- 5+ years of experience in DevSecOps, platform engineering, or infrastructure security
- Strong Linux administration skills with deep understanding of CIS benchmarks and hardening practices
- Experience with configuration management tools in production environments
- Hands-on experience with Kubernetes security including RBAC, network policies, and workload identity
- Proficiency building CI/CD pipelines with integrated security scanning (vulnerability, secrets, SBOM, compliance)
- Experience with policy-as-code frameworks
- Familiarity with golden image pipelines for VMs and containers, and image promotion workflows
- Strong scripting skills (Bash, Python) for automation and remediation
- Experience with observability tooling for infrastructure security telemetry