Kubernetes and Container Platform Security Specialist

Kubernetes and Container Platform Security Specialist

Full-Time 59400 - 72600 £ / year (est.) Home office (partial)
V

At a Glance

  • Tasks: Own the security of Kubernetes offerings and ensure tenant isolation on shared infrastructure.
  • Company: Join Verda, a pioneering AI cloud company with a global presence.
  • Benefits: Cash and equity compensation, hybrid work, and diverse team culture.
  • Other info: Dynamic, fast-growing environment with opportunities for innovation and career growth.
  • Why this job: Make a real impact in AI security while working with world-class engineers.
  • Qualifications: Strong Kubernetes and Linux experience, with a focus on multi-tenant environments.

The predicted salary is between 59400 - 72600 £ per year.

At Verda, we're building a full-stack AI cloud, covering everything from data centers and hardware to our own cloud platform that the world's leading AI teams use to do serious AI work.

We strive to make a positive mark on the world through the infrastructure we build and give leading teams a service they can truly depend on.

Headquartered in Helsinki, we operate globally with offices in London and San Francisco.

Join Verda while it’s still being built - not once it’s finished.

  • Why Verda
  • Cash and equity compensation along with various fringe benefits.
  • Profitable operations with rapid, sustained growth.
  • 40+ nationalities, with 6 different ones on the management team.
  • A real chance to make an impact and work alongside world class engineers, researchers, and partners across the global AI ecosystem.

About The Role

As Kubernetes and Container Platform Security Specialist you own the security of Verda's Kubernetes offering: multi-node and single-node clusters, the container registry, and the credentials that reach it.

The workloads running on it are not ours, the tenants do not trust each other, and the boundary between them is what customers are paying for.

That is a different problem from securing your own cluster, and it is the center of this role.

This is a securing role rather than a platform engineering one.

You would not run the clusters or carry the platform on-call rota.

The platform team operates and implements, and you define the security standard and verify what ships against it.

Your Responsibilities

In this role, you would be the technical authority on Kubernetes and container platform security at Verda.

  • Own the security design of Verda's Kubernetes offering, container registry, and registry credentials, including image provenance, signing, and admission verification requirements
  • Own the tenant isolation model on shared Kubernetes infrastructure: namespace, node and cluster boundaries, tenant reachability, and kubelet and API server exposure
  • Own the GPU-specific surface that most Kubernetes security work never touches: device plugins, privileged operator workloads, and partitioning boundaries
  • Define the Kubernetes hardening baseline across control plane, node OS, container runtime, etcd and secrets handling, and the policy and admission enforcement model behind it, expressed as policy-as-code so conformance is continuously observable
  • Design the Kubernetes network security model alongside Network Security: CNI-level policy, L3/L4/L7 controls, DNS and egress policy
  • Specify runtime detection requirements for the Security Operations Center to operate and triage, scope assessments and attack simulation for red teams to execute, and act on what both surface
  • Judge Kubernetes and container ecosystem advisories against Verda's configuration and set remediation priority, research new releases and ecosystem technology in a lab ahead of production adoption, and support Verda's compliance position through technical evidence and audit support
  • Your key competencies
  • Strong production Kubernetes and Linux experience, at a depth that lets you find problems rather than only configure around them
  • Direct experience of multi-tenant Kubernetes: shared clusters, untrusted workloads, isolation as a requirement rather than a nice-to-have
  • Deep understanding of Kubernetes architecture, the container runtime layer, and container and image security
  • Strong Kubernetes networking, including CNI-level policy design
  • Practical experience of policy-as-code and admission control, and working knowledge of software supply chain security: signing, provenance, SBOMs, and what admission-time enforcement actually requires
  • Ability to write a standard that someone else implements, verify conformance without owning the change, and influence an engineering team you do not manage
  • A research mindset: testing new technology, finding weaknesses, building proofs of concept, and turning findings into requirements that ship
  • Comfortable operating with incomplete information and deciding quickly
  • Nice to have
  • GPU infrastructure: device plugins, GPU operators, partitioning, and the privileged workloads they require
  • Multi-tenant container registry operation at scale
  • e BPF-based observability or runtime security
  • Cluster lifecycle and fleet management tooling
  • CVE analysis, advisory triage, or upstream contribution in the Kubernetes or CNCF ecosystem
  • Confidential computing, or attested execution environments
  • Cloud provider, hosting, or another environment where the infrastructure is the product, ideally one certified to ISO 27001, SOC 2 or C5 where you produced the technical evidence
  • Practicalities
  • Location: Helsinki, Finland or London, United Kingdom
  • Hybrid mode: working 3 days a week from our Helsinki or London office
  • Employment type: full-time and permanent
  • #J-18808-Ljbffr

Kubernetes and Container Platform Security Specialist employer: Verda

Verda is an exceptional employer that fosters a vibrant multicultural work environment, making it an ideal place for a Technical Account Manager to thrive. With competitive cash and equity compensation, along with opportunities to collaborate with innovative AI companies, employees are encouraged to grow and develop their skills while managing impactful technical relationships. The company's commitment to enhancing customer experience and providing robust support ensures that team members feel valued and empowered in their roles.

V

Contact Details:

Verda Recruitment Team

StudySmarter Expert Advice🤫

We think this is how you could land Kubernetes and Container Platform Security Specialist

Get Involved in the Cybersecurity Community

Diving into the cybersecurity community is key for landing that full-time gig. Join forums like Reddit's r/cybersecurity or attend local meetups to connect with industry veterans and other job seekers. Networking is everything in this field—don’t just be a passive lurker!

Show Off Your Skills with Capture the Flag Competitions

Participate in Capture the Flag (CTF) competitions; these are not just a fun way to boost your skills but also a chance to showcase your talent to potential employers. Many companies, including Verda, love seeing candidates who actively engage in these challenges.

Tailor Your Online Presence

Make sure your LinkedIn and any professional profiles reflect your cybersecurity expertise. Share your projects, whether they’re personal or from a previous role, to catch the eye of hiring managers. This is how they’ll find your passion and commitment to the field!

Apply Directly Through Verda

Don’t forget to head straight to our website and check out any openings for cybersecurity roles at Verda. Applying directly can sometimes give you an edge, especially if you can mention that you've been following our work or engaging in the community.

We think you need these skills to ace Kubernetes and Container Platform Security Specialist

Kubernetes Security
Container Security
Multi-Tenant Kubernetes Experience
Linux Proficiency
Kubernetes Architecture Understanding
CNI-Level Policy Design
Policy-as-Code Implementation

Some tips for your application 🫡

Show off your technical skills:In cybersecurity, it's crucial to highlight your technical prowess. Make sure your CV showcases specific skills like network security, penetration testing, or threat analysis. If you have relevant certifications (like CEH or CISSP), pop those on the front page to grab attention!

Tailor your portfolio for the role:Even for a full-time role, a portfolio can set you apart. If you've worked on any cybersecurity projects—be it CTF challenges, security assessments, or research papers—include these in your application. This demonstrates not just your skills, but also your hands-on experience!

Use real-world examples:When writing your cover letter, don’t just stick to your qualifications. Share real-world examples of how you’ve tackled security issues or vulnerabilities. This gives the hiring team at Verda insight into your practical problem-solving abilities and makes your application memorable.

Demonstrate your passion for cybersecurity:Cybersecurity is an ever-evolving field, so show us that you’re always learning! Mention any recent courses, webinars, or industry events you’ve attended. This not only exhibits your enthusiasm but also signals to Verda that you’re committed to staying ahead in the game.

How to prepare for a job interview at Verda

Sharpen Your Technical Skills

For a role in cybersecurity, it’s essential to be up-to-date with the latest tools and techniques. Brush up on your knowledge of firewalls, intrusion detection systems, and vulnerability assessment tools. Be ready to discuss specific scenarios where you’ve applied these skills, as hands-on experience can really set us apart in interviews.

Prepare for Scenario-Based Questions

Expect the interviewers at Verda to throw in some hypothetical situations to see how you’d handle them. Think about common security breaches or incidents and be prepared to explain how you would respond. This not only shows your problem-solving skills but also your understanding of real-world cybersecurity challenges.

Highlight Your Certifications

Certifications like CompTIA Security+, CISSP, or CEH can give you a significant edge in a full-time role in cybersecurity. Make sure to mention these during your interview and be prepared to discuss what you learned through those certifications and how they relate to the position at Verda.

Show Your Passion for Cybersecurity

Since you’re going for a full-time gig, showing genuine enthusiasm for the field can make all the difference. Share any personal projects, blogs, or communities you’re part of that relate to cybersecurity. This not only showcases your passion but also your commitment to staying engaged in this ever-evolving field.