Infrastructure Security Engineer
Posted 18 days ago · 0 applicants
Saving, applying or scoring takes a few seconds to set up your free account.
The role in plain words
- 4+ years of experience in network, infrastructure or cloud security
- Strong understanding of modern cloud architectures and deployment models (VMs, containers, serverless, Kubernetes)
- Solid knowledge in networks, distributed systems and Linux systems engineering
- Hands-on experience with network, VPN and Linux security
- Understanding of Identity and Access Management (IAM) systems
- Proficiency in securing AWS, GCP, or Azure environments
- Experience in conducting threat-modeling sessions
- Experience in designing, building, and maintaining Identity Aware Proxies or Bastion hosts
- Experience in translating compliance and regulation requirements into technical specifications
- Experience in exploiting vulnerabilities in Linux kernel, VMs, containers, and networks
Extracted from the job description · kept up to date automatically
Who this suits
Full job description
Original listing · kept for referenceAbout Nebius:
Nebius is leading a new era in cloud infrastructure for the global AI economy. We are building a full-stack AI cloud platform that supports developers and enterprises from data and model training through to production deployment, without the cost and complexity of building large in-house AI/ML infrastructure.
Built by engineers, for engineers. From large-scale GPU orchestration to inference optimization, we own the hard problems across compute, storage, networking and applied AI.
Listed on Nasdaq (NBIS) and headquartered in Amsterdam, we have a global footprint with R&D hubs across Europe, the UK, North America and Israel. Our team of 1,500+ includes hundreds of engineers with deep expertise across hardware, software and AI R&D.
The role
The Security Engineering Team within the Platform Security organization is responsible for the strategic selection, implementation, management, and optimization of cybersecurity tools and technologies that improve security capabilities of the organization's platform. This team is instrumental in fortifying the security posture, proactively identifying and responding to security threats, ensuring the resilience and protection of critical data, systems, and services.
We are looking for an Infrastructure Security Engineer to secure our cloud and on-premises infrastructure by implementing security controls, monitoring threats, ensuring compliance with industry standards and respond to security incidents. The ideal candidate has a strong background in cloud security, Linux hardening, and network security.
Your responsibilities will include:
• Design and implement security measures to protect cloud and on-premises infrastructure.
• Identify and remediate vulnerabilities in cloud environments, networks, and operating systems.
• Build and maintain cloud and infrastructure security tools.
• Perform security reviews, threat modeling and risk assessments of infrastructure components.
• Develop and maintain security guidelines for Network and SRE teams.
• Collaborate with Network and SRE teams to integrate security best practices into their processes and systems.
• Stay updated on the latest security threats, vulnerabilities, and mitigation techniques.
• Serve as an network and infrastructure security subject matter expert to other teams.
We expect you to have:
• 4+ years of experience in network, infrastructure or cloud security.
• Strong understanding of modern cloud architectures and deployment models (VMs, containers, serverless, Kubernetes).
• Solid knowledge in networks, distributed systems and Linux systems engineering.
• Hands-on experience with network, VPN and Linux security.
• Understanding of Identity and Access Management (IAM) systems.
• Experience with security automation tools and scripting (e.g. Python, Bash, Go, etc.) and willingness to learn Go, if necessary.
• Experience in using and accessing security of Infrastructure as Code (Terraform).
• Experience in hardening Linux based systems (apparmor, seccomp, etc.).
• Experience in hardening Kubernetes.
It will be an added bonus if you have:
• Proficiency in securing AWS, GCP, or Azure environments.
• Experience in conducting threat-modeling sessions.
• Experience in designing, building, and maintaining Identity Aware Proxies or Bastion hosts.
• Experience in translating compliance and regulation requirements into technical specifications.
• Experience in exploiting vulnerabilities in Linux kernel, VMs, containers, and networks.
• Experience in securing bare metal workloads.
• Security certifications such as OSCP or CKS.
Questions about this role
- This listing did not state a salary. We only show pay when the employer publishes it.
- 4+ years of experience in network, infrastructure or cloud security, Strong understanding of modern cloud architectures and deployment models (VMs, containers, serverless, Kubernetes), Solid knowledge in networks, distributed systems and Linux systems engineering, Hands-on experience with network, VPN and Linux security, Understanding of Identity and Access Management (IAM) systems