#offshorejobs #AKS #Indiajobs #remotejobs
We are urgently seeking a Certified CKA / CKS Senior AKS Container Security Engineer for our healthcare client.
Location : India - Remote
Work Hours : 2nd shift
Open to Immediate joiners only
About the Role
We are seeking a highly skilled AKS (Azure Kubernetes Service) Security Engineer to strengthen the organization’s container and cloud security posture. The ideal candidate will have deep hands-on experience in Kubernetes (AKS) and container security implementation across hybrid and multi-cloud environments.
This role focuses on hardening AKS clusters, enforcing security controls, and integrating with enterprise DevSecOps pipelines to ensure secure application delivery.
You will collaborate closely with cloud, platform, and InfoSec teams to design, implement, and maintain secure AKS deployments aligned with compliance and governance standards.
Key Responsibilities
- Design, deploy, and manage secure AKS clusters following Azure Well-Architected and CIS Kubernetes Benchmarks.
- Implement container security policies using Azure Policy for Kubernetes, OPA Gatekeeper, or Kyverno.
- Integrate Azure Defender for Containers (formerly Azure Security Center) to monitor vulnerabilities and runtime threats.
- Manage AKS identity and access using Azure AD and Managed Identities to enforce least-privilege access.
- Configure RBAC, NetworkPolicies, Pod Security Standards, and Secrets encryption within AKS.
- Enable image scanning via Microsoft Defender, Trivy, or Aqua integrated with CI / CD pipelines (Azure DevOps / GitHub Actions).
- Enforce image provenance and registry security using Azure Container Registry (ACR).
- Develop automation scripts using Python / PowerShell / Bash for compliance, monitoring, and policy enforcement.
- Configure Azure Monitor, Log Analytics, and Application Insights for proactive threat detection.
- Support incident response and forensics for AKS and containerized workloads.
- Conduct periodic security assessments, posture reviews, and cluster audits in collaboration with central security teams.
- Maintain documentation and playbooks for AKS hardening, patching, and compliance processes.
Required Qualifications
5+ years of experience in Cloud Security, DevSecOps, or Container Platform Engineering.3+ years of hands-on experience managing and securing AKS (Azure Kubernetes Service).Strong knowledge of Kubernetes security fundamentals — RBAC, Admission Controllers, Pod Security, SCC equivalents.Expertise in container image scanning, vulnerability remediation, and runtime protection.Experience with CI / CD security (Azure DevOps, GitHub Actions, Jenkins).Proficiency in scripting (Python, Bash, or PowerShell).Familiarity with Azure networking and identity services — VNETs, Private Endpoints, Azure AD, KMS.Preferred Qualifications
Certified Kubernetes Administrator (CKA) or CKS (Certified Kubernetes Security Specialist).Microsoft Certified : Azure Kubernetes Service Specialist / Azure Security Engineer Associate.Experience with OPA Gatekeeper, Kyverno, or Pod Security Admission.Knowledge of Defender for Cloud / Defender for Containers integration.Experience with infrastructure as code (Terraform, Bicep, or ARM templates).Exposure to CIS, NIST 800-190, or Azure Security Benchmark compliance frameworks.Soft Skills
Excellent troubleshooting and analytical skills.Strong cross-functional communication and collaboration with security and cloud engineering teams.Proactive in identifying vulnerabilities and suggesting preventive controls.