This job has expired and no longer accepts applications.

Infrastructure Security Engineer

RemoteSenior

Now we are looking for an Infrastructure Security Engineer to implement robust infrastructure security measures utilizing modern security solutions.


What You Will Be Doing:

  1. Design and implement robust infrastructure security measures utilizing modern security solutions such as SIEM platforms, host-based intrusion detection systems (HIDS), endpoint detection and response (EDR), AWS Security Hub, vulnerability scanning tools, and intrusion detection systems (IDS)
  2. Proactively research, evaluate, and integrate emerging security tools/technologies to strengthen infrastructure defences, ensuring alignment with industry best practices and evolving threat landscapes
  3. Develop, analyze, and fine-tune SIEM alert configurations to maximize detection accuracy, reduce false positives, and streamline incident response workflows
  4. Design, implement, and maintain security automation workflows utilizing Ansible for configuration management, Terraform for infrastructure-as-code, and GitLab CI/CD pipelines to enforce consistent security policies
  5. Implement and maintain Kubernetes (K8s) security protocols
  6. Execute comprehensive security assessments and audits to identify risks, perform penetration testing, and lead incident response activities including forensic analysis and post-incident reporting
  7. Continuously monitor security threats across hybrid environments, deploying preventive controls (e.g., WAF, IPS) and mitigation strategies to address vulnerabilities and active attacks
  8. Partner with DevOps and development teams to embed security controls into CI/CD pipelines, infrastructure design, and application architectures, fostering a "shift-left" security culture
  9. Oversee security posture monitoring for SaaS ecosystems, ensuring secure API configurations, identity/access governance, and compliance with organizational security standards
  10. Maintain up-to-date documentation of incident playbooks, and tooling configurations, while staying informed on emerging threats and cybersecurity innovations

About You:

  1. Proven experience in information security. Knowledge of cloud infrastructures, with a focus on AWS
  2. In-depth knowledge and hands-on experience with SIEM systems and vulnerability management tools
  3. Proficiency in using Terraform and Ansible for infrastructure automation
  4. Experience in Kubernetes security, including the use of tools for monitoring and securing containers
  5. Knowledge of DevSecOps practices, with a focus on implementing security checks in CI/CD pipelines, and the ability to integrate these practices into existing processes
  6. Proficiency in automating daily tasks and workflows, including the ability to develop custom scripts and small integrations between services using Python
  7. Proficiency in Linux operating systems at an administrator level (Windows experience a plus)

Will be a plus:

  1. Security certifications such as CKS, CKA, OSCP, AWS Security, or equivalent
  2. Experience in high-load systems and environments with stringent security requirements
  3. Understanding of cybersecurity frameworks (e.g., ISO 27001, NIST, GDPR, PCI-DSS, SOC 2, CIS Controls)

What We Offer:

  1. Fully remote and flexible working schedule, with access to a coworking space (in some locations)
  2. Working with a product that matters. Our technology helps to protect millions of users and lots of online services worldwide
  3. International project. Our team works from offices in Berlin, Limassol, London, and Miami, our customers are spread from Mexico and the USA to Hong Kong, South Korea, and Singapore
  4. 1 extra day off to celebrate your birthday
  5. 7 additional days to enjoy the Christmas & New Year holidays
  6. 7 days of sick leave (without the need for documentation)
  7. Regular, fully covered team offsites to connect and collaborate
  8. Learning opportunities and support to attend industry events with the team

Posted on: 5/20/2025

Sumsub

Sumsub

Sumsub is a leading full-cycle verification platform that enables scalable compliance.

Website

See all 4 jobs at Sumsub