Назад
Company hidden
5 дней назад

Senior Information Security Engineer

Формат работы
remote (только Romania)
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
Romania
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/

TL;DR

Senior Information Security Engineer (Cybersecurity): Managing end-to-end vulnerability programs and cloud security posture for SaaS products with an accent on Azure environment hardening and compliance frameworks. Focus on driving remediation through engineering teams, maintaining security policies, and responding to customer security requirements.

Location: Must be based in Romania (Remote)

Company

hirify.global is an AI transformation partner helping enterprises build AI-native products and intelligent agents across financial services, healthcare, and media industries.

What you will do

  • Own the end-to-end vulnerability management program across SaaS products, cloud infrastructure, and endpoints.
  • Enhance security posture in Microsoft Azure through configuration hardening, policy enforcement, and continuous monitoring.
  • Administer and improve Microsoft Intune and Microsoft Defender for threat detection and endpoint management.
  • Lead responses to customer security questionnaires, RFPs, and third-party security audits.
  • Partner with engineering teams on secure SDLC practices, threat modeling, and code review guidance.
  • Draft and maintain corporate information security policies aligned with SOC 2, ISO 27001, and NIST CSF.

Requirements

  • 4–6 years of professional experience in information security, application security, or cloud security.
  • Hands-on experience securing SaaS applications and workloads in Microsoft Azure.
  • Demonstrated experience with vulnerability management tooling, triage, and remediation processes.
  • Working proficiency with Microsoft Intune, Defender, Purview, Datadog, GitHub Advanced Security, or Snyk.
  • Experience responding to customer security questionnaires and supporting compliance efforts like SOC 2 or ISO 27001.
  • Strong communication skills to translate technical risk for both engineers and non-technical stakeholders.

Nice to have

  • Industry certifications such as CISSP, CCSP, AZ-500, or GCIH.
  • Scripting/automation experience with PowerShell, Python, or Bash.
  • Familiarity with infrastructure-as-code tools like Terraform or Bicep.
  • Experience with container and Kubernetes security.

Culture & Benefits

  • Flexible work environment with a remote-first approach.
  • Opportunity to work within a global team across North America, Europe, Latin America, and Asia.
  • Dedicated focus on employee well-being with fitness offerings and mental health plans.
  • Accelerated career growth through diverse projects and industry exposure.
  • Commitment to diversity, intrinsic dignity, and open collaboration.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →