Security Engineer, SecOps (Cloud Security)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Security Engineer, SecOps (Cloud Security): Building and scaling automation-based security operations, detection, observability, and vulnerability management capabilities with an accent on cloud security, SIEM development, and secure software delivery. Focus on designing detection-as-code, automating incident response, strengthening GCP security controls, and turning customer compliance requirements into scalable product and policy improvements.
Location: Hybrid in Helsinki, Finland, with weekly office attendance expected.
Salary: €4,500–€6,000 per month.
Company
is a fast-growing AI-native cybersecurity software company building human risk management, threat detection, and response products.
What you will do
- Build, tune, and maintain security detections, alerting, monitoring, and SIEM capabilities through tools, code, and automation.
- Develop security observability through audit logging, telemetry, dashboards, and actionable engineering signals.
- Coordinate vulnerability management, including triage, prioritization, remediation, and collaboration with engineering teams.
- Strengthen GCP cloud security architecture through network segmentation, egress controls, IAM, least privilege, secrets management, and infrastructure as code.
- Improve secure development practices with SAST, DAST, SCA, secrets scanning, threat modeling, and security reviews.
- Write production-quality software and automation to streamline security processes and response.
Requirements
- Working knowledge of GCP and/or AWS, containers, and Kubernetes.
- Hands-on experience with security monitoring automation, logging, telemetry, detection engineering, alerting, and automated response.
- Experience with vulnerability management and coordinated remediation.
- Working knowledge of SOC 2, ISO 27001, ISO 42001, HIPAA, NIST CSF, CIS, and NIS2 frameworks.
- Ability to write production-quality software in JavaScript, Python, or Go for cloud deployment.
- Clear communication, cross-team collaboration, continuous learning, and effective use of modern AI tools.
Nice to have
- Detection engineering, SIEM build-out, SOC, or hands-on incident-response experience.
- Experience with SAST, DAST, SCA, secrets scanning, OWASP, and threat modeling.
- Experience implementing security controls, running audits, or automating compliance evidence with tools such as Vanta.
- Distributed systems, bug-bounty, open-source security, or SaaS experience.
Culture & Benefits
- Flexible hybrid work with a Helsinki office, gym, and swimming pool.
- High-performance environment built around kindness, support, and psychological safety.
- Autonomy, trust, and ownership without micromanagement.
- Healthcare coverage and additional employee benefits.
- Opportunity to build cybersecurity products with measurable impact against cybercrime.
Hiring process
- 30-minute remote screening call with Talent Acquisition.
- 60-minute remote interview with the Director of Product Security and a 60–90-minute onsite technical interview.
- Reference checks followed by a final offer.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →