15 days ago
Lisbon, PortugalSenior
Responsibilities
- Conduct security reviews of application code and cloud architectures across AWS, Azure, and GCP.
- Integrate security controls, automated testing, and vulnerability management into software delivery workflows.
- Partner with Application Engineering and Cloud Platform teams on secure design patterns and secure development practices.
- Promote security culture through secure coding guidance, awareness sessions, and collaboration with the Security Champions network.
- Support security reviews of AI/ML systems, pipelines, managed AI services, and generative AI tools.
- Investigate, mitigate, and support recovery from security incidents affecting cloud infrastructure and AI/ML services.
- Monitor emerging cybersecurity threats and vulnerabilities and improve security controls accordingly.
Requirements
- Bachelor’s or advanced degree in computer science, artificial intelligence, mathematics, or a related field, or professional cybersecurity certifications in lieu of a formal degree.
- At least 5 years of experience as a cybersecurity professional with a strong background in application security and/or cloud security.
- Familiarity with application security, secure software development, CI/CD security, DevSecOps, and secure coding practices.
- Solid understanding of the OWASP Top 10 and familiarity with the OWASP LLM Top 10 is preferred.
- Knowledge of networking fundamentals including TCP/IP, LAN, WAN, and the OSI model.
- Understanding of security protocols including HTTPS, DNS, SMTP, FTP, and SSH, as well as firewalls and IDS/IPS concepts.
- Familiarity with Windows, Linux or Unix, and macOS operating systems.
- Knowledge of incident investigation and response processes, API security testing, Python, and PowerShell.
- Knowledge of securing AWS, Azure, and GCP environments; AI/ML security and managed AI services experience is preferred.
- Understanding of IAM, encryption in transit and at rest, shared responsibility models, virtual machines, and containerized environments.
- Relevant certifications such as CISSP, CEH, CCSP, or OSCP are preferred.
- Fluency in English, strong collaboration and teamwork skills, independent working ability, and effective problem-solving skills are required.
Benefits
- Competitive salary package.
- Flexible home-working policy and work/life balance.
- Collaborative, fast-paced, and driven working environment.
- Enhesa will sponsor and support the successful candidate in obtaining an AI security certification such as AAISM or CompTIA SecAI+.
