Aurora Engineering AB

Kubernetes Platform Quality & Security Engineer

Aurora Engineering AB Stockholm, Sweden

IT Services and IT Consulting · 11-50 employees

6 h ago
kubernetes Senior (5-10 yrs) Full-time Sweden
Create a free account to apply — email only, no card. You can also save this posting or score it against your profile with AI.

About the role

The consultant will assess and quality-assure the Kubernetes platform to ensure it is secure, scalable, and resilient before production deployment. They will identify technical gaps, provide actionable recommendations, and support the team in implementing best practices.

What they look for

Kubernetes Container Security RBAC Network Policies Resource Management Autoscaling Logging Monitoring Observability Backup and Recovery Velero Node Hardening Vulnerability Scanning Platform Engineering Technical Auditing

Requirements

The role requires documented hands-on experience with Kubernetes in production environments and strong knowledge of container security and operations. Candidates must possess the ability to audit existing environments and effectively communicate technical findings to both developers and operations teams.

Full description

We are looking for an experienced Kubernetes (K8s) Platform Quality & Security Engineer to assess and quality-assure the operating environment, a product currently deployed in a development Kubernetes cluster.

The objective is to ensure that the environment is robust, secure, scalable, resilient, and aligned with Kubernetes best practices before it is transitioned to a production cluster. The consultant will perform a structured assessment of the existing environment, identify risks and technical gaps, provide practical recommendations, and support the team in addressing key deficiencies.

The resulting recommendations and operating principles are expected to serve as a reference model for operating the company's products on Kubernetes.

Key Responsibilities

Kubernetes Configuration Review

  • Assess the existing Kubernetes cluster and application configuration.
  • Review namespace structure, resource requests/limits, RBAC, and access control.
  • Analyze network policies and traffic flows between services.
  • Review secrets, certificates, and credential management.
  • Assess persistent storage configuration for both databases and file-based workloads.
  • Identify configuration deviations and opportunities for standardization.

Operations, Reliability & Resilience

  • Review liveness, readiness, and startup probes.
  • Assess autoscaling, resource allocation, and rolling update strategies.
  • Review the backup and recovery strategy, including persistent storage and solutions such as Velero or equivalent technologies.
  • Evaluate logging, monitoring, observability, and alerting.
  • Assess operational processes for incident handling, recovery, and ongoing maintenance.
  • Identify potential resilience and availability risks before production deployment.

Kubernetes Security

  • Review container image management and vulnerability scanning practices.
  • Assess Pod Security Standards and security policies.
  • Review RBAC and least-privilege access across the environment.
  • Assess node hardening, patch management, and security configuration.
  • Identify security risks and recommend practical remediation measures.

Architecture & Best-Practice Assessment

  • Review how services are structured within Kubernetes, including:
  • Deployments
  • Services
  • Ingress
  • Configuration and secrets
  • Persistent workloads
  • Identify technical debt, temporary solutions, and quick fixes that may have accumulated over time.
  • Compare the current setup against Kubernetes best practices and established platform standards.
  • Where relevant, compare with other products, such as Helix, to identify opportunities for standardization, reuse, and improved operational consistency.

Deliverables

The consultant is expected to provide:

  • Current-state assessment covering configuration, security, operations, architecture, and resilience.
  • Risk and gap analysis, with deviations prioritized according to severity and business/technical impact.
  • Concrete and implementable recommendations for addressing identified deficiencies.
  • Prioritized action plan, including recommended next steps and clear ownership/responsibility.
  • Practical support to the team in addressing selected findings.
  • Knowledge-transfer sessions and workshops to ensure internal teams can maintain and improve the quality level after completion.
  • Final workshop/debriefing presenting findings, recommendations, priorities, and key lessons learned.

Required Competencies

We are looking for a consultant with:

  • Documented hands-on experience with Kubernetes in production environments.
  • Strong knowledge of Kubernetes architecture, configuration, and operations.
  • Good understanding of container security, including:
  • RBAC and access control
  • Network policies
  • Secrets and certificate management
  • Pod security
  • Container image security and vulnerability scanning
  • Strong knowledge of Kubernetes operations, including:
  • Resource requests and limits
  • Autoscaling
  • Health checks and probes
  • Rolling updates
  • Logging and monitoring
  • Alerting
  • Backup and restore
  • Persistent storage
  • Proven experience in reviewing, auditing, and improving existing production environments, rather than only designing greenfield solutions.
  • Ability to identify technical debt, operational risks, security gaps, and deviations from best practices.
  • Experience translating technical findings into clear, actionable recommendations.
  • Strong communication skills with the ability to work effectively with both software developers and IT operations teams.
  • Ability to conduct workshops and transfer knowledge to internal teams.
  • Swedish or English, both spoken and written.

Similar roles