Applications Security Analyst
Hays
Hong Kong
Full time
Contract
On-site
Competitive
About the job
Your new role
What you'll need to succeed
What you need to do now
If you're interested in this role, click 'apply now' to forward an up-to-date copy of your CV, or call us now.
If this job isn't quite right for you, but you are looking for a new position, please contact us for a confidential discussion on your career.
- Operate and optimise the organisation's CNAPP platform, including runtime threat detection, vulnerability management, compliance, and CSPM.
- Define and enforce Kubernetes security controls such as RBAC, PodSecurity/OPA Gatekeeper, network policies, and secrets management (e.g., Vault, Sealed Secrets, native K8s secrets).
- Maintain continuous visibility of image and workload vulnerabilities through container registry scanning and runtime analysis.
- Manage the full lifecycle of CVEs: severity evaluation, patch coordination with engineering teams, and risk acceptance processes.
- Work with DevOps and platform engineering teams to integrate security into Infrastructure-as-Code (Terraform, Helm, Kustomize).
What you'll need to succeed
- At least 2 years of hands-on cybersecurity experience in cloud-native or microservices-driven environments.
- Minimum 2 years of Kubernetes experience in a security or platform engineering role, including RBAC, admission controls, and network policies.
- Strong knowledge of Kubernetes security, including control plane protection, kubeconfig security, and audit logging.
- Scripting skills in Bash and/or Python for automation, log processing, and tool integration.
- Solid understanding of networking fundamentals
What you need to do now
If you're interested in this role, click 'apply now' to forward an up-to-date copy of your CV, or call us now.
If this job isn't quite right for you, but you are looking for a new position, please contact us for a confidential discussion on your career.