Role track: Network & Infrastructure Engineer
Role overview
Specialize in data-plane security: segmentation strategy, encryption patterns, service-to-service trust, identity-aware routing, and traffic anomaly foundations.
Core responsibilities (framework):
-
Advanced network segmentation, ingress, and egress boundaries
-
Encryption for data in transit and at rest (as it intersects the network fabric)
-
Monitor and help mitigate anomalous or denial-style traffic
-
Multi-cluster posture from the network perspective
-
Runtime workload / service identity trust integration
-
Service-to-service trust fabric (mTLS layering, certificate lifecycle)
Not owning: compliance scanning automation, supply-chain gates, or organization-wide artifact provenance (Platform, DevSecOps, Architect).
Related modules
-
RHACS — Network and Runtime Security for visualization and enforcement patterns after the 101/201 network labs
-
OpenShift Virtualization Security — especially virt-06 (VLAN, MAC spoof filtering, MultiNetworkPolicy) and virt-07 (nested virt and CPU mitigations)