Sign up to save this job, get alerts, and apply with an optimized CV.
Senior Vulnerability & Container Security Engineer (m/f/d)
Job description
At virtual7, we combine our technological expertise with a deep understanding of our customers' needs. Through tailor-made solutions, we create real added value for our framework contract partners in public administration. We are currently looking for a Senior Vulnerability & Container Security Engineer (m/f/d) for one of our clients.
Project location: Remote and Bonn
Period: October 1, 2026 to December 31, 2026, extension possible
Work mix: 90% Remote (only possible within Germany)
Important: Willingness for SÜ2 according to § 9 SÜG Secret/Sabotage Protection
YOUR MISSION
The project is about strengthening the security of modern container and cloud environments in the public sector and ensuring holistic vulnerability management for containers, images, and software supply chains.
The tasks in detail:
Responsibility for vulnerability management in the container and cloud environment
Analysis and prioritization of vulnerabilities in container images, dependencies, and runtime environments
Operation and integration of container scanning solutions
Definition and further development of policies for secure base images and a secured software supply chain
Evaluation of CVEs regarding exploitability and concrete risk in the respective runtime environment
Management and support of remediation processes in cooperation with development and platform teams
Monitoring and ensuring security baselines as well as relevant compliance requirements
Creation of security reports, risk assessments, and recommendations for action
MUST-HAVES FOR THIS POSITION
At least 5 years of experience in vulnerability management, particularly in the analysis, evaluation, and prioritization of CVEs and technical vulnerabilities
At least 5 years of experience in container security with Kubernetes and Docker, including operation and securing of Kubernetes environments as well as container and image scanning solutions like Trivy or Grype
At least 5 years of in-depth knowledge in software supply chain security, including SBOMs, signing, and artifact security
At least 5 years of experience with cloud platforms as well as modern CI/CD and DevSecOps processes
At least 5 years of experience with security baselines and compliance requirements, especially CIS, BSI, and NIST
YOUR NEW PROJECT ASSIGNMENT
Flexible working hours: Tasks can be completed flexibly in terms of time.
Remote option: Location-independent work, e.g., from home or mobile.
Free project selection: Projects are selected to match the profile and interests.
Self-determined organization: Independent planning and structuring of work.
Fair exchange: Clear communication and appreciative collaboration on an equal footing.
#LI-DNI
If you are interested and currently have free capacity, we look forward to receiving your application. Our recruiting team – including Alicja Okuniewicz, Anna-Lena Röcker, and Jörg Becker – looks forward to speaking with you.
virtual7 Recruiting Team
Alicja Okuniewicz, Anna-Lena Röcker and Jörg Becker
+49 721 619017 31
Find more English Speaking Jobs in Germany on Arbeitnow
Required skills
Sign up to apply
Create a free account to apply for this job and get access to:
- AI-powered CV optimization for this specific job
- Save jobs and create custom alerts
- See your CV match score for each job
Company information
- Company
- virtual7 GmbH
- Location
-
Homeoffice
Germany - Posted
- 2 days ago
Interested in this position?
Create your free account and tailor your CV to match this job.