Назад
Company hidden
10 дней назад

Principal Security Engineer (Cloud Security)

Формат работы
hybrid
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
Poland
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Principal Security Engineer (Cloud Security): Strengthening cloud, application, infrastructure, and operational security across a global financial technology organization with an accent on Microsoft Azure, detection engineering, incident response, and secure platform design. Focus on leading security initiatives, conducting threat modelling and architecture reviews, developing Sentinel and Defender detections, and embedding security into CI/CD pipelines and cloud architectures.

Location: Warsaw, Poland; hybrid model with 2 days in the office and 3 days remote. Occasional remote work is available across Poland and internationally for up to 24 domestic and 20 international days per year, subject to internal policy.

Company

SimCorp is an independent hirify.global Group subsidiary providing integrated investment management solutions for investment and asset managers.

What you will do

  • Lead security engineering initiatives across cloud, application, infrastructure, and operational security.
  • Conduct security assessments, architecture reviews, threat modelling, and risk evaluations.
  • Develop and tune detection capabilities using Microsoft Sentinel, Microsoft Defender, KQL analytics, and related tools.
  • Define logging, monitoring, and event collection standards across the platform.
  • Participate in incident response, threat hunting, investigations, recovery, root cause analysis, and post-incident reviews.
  • Embed security into CI/CD pipelines, development workflows, infrastructure platforms, and cloud architectures while advising engineering and product stakeholders.

Requirements

  • 8+ years of experience in security engineering, cloud security, application security, cyber defense, incident response, or related fields.
  • Experience with modern cloud environments, ideally Microsoft Azure, including Microsoft Defender, Microsoft Sentinel, Entra ID, and security monitoring tools.
  • Knowledge of identity and access management, application security, threat modelling, secure development, SAST, DAST, and software composition analysis.
  • Experience with detection engineering, SIEM technologies, threat hunting, incident response, vulnerability management, infrastructure hardening, and security risk mitigation.
  • Familiarity with Terraform or Bicep, containers, Kubernetes, cloud-native architectures, DevSecOps, MITRE ATT&CK, and security frameworks.
  • Applications must be submitted in English.

Nice to have

  • Microsoft Security Engineer Associate, Security Operations Analyst, Cybersecurity Architect Expert, or similar industry-recognized certification.

Culture & Benefits

  • Flexible working hours and a hybrid work model.
  • Base salary with an annual bonus structure; compensation ranges are disclosed during initial candidate engagement.
  • Employer-paid Medicover Platinum healthcare package, life insurance, travel insurance, and a MyBenefit monthly cafeteria budget.
  • Holiday allowance, professional training and courses, and career development in an international environment.
  • Polish language classes for foreign employees, optional German and English classes, integration events, volunteering initiatives, and employee-led clubs.

Hiring process

  • Applications are reviewed continually through the company career system.
  • Applications should exclude photos, age, and other non-professional personal information.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →