Infrastructure Security Tester/Consultant
Technology is our how. And people are our why. For over two decades, we have been harnessing technology to drive meaningful change. By combining world-class engineering, industry expertise and a people-centric mindset, we consult and partner with leading brands from various industries to create dynamic platforms and intelligent digital experiences that drive innovation and transform businesses. From prototype to real-world impact - be part of a global shift by doing work that matters. Our Testers work with project teams to ensure software quality through systematic test planning, execution, and defect tracking, ensuring functionality, performance, and reliability of applications before deployment. With deep knowledge of various types of applications, databases, and operating systems, they maintain high standards of product excellence and user satisfaction. We are looking for an Infrastructure Security Tester/Consultant to join our security testing team and help assess the resilience of cloud-native platforms and modern infrastructure environments.This role is suitable for experienced security testers as well as infrastructure, cloud, platform, DevOps, or SRE engineers who are passionate about security and would like to develop their career in security testing.You will perform security assessments across cloud platforms, Kubernetes, containers, Infrastructure as Code (IaC), CI/CD pipelines, identity and access management, secrets management, encryption, and monitoring controls. Working alongside experienced security professionals, you will help identify security risks, validate security controls, support remediation efforts, and contribute to secure infrastructure design practices.ResponsibilitiesPerform infrastructure security assessments across cloud, containerized, and Kubernetes-based environments.Review Infrastructure as Code (Terraform, Bicep, ARM, Helm, Kubernetes manifests, or similar) to identify security risks and misconfigurations.Assess CI/CD pipelines, secrets management processes, encryption controls, logging, monitoring, and access management practices.Validate Kubernetes and container security controls, including workload isolation, RBAC, network policies, and runtime security.Retest remediated findings and verify the effectiveness of implemented controls.Produce clear, evidence-based findings, risk assessments, and remediation recommendations.Support engineering and architecture teams with practical guidance on infrastructure hardening and secure-by-design principles. +8 years of experienceExperience in infrastructure security testing within cloud-native environments.Strong understanding of Kubernetes, containers, cloud security, and Infrastructure as Code.Experience assessing CI/CD security, identity and access management, secrets management, and encryption controls.Familiarity with infrastructure monitoring, logging, and security telemetry.Ability to communicate technical findings clearly to both tech...