5+ years of experience in security engineering, DevSecOps, or a related discipline with direct experience working alongside infrastructure and platform engineering teams
Deep understanding of Linux hardening, container security, and Kubernetes security standards and their practical implementation
Experience translating compliance frameworks (SOC 2, ISO 27001, PCI-DSS, or similar) into actionable engineering requirements
Strong technical writing skills with the ability to produce clear, adoption-focused documentation, runbooks, and onboarding materials
Experience acting in a consultant or embedded capacity with engineering teams, balancing security requirements with delivery velocity
Familiarity with security scanning tools and CI/CD pipeline security controls
Experience measuring and reporting on security program effectiveness using data-driven metrics
Excellent communication skills with a proven ability to build cross-functional relationships and influence without authority
Background in infrastructure security across bare metal, virtual, and container environments