Назад
Company hidden
1 день назад

Cyber Security Engineer (Infrastructure & AI Platform Security)

Формат работы
hybrid
Тип работы
fulltime
Грейд
senior
Английский
c1
Страна
Germany
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Cyber Security Engineer (Infrastructure & AI Platform Security): Securing provider-side infrastructure and internal AI platforms with an accent on multi-tenant isolation, privileged access, agent authorization, and auditable data access. Focus on designing security baselines, reviewing AI deployments, reducing infrastructure blast radius, and driving remediation across heterogeneous platform teams.

Location: Karlsruhe, Germany; hybrid working model

Company

hirify.global provides cloud infrastructure, cloud services, hosting, and digitalization solutions for small and medium-sized businesses and enterprises across Europe and North America.

What you will do

  • Define and maintain security architecture standards and hardening baselines for virtualization, container, control-plane, provisioning, DNS, mail, backup, and recovery infrastructure.
  • Assess tenant isolation and reduce blast radius across shared hosting, virtualization, and container platforms.
  • Review infrastructure designs and major changes, support incident response, and drive remediation with platform and engineering teams.
  • Secure internal AI platforms, including model gateways, self-hosted models, agent frameworks, connectors, and retrieval pipelines.
  • Define identity, authentication, authorization, secrets management, least-privilege access, human-in-the-loop controls, and auditable agent activity.
  • Perform pre-deployment security reviews and advise engineering and security functions on safe AI adoption.

Requirements

  • Several years of hands-on experience in infrastructure or platform security, preferably in a hosting, cloud, telco, or large-scale multi-tenant environment.
  • Deep practical knowledge of Linux, virtualization, container platforms, networking, and multi-tenant security.
  • Strong experience with privileged access, machine and workload identity, secrets management, authorization models, and infrastructure-as-code security.
  • Experience establishing security standards in heterogeneous or partly legacy environments and gaining adoption across teams without direct management authority.
  • Working knowledge of LLM and agent systems and risks including prompt injection, excessive tool access, retrieval-based data exposure, unlogged autonomous actions, and provider dependency.
  • Fluent English required; German is advantageous.

Nice to have

  • Production experience deploying or securing internal AI platforms, agent frameworks, or tool-calling integrations.
  • Familiarity with NIS2, BSIG, or ISO 27001.
  • Background in DNS, email infrastructure, abuse-adjacent platform security, or security engineering and automation.
  • Experience working across multiple brands or post-acquisition environments.

Culture & Benefits

  • Flexible working hours based on trust.
  • Subsidized canteen and free drinks at some locations.
  • Modern offices with good transport connections.
  • Employee discounts, health and sports programs, and development opportunities.
  • Workshops, summer and winter events, and a collaborative environment with flat hierarchies.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →