Kubernetes K3s Security & Isolation Engineer @ Capgemini
placePortland, Oregon, United States
attach_money $150,000
businessOn Site
scheduleFull Time
Posted 23 days ago
Your Application Journey
Interview
Email Hiring Manager
****** @capgemini.com
Recommended after applying
Job Details
About the Kubernetes K3s Security & Isolation Engineer Role
Are you passionate about securing the future of cloud-native infrastructure in mission-critical environments? Join our team in Portland, OR, supporting the aerospace industry where security, reliability, and precision are paramount.
Your Role
In this onsite role, you will:
- Architect and deploy security-first Kubernetes K3s cluster configurations across diverse hardware platforms including x86, ARM, and accelerators.
- Enforce Linux security modules (SELinux, AppArmor) and sandboxing techniques such as seccomp, gVisor, and Kata.
- Integrate TPM for secure boot and attestation with support from HSM/KMS systems.
- Design multi-tenant isolation strategies and apply least privilege policies using RBAC, PodSecurityStandards, and NetworkPolicies.
- Harden Kubernetes components using CIS and NSA benchmarks and implement kernel-level protections.
- Secure workload secrets using TPM-backed storage and tools like SealedSecrets and HashiCorp Vault.
- Enhance supply chain security with image signing, SBOM scanning and CI/CD vulnerability management.
- Monitor runtime behavior with tools such as Falco and Cilium Tetragon and collaborate on incident response.
Your Skills and Experience
- Bachelor’s degree in a technical field with 8–10 years experience in infrastructure, security, or systems engineering.
- Deep expertise in Kubernetes (especially K3s) internals and security architecture.
- Advanced proficiency in Linux security features and container runtime security.
- Hands-on experience with TPM for secure operations and integration with cryptographic tools.
- Strong understanding of Pod Security frameworks, RBAC, and network policies.
- Familiarity with runtime and supply chain security tools and frameworks.
- Knowledge of confidential computing, air-gapped deployments and hardened Linux distributions.
Life at Capgemini
Capgemini offers flexible work, comprehensive healthcare, financial well-being programs, paid time off and holidays, paid parental leave, family building benefits, social well-being benefits, mentoring programs, employee resource groups, and disaster relief. Capgemini Engineering is a global leader in innovation and technology transformation with a strong heritage and robust financial performance.
Key skills/competency
- Kubernetes
- K3s
- Security
- Isolation
- Linux
- TPM
- RBAC
- Container
- CI/CD
- Hardening
How to Get Hired at Capgemini
🎯 Tips for Getting Hired
- Research Capgemini's culture: Study mission, values, and employee testimonials.
- Tailor your resume: Emphasize Kubernetes security expertise and achievements.
- Highlight relevant skills: Focus on Linux security and TPM integration.
- Prepare technical demos: Showcase cluster hardening and isolation projects.
- Practice interview questions: Be ready for technical and behavioral discussions.
📝 Interview Preparation Advice
Technical Preparation
circle
Review Kubernetes and K3s internals.
circle
Practice Linux security module configurations.
circle
Set up TPM and HSM/KMS integrations.
circle
Simulate cluster hardening scenarios.
Behavioral Questions
circle
Describe teamwork in challenging projects.
circle
Explain prioritization under pressure.
circle
Discuss conflict resolution methods.
circle
Show adaptability to technology changes.
Frequently Asked Questions
What key Kubernetes skills does Capgemini seek for the Kubernetes K3s Security & Isolation Engineer role?
keyboard_arrow_down
How important is TPM experience for the Kubernetes K3s Security & Isolation Engineer position at Capgemini?
keyboard_arrow_down
How does Capgemini approach multi-tenant isolation in the Kubernetes K3s Security & Isolation Engineer role?
keyboard_arrow_down
What security frameworks and tools should candidates for the Kubernetes K3s Security & Isolation Engineer role be familiar with at Capgemini?
keyboard_arrow_down
How does Capgemini support career growth for a Kubernetes K3s Security & Isolation Engineer?
keyboard_arrow_down