- Deep, proven experience with container security, including designing and deploying hardened container images and securing Kubernetes clusters.
- Experience with Infrastructure as Code (IaC) tools, especially Terraform, for provisioning security controls.
- Strong practical experience in building and operating security automation specifically in GoLang (Go)
- Expertise in using GitHub, and CI/CD systems (GitHub Actions, Jenkins) from an architectural and engineering perspective.
- Expert-level proficiency in Software Composition Analysis (SCA) and hands-on experience in the practical remediation of third-party and open-source dependency vulnerabilities at scale.
- Direct experience or robust conceptual understanding of applying AI/ML, Large Language Models (LLMs), or MCP techniques to security challenges (e.g., automated vulnerability fixing, intelligent alert grouping).
- Expert familiarity with cloud platforms (AWS, Azure) and their security services, with a focus on container orchestration.
Nice to Have:
- Development experience in node.js
- Experience with Artifactory/JFrog
- Advanced knowledge of Application security (OWASP Top 10)
- Experience with supply chain security frameworks (e.g., SLSA)