Назад
Company hidden
22 часа назад

Cloud Security Engineer (Cloud Security)

Формат работы
hybrid
Тип работы
fulltime
Грейд
senior
Английский
c1
Страна
Poland
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Cloud Security Engineer (Cloud Security): Building and governing security architecture, tooling, and engineering controls for Tango's multi-cloud live-streaming platform with an accent on cloud baselines, Kubernetes protection, identity security, and workload visibility. Focus on designing secure-by-default infrastructure, automating policy enforcement, managing CNAPP/CSPM findings, and responding to cloud security incidents.

Location: Warsaw; on-site position with 4 days at the office and 1 day working from home

Company

hirify.global operates a global B2C live-streaming platform with more than 450 million registered users and a multi-cloud infrastructure.

What you will do

  • Own cloud security strategy and architecture across multiple cloud providers, establishing consistent hardened baselines based on CIS Cloud Benchmarks.
  • Lead security design reviews and threat modelling for infrastructure and platform initiatives.
  • Manage the CNAPP/CSPM capability, including Wiz coverage, tuning, prioritisation, and remediation tracking.
  • Drive security for virtual machines, containers, and Kubernetes workloads, including runtime protection.
  • Own cloud workload vulnerability and patch management with measurable SLAs.
  • Build cloud asset visibility and external attack surface management capabilities.

Requirements

  • 5+ years of security engineering experience, including at least 3 years focused on production cloud security.
  • Deep practical expertise in at least one major cloud provider; Google Cloud is the primary environment.
  • Strong Kubernetes and container security experience, including workload identity, admission control, network policy, image supply chain, and runtime protection.
  • Hands-on Infrastructure-as-Code experience with Terraform or an equivalent tool, plus the ability to enforce policy through code.
  • Strong cloud IAM expertise, including entitlement design, privilege escalation, cross-account and cross-project trust, and IdP federation such as Okta.
  • Working proficiency in Python, Go, or a comparable language, experience with cloud security incidents, and fluent English.

Nice to have

  • Experience as the first or only dedicated cloud security engineer in an organisation.
  • Consumer-scale platform experience, cloud detection engineering, or familiarity with eBPF-based tooling.
  • Experience across heterogeneous cloud providers and consolidating them onto a common standard.
  • Mentoring or engineering leadership experience and relevant Google Cloud, CKS, or CKA certifications.
  • Familiarity with SOC 2, ISO 27001, or PCI DSS controls.

Culture & Benefits

  • Stock options grant.
  • Medical insurance for the employee and 75% coverage discount for relatives.
  • Lunch budget, parking, and Multisport card.
  • Office-based work with one work-from-home day per week.
  • Energetic team environment and office activities.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →