2 months ago
Remote, EMEASenior
Responsibilities
- Analyze customer expectations, regulatory and compliance drivers, and threat models to define requirements for security solutions.
- Research security products, platforms, and vendors across CSPM/CNAPP, DLP, IAM/IGA, EDR/XDR, data security, Kubernetes security, and AI/ML security.
- Evaluate vendor capabilities, security posture, integrations, roadmaps, data residency, compliance, and support quality.
- Design PoC test plans, success criteria, quantitative metrics, attack scenarios, and automation opportunities.
- Architect and deploy isolated PoC environments that simulate production infrastructure, including cloud VPCs, Kubernetes clusters, test data, IaC, and representative workloads.
- Execute attack simulations, feature validation, and false-positive and false-negative analysis.
- Document technical performance, integration challenges, security gaps, and comparative metrics.
- Present data-driven recommendations to security, product, and engineering leadership.
- Coordinate with Security Engineering, Platform/Infrastructure, and DevOps teams on integration, operations, scalability, and implementation handoff.
Requirements
- At least 6 years of experience in Security Engineering, Security Architecture, or dedicated Security Research focused on solution validation and vendor management.
- Deep understanding of cloud security principles across AWS, Azure, and GCP, including Kubernetes/containers, network segmentation, IaC scanning, least privilege, identity-centric security, and confidential computing.
- Strong scripting or programming skills in Python, Go, or similar for PoC automation, test harnesses, and tool integrations.
- Hands-on architecture, deployment, and testing experience with at least two enterprise-grade security tools, such as SIEM/SOAR, EDR, vulnerability management, or secrets management platforms.
- Demonstrated ability to plan and execute complex technical Proof-of-Concepts, including test environment setup and quantitative success metrics.
- Strong analytical, written, and verbal communication skills.
- Experience in cloud or cloud-heavy companies is preferred.
- Experience in compliance-focused industries and familiarity with ISO 27001, SOC 2, or GDPR is preferred.
- Advanced certifications such as CISSP, CCSK, or AWS, GCP, or Azure Security Specialty are preferred.
- Experience contributing to security standards, open-source tools, talks, or publications is preferred.
- Applicants must be authorized to work in the country in which they apply.
Benefits
- Competitive compensation
- Career growth and learning opportunities
- Flexibility and ownership
- Collaborative and innovative culture
- Opportunity to work on impactful AI projects
- International environment and talented teams
- Applicants must be authorized to work in the country of application and provide proof of employment eligibility.
Categories
SecuritySolutions Engineering
About Nebius
Nebius builds a full-stack AI cloud offering GPU compute, storage, and tools for training and deploying ML models for startups, enterprises, and research labs. It sells consumption-based cloud infrastructure (IaaS/PaaS) and managed services tailored to generative AI workloads, including large-scale model training and inference. The company is headquartered in Amsterdam and operates as an independent provider.
