TATA
- is looking for Mid Container Security Engineer.
Location : Availability to work in Querétaro, Monterrey, Guadalajara or CDMX; hybrid mode.
Experience : 4-8 years
Key responsabilities :
Perform container image scanning using tools such as Snyk, Wiz to identify vulnerabilities. - Collaborate with application and DevOps teams to analyze scan results, prioritize findings, and guide remediation. - Integrate container image scanning into CI / CD pipelines (e.g., GitHub Actions, GitLab CI, Jenkins). - Develop and maintain automation scripts in Python or Shell for reporting, alerting, and compliance tracking. - Enforce container security best practices such as : - Least privilege and minimal base images - Secure image registries (private registries, signed images) - Regular patching and dependency management - Work with Cloud Security and DevOps teams to ensure container runtime protection, policy compliance, and vulnerability management across AWS, GCP, or Azure. - Support the development and enforcement of OPA Gatekeeper, Kyverno, or other admission controller policies in Kubernetes clusters. - Contribute to improving DevSecOps pipelines and participate in threat modeling for containerized workloads.Required skills :
3–8 years of experience in Cloud Security, DevSecOps, or Container Security. - Strong understanding of Docker, Kubernetes, and container lifecycle management. - Proficiency in Python or Shell scripting for automation and reporting. - Experience with at least one major cloud provider (AWS, GCP, or Azure). - Familiarity with CI / CD tools and Git-based repositories (GitHub, GitLab, Bitbucket). - Understanding of vulnerability scoring (CVSS), remediation workflows, and container hardening standards (CIS Benchmarks).Preferred qualifications :
Experience implementing OPA Gatekeeper or Kyverno for Kubernetes policy enforcement. - Knowledge of Infrastructure as Code security (Terraform, CloudFormation). - Familiarity with SBOM (Software Bill of Materials) and supply chain security practices. - Exposure to runtime security tools (Sysdig Secure, Wiz etc.). - Certifications such as CKA, CKAD, or KCNA, or cloud certifications (AWS Security Specialty, GCP Security Engineer, etc.) are a plus.If you are interested, please apply here.
Tata Consultancy Services is an equal opportunity employer, our commitment to diversity & inclusion drives our efforts to provide equal opportunity to all candidates who meet our required knowledge & competency needs, irrespective of any socio-economic background, race, color, national origin, religion, sex, gender identity / expression, age, marital status, disability, sexual orientation or any others. We encourage anyone interested to build a career in TCS to participate in our recruitment & selection process.