Employer Description
A software development company in Pretoria. We specialise in software development, web design, network management and cyber security.
Job Description
Kubernetes & Cloud Networking
- Design, implement, and secure Kubernetes clusters (AKS and self-managed) .
- Configure and maintain Kubernetes networking (CNI plugins such as Calico or Cilium, ingress controllers like NGINX / Traefik, service mesh with Istio / Linkerd).
- Enforce network policies, pod security standards, and RBAC inside Kubernetes.
- Integrate Kubernetes networking with Azure VNets, NSGs, private endpoints, and load balancers .
- Automate Kubernetes infrastructure
Network Architecture & Security
Manage and configure enterprise firewalls (Fortinet, Palo Alto, Cisco ASA / FTD, or Check Point).Implement zero-trust modelsSecure workloads using Firewalls, Application Gateway, WAF, DDoS Protection, and private endpoints .Lead threat detection, incident response, and vulnerability remediation across cloud and container platforms.Identity, Domains & DNS
Administer Microsoft Entra ID (Azure Active Directory) for SSO, MFA, RBAC, and conditional access.Manage DNS (Azure DNS, BIND, Microsoft DNS), DHCP, SSL / TLS, DNSSEC, and public domain registrations .Integrate Entra ID with Kubernetes workloads and role-based access policies.Endpoint & Policy Management
Deploy and maintain endpoint security solutionsCreate and enforce security baselines, GPOs, and organizational security policies .Align all configurations to ISO 27001, SOC2, POPIA, and GDPR compliance.Operations & Monitoring
Monitor and troubleshoot network, Kubernetes, DNS, and firewall issuesParticipate in incident response, root cause analysis, and DR testing .Automate operational tasksQualifications
Degree / Diplma in related fieldCertifications (Highly Advantageous)CKA / CKS (Certified Kubernetes Administrator / Security Specialist) Mandatory or must obtain within 6 months .Microsoft Certified : Azure Network Engineer Associate / Azure Security Engineer Associate .CCNP / CCIE (Enterprise / Security), CISSP, CEH , or equivalent.Skills
6+ years experience in network / security engineering.3+ years hands-on experience managing Kubernetes clusters (mandatory).Core Technical ExpertiseKubernetes (Required) : cluster management, CNI, ingress, service mesh, RBAC, pod security, GitOps.Azure (Required) : VNets, NSGs, Azure Firewall, App Gateway, WAF, ExpressRoute, VPN Gateway, Entra ID.Firewalls (Required) : Fortinet, Palo Alto, Cisco ASA / FTD, or Check Point.DNS & Domains (Required) : Azure DNS, BIND, Microsoft DNS, SSL / TLS, DNSSEC.Security (Required) : SIEM (Sentinel / Splunk), IDS / IPS, AV / EDR, zero-trust, IAM, compliance frameworks.Certifications (Highly Advantageous)CKA / CKS (Certified Kubernetes Administrator / Security Specialist) Mandatory or must obtain within 6 months .Microsoft Certified : Azure Network Engineer Associate / Azure Security Engineer Associate .CCNP / CCIE (Enterprise / Security), CISSP, CEH, or equivalent.