4 hours ago
Remote, WorldwideSenior
Responsibilities
- Analyze customer expectations, regulatory and compliance drivers, and threat models to define requirements for security solutions.
- Research security products, platforms, and vendors across CSPM/CNAPP, DLP, IAM/IGA, EDR/XDR, data security, Kubernetes security, and AI/ML security.
- Evaluate vendor capabilities, security posture, integrations, roadmaps, data residency, compliance, and support quality.
- Design PoC test plans, success criteria, quantitative metrics, attack scenarios, and automation opportunities.
- Architect and deploy isolated PoC environments that simulate production infrastructure, including cloud VPCs, Kubernetes clusters, test data, IaC, and representative workloads.
- Execute attack simulations, feature validation, and false-positive and false-negative analysis.
- Document technical performance, integration challenges, security gaps, and comparative metrics.
- Present data-driven recommendations to security, product, and engineering leadership.
- Coordinate with Security Engineering, Platform/Infrastructure, and DevOps teams on integration, operations, scalability, and implementation handoff.
Requirements
- At least 6 years of experience in Security Engineering, Security Architecture, or dedicated Security Research focused on solution validation and vendor management.
- Deep understanding of cloud security principles across AWS, Azure, and GCP, including Kubernetes/containers, network segmentation, IaC scanning, least privilege, identity-centric security, and confidential computing.
- Strong scripting or programming skills in Python, Go, or similar for PoC automation, test harnesses, and tool integrations.
- Hands-on architecture, deployment, and testing experience with at least two enterprise-grade security tools, such as SIEM/SOAR, EDR, vulnerability management, or secrets management platforms.
- Demonstrated ability to plan and execute complex technical Proof-of-Concepts, including test environment setup and quantitative success metrics.
- Strong analytical, written, and verbal communication skills.
- Experience in cloud or cloud-heavy companies is preferred.
- Experience in compliance-focused industries and familiarity with ISO 27001, SOC 2, or GDPR is preferred.
- Advanced certifications such as CISSP, CCSK, or AWS, GCP, or Azure Security Specialty are preferred.
- Experience contributing to security standards, open-source tools, talks, or publications is preferred.
- Applicants must be authorized to work in the country in which they apply.
Benefits
- Competitive compensation
- Career growth and learning opportunities
- Flexibility and ownership
- Collaborative and innovative culture
- Opportunity to work on impactful AI projects
- International environment and talented teams
- Applicants must be authorized to work in the country of application and provide proof of employment eligibility.
Categories
SecuritySolutions Engineering
About Nebius
The Nebius AI Cloud brings powerful full-stack infrastructure for AI developers and practitioners across startups, enterprises and science institutes to build and deploy generative AI applications and rapidly deliver scientific breakthroughs by training and running ML models within a secure, high-performance, and cost-optimized cloud environment.