2 months ago
Remote, EstoniaSenior
Responsibilities
- Co-own the company security roadmap with the Security Leader and prioritize security work by risk.
- Own security programs end-to-end from roadmap development and stakeholder alignment through implementation and adoption.
- Lead application and product security activities including threat modeling, secure SDLC, design and code review, and supply chain security.
- Improve infrastructure and cloud security across AWS posture, runtime security, and IAM in collaboration with Infrastructure.
- Develop and own security automation and AI tooling, including security for AI-assisted development and LLM tooling.
- Manage developer endpoint security, including MDM, privilege, software governance, and secrets hygiene.
- Run framework-based whole-posture assessments, identify high-value improvements, and turn findings into prioritized engineering plans.
- Connect technical security work to SOC 2, PCI-DSS, and ISO 42001 requirements.
- Mentor engineers, lead blameless security incident post-mortems, and present to and align senior management.
- Collaborate with Platform, Infrastructure, Developer Acceleration, and Observability teams.
Requirements
- Hands-on experience in at least two security domains, such as application security and cloud or infrastructure security, with broader security posture literacy.
- Experience building or scaling a security program end-to-end, including process, tooling, adoption, and stakeholder alignment.
- Coding and automation ability, preferably in Python, along with strong AWS security experience.
- Experience with AI-assisted development and securing LLM tooling such as MCP, plus awareness of AI governance.
- Evidence of leadership through mentoring, deputising for a lead, or formal lead experience, with interest in owning team delivery while remaining technical.
- Collaborative, high-empathy approach to educating and enabling developers.
- Located in Europe.
- Experience with framework-based posture assessments such as CIS Controls, NIST CSF, or similar is preferred.
- Pentesting, audit, and compliance exposure, including SOC 2, PCI-DSS, or ISO 42001, is preferred.
- Terraform, Kubernetes, endpoint or MDM security, and identity provider experience are preferred.
Benefits
- Professional development support including trainings, courses, conferences, and books.
- Transparent career development system.
- Office, remote, and flexible working options; the team is remote-first and the role is available anywhere in Europe.
- Access to the latest tools and equipment needed for the role.
- Annual employee awards, internal hackathons, and other team events.
- Generous referral bonuses.
About Glia
Glia builds a SaaS platform for banks and credit unions that unifies voice and digital customer interactions and adds banking-trained AI agents. Its products include a Banking AI Operating System plus co-browsing, chat, and voice tools that integrate with core systems and contact centers. Founded in 2012 and headquartered in New York, the privately held company sells to financial institutions in multiple markets.
