at scale.
 
Compensation & Benefits
  • Base salary: $130,000 – $200,000 depending on experience and technical depth
  • Equity participation
  • Comprehensive health, dental, and vision coverage
  • Remote-first work environment
  • Opportunity to work on cutting-edge cloud-native and container security technologies
  • Career growth within a rapidly scaling cybersecurity company

Skills Required

  • 5+ years of experience in Linux systems engineering, platform engineering, DevSecOps, security engineering, or SRE
  • Deep understanding of Debian, Ubuntu, Alpine, and RHEL Linux distributions
  • Strong hands-on experience with Docker, Kubernetes, and containerized environments
  • Proven experience remediating CVEs in Linux packages and container ecosystems
  • Proficiency with apt, yum/dnf, apk, and rpm package management systems
  • Experience with Trivy, Grype, or Clair vulnerability scanning tools
  • Strong scripting or programming skills in Python, Bash, or Go
  • Solid understanding of container image layering and filesystem structures
  • Familiarity with CI/CD automation and infrastructure-as-code workflows
  • Experience with AWS, Azure, or GCP cloud-native infrastructure
  • Experience building minimal or distroless container images
  • Familiarity with SPDX, CycloneDX, or Syft SBOM standards and tools
  • Experience with Cosign or Sigstore image signing and verification tools
  • Knowledge of SLSA software supply chain security frameworks
  • Familiarity with Kubernetes security controls and eBPF
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
119 Employees
Year Founded: 2020

What We Do

RapidFort is a software supply chain security company that helps enterprises and government agencies secure containerized applications. Its platform automatically transforms vulnerable container images into hardened, production-ready artifacts, combining container hardening, vulnerability remediation, runtime intelligence, and policy automation. By reducing attack surface and operational complexity, RapidFort enables engineering teams to deliver secure software faster across cloud-native environments and modern development workflows.

Similar Jobs

Remote
Réunion
350 Employees
38K-47K Hourly
Remote
Réunion
350 Employees
38K-47K Hourly
In-Office or Remote
30 Locations
2334 Employees
Remote
Réunion
19912 Employees
369K-382K Annually

Similar Companies Hiring

Onshore Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
60 Employees
Revel Thumbnail
Aerospace • Hardware • Robotics • Software
Marina Del Rey, California
60 Employees
Blee Thumbnail
Artificial Intelligence • Marketing Tech • Software
New York, New York
30 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account