5 дней назад
Staff Security Engineer (Platform Security)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Staff Security Engineer (Platform Security): Building paved roads for vulnerability management, identity, network security, and audit capabilities across on-premise GPU infrastructure, AWS, GCP, and deployed cameras with an accent on platform enablement and secure-by-default tooling. Focus on designing multi-cloud network and VPN architecture, implementing workload identity with OIDC, and creating auditable security workflows that engineering teams can adopt and operate.
Location: Copenhagen; on-site
Company
develops a product powered by on-premise GPU infrastructure, AWS and GCP services, and a global fleet of cameras deployed at clubs and venues.
What you will do
- Design and build paved roads for image scanning, SBOM generation, CVE response, and auditable GRC evidence pipelines.
- Lead the design and tooling for a unified internal network and VPN across GCP, AWS, and offices in Miami, Berlin, and Copenhagen.
- Develop identity and access patterns, including MFA, removal of shared accounts, token lifecycle management, and OIDC-based workload identity for CI/CD.
- Build shared audit logging and security intake capabilities that route findings to named owners with tracked remediation.
- Coordinate external penetration testing contracts and establish systems for classifying and tracking findings.
- Hand capabilities over with runbooks, named owners, escalation paths, and security office hours.
Requirements
- Several years of production infrastructure and security experience, with deep expertise in platform security or identity and readiness to grow in the other area.
- Experience with vulnerability scanning, CVE management, and image scanning at scale.
- Hands-on experience with authentication systems, MFA rollouts, CI/CD token lifecycles, OIDC, and workload identity.
- Experience designing and operating unified internal networks across multiple cloud providers and offices.
- Experience building internal security tooling adopted by engineering teams.
- Strong Infrastructure as Code experience with Terraform, Crossplane, or similar tools.
Nice to have
- Experience with Flux or ArgoCD, Cilium, Kubernetes security at scale, or GRC evidence pipelines.
Culture & Benefits
- Work as part of a Copenhagen-based Security Enablement Team of three engineers and a manager.
- Collaborate with Platform, Product, IT, Firmware, and GRC teams.
- Focus on shared tooling, golden paths, pragmatic iteration, and high-leverage security missions.
- No SOC operations or security pager responsibilities.
- Contribute to an inclusive environment centered on initiative, ownership, continuous growth, teamwork, and customer centricity.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →