Назад
Company hidden
4 дня назад

Security Engineer (AI)

Формат работы
hybrid
Тип работы
fulltime
Грейд
middle
Английский
b2
Страна
Germany
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Security Engineer (AI): Improving vulnerability management, incident response, application security, and security tooling for a global travel search platform with an accent on automation, cloud security, and identity management. Focus on triaging security incidents, addressing application and infrastructure findings, and building AI-assisted workflows that improve detection and response.

Location: Hybrid role requiring work from the Berlin, Germany office 3 days per week

Company

hirify.global is a travel search engine within Booking Holdings, helping users find flights, accommodations, rental cars, and vacation packages while developing corporate travel solutions.

What you will do

  • Support and improve the vulnerability management program, including identification, prioritization, tracking, remediation, and reporting of security findings.
  • Participate in incident response activities such as triage, investigation, containment, and post-incident documentation.
  • Support application security through automated code scanning, dependency analysis, and early remediation of findings.
  • Configure, monitor, and improve security tooling for endpoint protection, email security, identity and access management, and cloud security posture.
  • Build security automation and orchestration workflows while documenting processes, runbooks, access reviews, and findings.
  • Collaborate with engineering, operations, compliance, and product teams to improve security practices and detection capabilities.

Requirements

  • Understanding of cybersecurity fundamentals, networking, operating systems, and cloud environments.
  • Hands-on experience in at least one security domain, such as vulnerability management, incident response, application security, endpoint security, or identity and access management.
  • Experience with security tooling such as vulnerability scanners, endpoint detection and response platforms, or SIEM systems.
  • Familiarity with AI tools and their use in security workflows, alert triage, automation, detection, or response.
  • Professional working proficiency in English is required.
  • Ability to work collaboratively and autonomously while communicating clearly with a globally distributed team.

Nice to have

  • Familiarity with the NIST Cybersecurity Framework or similar frameworks.
  • Experience with AWS, GCP, or container security.
  • Experience with security automation or scripting, including Python.
  • Experience in regulated environments such as SOC 2 or PCI.

Culture & Benefits

  • Hybrid work with the possibility to work from almost anywhere for up to 20 days per year.
  • Six weeks of paid vacation, paid parental leave, birthday time off, and paid volunteer time.
  • Mental health support, including therapy sessions and a HeadSpace subscription.
  • Career development resources, leadership development, and access to on-demand learning.
  • Travel discounts, pension contributions, public transportation subsidies, and bike leasing.
  • Berlin office amenities and activities, including free lunch twice per week, social events, sports teams, and Thursday happy hours.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →