Senior Security Platform Engineer - Hybrid Container Platform & Security Operations

Infosoft, Inc. • United State
Visa Sponsorship
Apply
AI Summary

Design, build, and operate a secure, scalable enterprise Data Private Cloud platform. Implement security controls, compliance guardrails, and automation across the SDLC. Partner with cross-functional teams to deliver secure-by-default data services at scale.

Key Highlights
Hybrid role blending container-platform development (Kubernetes/OpenShift) with security operations
Build automated workflows for provisioning, deployment, and operational support of data services
Implement security controls for data access, encryption, masking, and protection
Work on secure-by-default data services including Spark, Iceberg, Ranger, and Superset
Collaborate with platform, data, and security teams for end-to-end solutions
Key Responsibilities
Design and build automated platform workflows for provisioning, deployment, and operational support of data services running on OpenShift/Kubernetes
Develop and maintain platform capabilities supporting data ecosystem components such as Spark, Iceberg, Ranger, Sparkflow, and Superset
Engineer security automation that enforces controls for data access, encryption, masking, and protection across the data platform
Integrate security into the SDLC by embedding controls into CI/CD pipelines, infrastructure-as-code, and release processes
Support security monitoring and compliance by contributing to policy management, attestation evidence, and continuous compliance workflows
Design, implement, test, and document Python-based services and automation for platform operations and compliance workflows
Participate in technical design reviews, threat modeling discussions, and architecture decisions for secure deployment patterns
Technical Skills Required
Python development Kubernetes OpenShift CI/CD pipelines Security fundamentals Data security patterns DevOps practices Apache Ranger Keycloak Spark Iceberg DataHub S3-compatible object storage Observability tooling Incident response API design UI development (React.js)
Benefits & Perks
$75 to $80 per hour (W2)
H1B visa sponsorship available
12-month contract duration
Nice to Have
Experience with Apache/open-source ecosystem tools such as Ranger, Keycloak, Spark, Iceberg, DataHub
Knowledge of S3-compatible object storage and large-scale distributed data processing patterns
Familiarity with observability tooling (logs/metrics/traces), security telemetry, and operational health dashboards
Experience with incident response, post-incident reviews, and improving operational resilience
Exposure to API design and/or UI development (e.g., React.js) for operational portals or admin tools

Job Description


Job Title: Senior Security Platform Engineer

Pay Rate: $75 to $80/Hr ($70/Hr for H1b) on W2

Duration: 12 months

(Urgent: would like to interview and make an offer by Monday/Tuesday of next week.)

Location: Charlotte, NC


We are urgently looking for a Senior Security Platform Engineer

  • Client is seeking a mid-level to Senior Security Platform Engineer to join the client’s team on a contract basis to help design, build, and operate a secure, scalable enterprise Data Private Cloud (DPC) platform.
  • This is a hybrid role that blends container-platform development (Kubernetes/OpenShift and data services) with security operations (SecOps) and automation.
  • Candidates will build and enhance platform services and workflows across the SDLC, implement security controls and compliance guardrails, and partner with cross-functional teams to operationalize secure-by-default data services at scale.


Platform Engineering:

  • Design and build automated platform workflows for provisioning, deployment, and operational support of data services running on OpenShift/Kubernetes.
  • Develop and maintain platform capabilities supporting data ecosystem components such as Spark, Iceberg, Ranger, Sparkflow, Superset, and related services.
  • Contribute to resilient, scalable architecture for containerized workloads and large-scale data processing pipelines.
  • Improve platform reliability through automation, runbooks, SRE practices, and standard operating procedures.


Security Engineering and SecOps Enablement

  • Engineer security automation that enforces controls for data access, encryption, masking, and protection across the data platform.
  • Integrate security into the SDLC by embedding controls into CI/CD pipelines, infrastructure-as-code, and release processes.
  • Partner with security, platform, and DevOps teams to strengthen incident response readiness, operational resilience, and risk reduction.
  • Support security monitoring and compliance by contributing to:
  • Policy management, attestation evidence, and continuous compliance workflows
  • Security-relevant audit logging, alerting, and dashboards
  • Design, implement, test, and document Python-based services and automation for platform operations and compliance workflows.
  • Collaborate closely with architects, DevOps/platform engineers, and data product teams to deliver end-to-end solutions.
  • Participate in technical design reviews, threat modeling discussions, and architecture decisions for secure deployment patterns.


Requirements:

  • Strong Python development skills for enterprise-scale automation and service development.
  • Solid understanding of security fundamentals (least privilege, defense-in-depth, secure SDLC) and common compliance concepts.
  • Experience building or operating software in containerized environments (Kubernetes or OpenShift/OCP).
  • Practical experience with CI/CD pipelines and integrating security checks/controls into delivery workflows.
  • Strong communication skills and ability to work effectively across engineering and security stakeholders.
  • Familiarity with data security patterns such as access control, encryption, tokenization/masking, and secrets management.
  • Understanding of DevOps practices: automated testing, release automation, environment promotion strategies, and operational support.
  • Exposure to data platform concepts (data services, governance, metadata, batch/stream processing).
  • Automated workflows that make data services easy to deploy and operate on OCP/Kubernetes.
  • Security controls that are built-in, not bolted-on—policy enforcement, least privilege, auditability, and compliance automation.
  • Improved reliability and reduced operational overhead through standardization and automation.
  • Strong cross-team alignment between platform engineering, data teams, and security stakeholders.


Preferred Qualifications (Nice to Have):

  • Experience with Apache/open-source ecosystem tools such as Ranger, Keycloak, Spark, Iceberg, DataHub.
  • Knowledge of S3-compatible object storage and large-scale distributed data processing patterns.
  • Familiarity with observability tooling (logs/metrics/traces), security telemetry, and operational health dashboards.
  • Experience with incident response, post-incident reviews, and improving operational resilience.
  • Exposure to API design and/or UI development (e.g., React.js) for operational portals or admin tools.

Similar Jobs

Explore other opportunities that match your interests

Staff Security Engineer - Red Team

Cyber Security
•
50m ago

Premium Job

Sign up is free! Login or Sign up to view full details.

•••••• •••••• ••••••
Job Type ••••••
Experience Level ••••••

GEICO

United State

Staff Engineer - Platform Security Engineering - Encryption and Tokenization

Cyber Security
•
1h ago

Premium Job

Sign up is free! Login or Sign up to view full details.

•••••• •••••• ••••••
Job Type ••••••
Experience Level ••••••

GEICO

United State

Cybersecurity Engineer - Data Loss Prevention

Cyber Security
•
16h ago

Premium Job

Sign up is free! Login or Sign up to view full details.

•••••• •••••• ••••••
Job Type ••••••
Experience Level ••••••

BNSF Railway

United State

Subscribe our newsletter

New Things Will Always Update Regularly