Logo for RAPIDFORT

Senior Container Security Engineer

Role overview

Qualifications

  • 5+ years of experience in Linux systems engineering, platform engineering, DevSecOps, security engineering, or SRE
  • Deep understanding of Linux distributions (Debian, Ubuntu, Alpine, RHEL)
  • Strong hands-on experience with Docker, Kubernetes, and containerized environments
  • Proficiency with package management systems (apt, yum/dnf, apk, rpm)

Responsibilities

  • Own end-to-end CVE remediation across Linux-based container images
  • Analyze vulnerabilities across OS packages, libraries, runtimes, and dependencies
  • Build and scale automated remediation pipelines for continuous image patching
  • Improve image security posture while minimizing operational disruption

Key facts

Hard skills

Other skills

  • Problem Solving
  • Teamwork
  • Communication

About the company

RAPIDFORT logo

RAPIDFORT

Cybersecurity

RapidFort, Inc. is a leading software supply chain security company that provides an innovative platform designed to automatically secure container applications and accelerate compliance processes. The company's comprehensive solution addresses critical cybersecurity challenges by removing up to 95% of Common Vulnerabilities and Exposures (CVEs) from container images without requiring any code changes. RapidFort's unified platform offers three core capabilities: curated near-zero CVE container images with FIPS 140-3 validation and daily builds, DevTime protection tools that generate Software Bill of Materials (SBOM) and Real Bill of Materials (RBOM) for vulnerability remediation, and RunTime protection that automatically secures unused components and reduces software attack surfaces by 60-90%. The platform serves organizations seeking to reduce development costs by 10%, accelerate software releases by 2-3 weeks, and achieve faster compliance with FedRAMP, cATO, CMMC, and SOC2 standards. RapidFort's solution integrates seamlessly with existing development workflows and technology stacks, consuming less than 1% system overhead while providing comprehensive security hardening. Trusted by government agencies including the U.S. Air Force and Space Force, as well as enterprise customers, RapidFort addresses the growing challenge of software supply chain security by eliminating "zombie code" – the 50-90% of unused software components that create unnecessary security risks. The company's approach enables organizations to spend more time building products rather than maintaining and updating dormant code, ultimately strengthening security posture while improving operational efficiency.

Company details

IndustryCybersecurity
Company size51 - 200

Your match analysis

See how your profile stacks up against this role.

We compared the job requirements to your profile to show where you're strong and where you fall short.

Job description

Senior Container Security Engineer – CVE Remediation & Image Hardening   About the Role We are looking for a hands-on Senior Container Security Engineer to lead vulnerability remediation and image hardening across Linux-based container environments.   This role focuses on deep operating system and container security engineering rather than simple vulnerability scanning. You will analyze, remediate, rebuild, harden, and continuously optimize container images used in modern cloud-native platforms. You will work closely with platform engineering, DevOps, infrastructure, and security teams to build automated remediation pipelines, reduce the attack surface, and deliver production-ready hardened images.   What You’ll Do   - Own end-to-end CVE remediation across Linux-based container images. - Analyze vulnerabilities across OS packages, libraries, runtimes, and dependencies. - Patch, rebuild, validate, and maintain hardened container images at scale. - Reduce attack surface by removing unnecessary packages, binaries, services, and dependencies. - Build and scale automated remediation pipelines for continuous image patching. - Improve image security posture while minimizing operational disruption. - Generate, validate, and maintain SBOMs to support supply chain visibility and compliance. - Integrate remediation workflows into CI/CD and GitOps pipelines. - Optimize image size, startup performance, and operational efficiency. - Research emerging Linux, container, Kubernetes, and software supply chain threats. - Troubleshoot complex dependency, package compatibility, and runtime security issues. - Help define internal standards for hardened images and secure software delivery.   What You Bring   - 5+ years of experience in Linux systems engineering, platform engineering, DevSecOps, security engineering, or SRE. - Deep understanding of Linux distributions (Debian, Ubuntu, Alpine, RHEL). - Strong hands-on experience with Docker, Kubernetes, and containerized environments. - Proven experience remediating CVEs within Linux packages and container ecosystems. - Proficiency with package management systems (apt, yum/dnf, apk, rpm). - Experience with scanning tools such as Trivy, Grype, or Clair. - Strong scripting or programming skills in Python, Bash, or Go. - Solid understanding of container image layering and filesystem structures. - Familiarity with CI/CD automation and infrastructure-as-code workflows. - Experience with cloud-native infrastructure (AWS, Azure, or GCP).   Nice to Have   - Experience building minimal or distroless container images. - Familiarity with SBOM standards (SPDX, CycloneDX, Syft). - Experience with image signing and verification tools (Cosign, Sigstore). - Knowledge of software supply chain security frameworks like SLSA. - Familiarity with Kubernetes security controls and eBPF.   What Success Looks Like   - Delivery of production-ready container images with near-zero exploitable CVEs. - Established scalable automated remediation and image hardening pipelines. - Significant reduction in container attack surface and image bloat. - Improved remediation speed and operational efficiency. - Repeatable standards for secure container image delivery at scale.  

Compensation & Benefits

  • Base salary: $130,000 – $200,000 depending on experience and technical depth
  • Equity participation
  • Comprehensive health, dental, and vision coverage
  • Remote-first work environment
  • Opportunity to work on cutting-edge cloud-native and container security technologies
  • Career growth within a rapidly scaling cybersecurity company

Apply once. Then go straight to the hiring manager.

After you apply, unlock the direct contact details of the people who actually make the call. A quick follow-up makes you 5x more likely to land an interview.

MR

Marcus Rivera

Chief Revenue Officer

m.rivera@company.com
linkedin.com/in/marcusrivera
Unlocked after you apply
·

Security Engineer Related jobs

Other jobs at RAPIDFORT

Premium

Reach out to the hiring manager directly.

Gain access to the contact details of the hiring managers who actually decide, and reach out to network with them directly. That, plus more when you upgrade:

  • Full match report with fit score and gaps
  • Career diagnostics on how recruiters read you
  • Curated company matches and warm intros
  • 48h early access to new roles

Cancel anytime.