Sign up to save this job, get alerts, and apply with an optimized CV.

Senior Vulnerability & Container Security Engineer (m/f/d)

Full Time Remote Senior

Job description

At virtual7, we combine our technological expertise with a deep understanding of our customers' needs. Through tailor-made solutions, we create real added value for our framework contract partners in public administration. We are currently looking for a Senior Vulnerability & Container Security Engineer (m/f/d) for one of our clients.

  • Project location: Remote and Bonn

  • Period: October 1, 2026 to December 31, 2026, extension possible

  • Work mix: 90% Remote (only possible within Germany)

  • Important: Willingness for SÜ2 according to § 9 SÜG Secret/Sabotage Protection

YOUR MISSION

The project is about strengthening the security of modern container and cloud environments in the public sector and ensuring holistic vulnerability management for containers, images, and software supply chains.

The tasks in detail:

  • Responsibility for vulnerability management in the container and cloud environment

  • Analysis and prioritization of vulnerabilities in container images, dependencies, and runtime environments

  • Operation and integration of container scanning solutions

  • Definition and further development of policies for secure base images and a secured software supply chain

  • Evaluation of CVEs regarding exploitability and concrete risk in the respective runtime environment

  • Management and support of remediation processes in cooperation with development and platform teams

  • Monitoring and ensuring security baselines as well as relevant compliance requirements

  • Creation of security reports, risk assessments, and recommendations for action

MUST-HAVES FOR THIS POSITION

  • At least 5 years of experience in vulnerability management, particularly in the analysis, evaluation, and prioritization of CVEs and technical vulnerabilities

  • At least 5 years of experience in container security with Kubernetes and Docker, including operation and securing of Kubernetes environments as well as container and image scanning solutions like Trivy or Grype

  • At least 5 years of in-depth knowledge in software supply chain security, including SBOMs, signing, and artifact security

  • At least 5 years of experience with cloud platforms as well as modern CI/CD and DevSecOps processes

  • At least 5 years of experience with security baselines and compliance requirements, especially CIS, BSI, and NIST

YOUR NEW PROJECT ASSIGNMENT

  • Flexible working hours: Tasks can be completed flexibly in terms of time.

  • Remote option: Location-independent work, e.g., from home or mobile.

  • Free project selection: Projects are selected to match the profile and interests.

  • Self-determined organization: Independent planning and structuring of work.

  • Fair exchange: Clear communication and appreciative collaboration on an equal footing.

#LI-DNI


If you are interested and currently have free capacity, we look forward to receiving your application. Our recruiting team – including Alicja Okuniewicz, Anna-Lena Röcker, and Jörg Becker – looks forward to speaking with you.

Anna-Lena, Alicja, Jörg and Svenja

virtual7 Recruiting Team

Alicja Okuniewicz, Anna-Lena Röcker and Jörg Becker
+49 721 619017 31

Find more English Speaking Jobs in Germany on Arbeitnow

Sign up to apply

Create a free account to apply for this job and get access to:

  • AI-powered CV optimization for this specific job
  • Save jobs and create custom alerts
  • See your CV match score for each job

Company information

Company
virtual7 GmbH
Location
Homeoffice
Germany
Posted
2 days ago

Find similar jobs

Explore more opportunities like this one.

Interested in this position?

Create your free account and tailor your CV to match this job.