Назад
Company hidden
5 дней назад

Staff Security Engineer (Platform Security)

Формат работы
onsite
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
Denmark
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Staff Security Engineer (Platform Security): Building paved roads for vulnerability management, identity, network security, and audit capabilities across on-premise GPU infrastructure, AWS, GCP, and deployed cameras with an accent on platform enablement and secure-by-default tooling. Focus on designing multi-cloud network and VPN architecture, implementing workload identity with OIDC, and creating auditable security workflows that engineering teams can adopt and operate.

Location: Copenhagen; on-site

Company

hirify.global develops a product powered by on-premise GPU infrastructure, AWS and GCP services, and a global fleet of cameras deployed at clubs and venues.

What you will do

  • Design and build paved roads for image scanning, SBOM generation, CVE response, and auditable GRC evidence pipelines.
  • Lead the design and tooling for a unified internal network and VPN across GCP, AWS, and offices in Miami, Berlin, and Copenhagen.
  • Develop identity and access patterns, including MFA, removal of shared accounts, token lifecycle management, and OIDC-based workload identity for CI/CD.
  • Build shared audit logging and security intake capabilities that route findings to named owners with tracked remediation.
  • Coordinate external penetration testing contracts and establish systems for classifying and tracking findings.
  • Hand capabilities over with runbooks, named owners, escalation paths, and security office hours.

Requirements

  • Several years of production infrastructure and security experience, with deep expertise in platform security or identity and readiness to grow in the other area.
  • Experience with vulnerability scanning, CVE management, and image scanning at scale.
  • Hands-on experience with authentication systems, MFA rollouts, CI/CD token lifecycles, OIDC, and workload identity.
  • Experience designing and operating unified internal networks across multiple cloud providers and offices.
  • Experience building internal security tooling adopted by engineering teams.
  • Strong Infrastructure as Code experience with Terraform, Crossplane, or similar tools.

Nice to have

  • Experience with Flux or ArgoCD, Cilium, Kubernetes security at scale, or GRC evidence pipelines.

Culture & Benefits

  • Work as part of a Copenhagen-based Security Enablement Team of three engineers and a manager.
  • Collaborate with Platform, Product, IT, Firmware, and GRC teams.
  • Focus on shared tooling, golden paths, pragmatic iteration, and high-leverage security missions.
  • No SOC operations or security pager responsibilities.
  • Contribute to an inclusive environment centered on initiative, ownership, continuous growth, teamwork, and customer centricity.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →