Sida 1 av 1
Join Proton and build a better internet where privacy is the default At Proton, we believe that privacy is a fundamental human right and the cornerstone of democracy. Since our inception in 2014, founded by a team of scientists from CERN, we have dedicated ourselves to providing free and open-source technology to millions worldwide, ensuring access to privacy, security, and freedom online. Our journey began with Proton Mail, the largest secure email service globally, and has since expanded to include Proton VPN, Proton Calendar, Proton Drive, and Proton Pass. These tools empower individuals and organizations to take control of their personal data, break away from Big Tech’s invasive practices, and defeat censorship. Our work impacts hundreds of millions of lives, from activists on the front lines defending freedom to leaders in governments protecting sensitive information. In some cases, Proton’s services have even been instrumental in saving lives by enabling secure and private communications in high-risk situations. Proton is a profitable company that does not rely upon VC funding, supporting over 100 million user accounts with a growing team of over 500 people from over 50 different countries, from the world's top companies and universities. We value intelligence, learning potential, and ambition in our hiring process. Adaptability is key as we navigate uncharted territories and redefine how business is conducted online. Hiring at Proton is highly selective, with less than 1% of candidates hired. We believe smaller teams of exceptional talent will always prevail over larger teams with lower talent density. You will have the opportunity work with many of the world's top minds in their fields, ranging from former international math and science olympiad winners to chess champions. We have a global mindset and big ambitions but remain a start-up at heart. We value empowerment and flexibility and keep our structure flat to keep moving fast and avoid unnecessary politics. Tired of blending into the crowd? Join us and do work you can truly be proud of. Check our open-source projects here! The Team: We’re looking for a visionary security professional who combines deep expertise with genuine passion; to drive meaningful change across our growing organisation. This role sits at the heart of what Proton stands for and fulfills the trust our users place in us every day. You’ll be encouraged to challenge the status quo, innovate efficiently, and collaborate daily with some of the brightest minds who truly care about protecting privacy and building secure products. Tech Stack and Tools: * Proton currently offers the following products: Mail, Calendar, VPN, Pass, Drive, each of which is available on multiple platforms, including Windows, MacOS, iOS and Linux. * Our infrastructure is entirely composed of Linux machines. * Wherever we can, we make use of open-source technologies. About the role: You will be leading our efforts to ensure that Proton's applications are secure What you will be doing: * Set the north star – Define a compelling vision and roadmap for product security that inspires the whole organisation. * Build the function – Find the best people to work with you and build your dream product security team * Be the go-to hero-in – Serve as go-to person for product security across the entire company, influencing strategy, design, and delivery. * Architect secure products – Partner with product managers, designers, and developers to embed security from day one, turning risk-aware thinking into a habit. * Create playbooks & policies – Design clear, developer-friendly security guidelines and automated workflows that keep code secure without killing velocity. * Empower engineers – Build the tools, processes, and culture that let developers ship fast and safe. * Lead the bug bounty program – Turn the global security community into an extension of our own team. * Influence roadmaps – Sit at the table with product leads, shaping priorities and ensuring security considerations are baked into every release. What we are looking for: * 5+ years in application security (SaaS or privacy-focused) * Proven record leading security projects from concept to production * Leadership style that blends constructive challenge with collaboration * Hands-on experience with code reviews, penetration testing, or security tooling * Track record defining and executing remediation plans * Ability to translate technical detail into clear, actionable guidance for any audience. * Quick grasp of large, complex systems Nice to have: * Experience with B2B product security features * Knowledge of infrastructure security (hardware, networking, OS, file systems). * Experience with cryptographic protocols, or prior work at privacy-centric organizations. * Experience with utilizing open-source code at scale Even if you don’t meet all the requirements listed above, but feel you could still be a great fit, please still apply. What We Offer * Office First: Collaboration is easier and more effective in person, which is why we have offices in Geneva, Zurich, Prague, Barcelona, Paris, London, Vilnius, Skopje, and Taipei. You can also enjoy working from home up to 30% of the time, while enjoying great company during our three core days in the office. Depending on the role, fully remote positions may also be available. * Technology: We provide all the devices and software you need to excel in your role, ensuring you have the best tools at your disposal to achieve your goals. * Food: Lunch and snacks are provided by Proton every day at our offices. * Transport: We will always support our employees with transport costs through subsidizing public transport, bike allowances, or parking spaces based on your office location. * Stock Options: At Proton, we are all owners of the company and you get stock options when you join us. * Flexible Working: You can define your own working hours as long as it works with team meetings. * Learning and Development: We are committed to your professional growth. Proton offers various learning opportunities, including training programs, conferences and events, and continual learning. * Employee Benefits: Comprehensive health insurance plans, competitive retirement savings options, generous vacation and leave policies, and wellness programs. * Work that Matters: Proton is a community-first organization, started with the support of a crowdfunding campaign and built with community input. To this day, Proton’s only source of revenue is user subscriptions. Over 100 million people trust and support Proton, and we put our users and community first in everything we do. Read more about our impact here. Our Commitment to Diversity and Inclusion At Proton, we believe diversity drives innovation and strengthens our mission to provide privacy as a default for all. We are committed to fostering an inclusive environment where all individuals, regardless of race, ethnicity, gender, age, sexual orientation, physical ability, or socio-economic background, feel valued and empowered. We strive to create equal opportunities, promote open dialogue, and support continuous learning to ensure every voice is heard and respected. If you need any extra support or reasonable adjustments during the hiring process, please let your talent partner know. Candidate Privacy Notice When you apply for a position, refer a candidate, or are considered for a role at Proton Technologies AG (Proton, we, us, or our), your information is stored in Greenhouse, in accordance with their Service Privacy Policy. This information is used to evaluate your suitability for the posted position. We also retain this information for consideration for future roles that you may apply for or that we believe may align with your background and skills. If we no longer have a legitimate business need to process your information, we will either delete or anonymize it. Should you have any inquiries about how we use or manage your information, or if you wish to access, correct, or delete your data, please contact our privacy team at careers@proton.ch. Proton does not accept unsolicited resumes from any sources other than directly from candidates. We will not pay a fee for any placement resulting from an unsolicited offer, even if the candidate is subsequently hired by Proton. To learn more about our privacy policy, please visit our privacy policy page. #LI-Onsite
JOB SUMMARY ⚠️ Important: This internship requires an active internship agreement ("convenio de prácticas") with a university or educational institution. Applications that do not meet this requirement cannot be considered. Sales Layer is a VC-backed (Series B) SaaS software company that automates the complexity around Product Information Management (PIM). With steady YoY growth, we have seen long-term clients like Tupperware, Acciona, Titanlux, Avnet and Teka consistently trusting our platform. It’s an exciting time to join the company, Sales Layer has just been named G2’s leader for Commerce Products in the last Software Awards, placing us in the top 1% of the list. Founded in 2013, Sales Layer has a meaningful culture based on personal and team growth, flexibility, empathy and diversity with over 17 nationalities. Brief description of the position: The IT Support / Sysadmin Intern will support the day-to-day IT operations of the company, helping employees with technical issues related to their computers, hardware, software, access, connectivity and internal tools. The role will involve managing IT support tickets through Jira, assisting with the setup and maintenance of employee devices, troubleshooting performance issues, documenting recurring problems and supporting the IT team in keeping our internal systems running smoothly. This internship is designed for someone who wants to gain practical experience in IT support, workplace technology, device management and basic systems administration within a SaaS company. WHAT WILL YOU BE DOING? IT Ticket Management: Receive, classify, follow up and resolve internal IT support requests through Jira, ensuring clear communication with employees and proper documentation of each case. Employee Technical Support: Support employees with day-to-day technical issues related to laptops, monitors, peripherals, operating systems, applications, internet connectivity, VPN, access permissions and internal tools. N1 Security Response: Serve as the primary point of contact for internal security events, managing the initial intake and response for potential threats. Key responsibilities include: * Receiving, triaging and investigating phishing reports submitted by employees. * Documenting and escalating confirmed security threats to the specialized security team. * Supporting incident tracking and internal communication during active security events. Endpoint and Server Hardening: Support the IT department in the implementation and maintenance of security hardening protocols for both employee workstations and internal infrastructure servers, with a focus on: * Configuring OS-level hardening for Windows and macOS endpoints. * Reviewing and enforcing established security baselines, such as CIS Benchmarks. * Securing internal IT servers and core services. * Maintaining documentation on applied configurations and any identified deviations. Device Setup and Maintenance: Assist with the preparation, configuration and maintenance of employee computers, including software installation, updates, basic security settings and hardware checks. Hardware Troubleshooting: Help diagnose and resolve issues related to laptop performance, battery problems, overheating, slow devices, screens, keyboards, docking stations, headsets and other equipment. Onboarding and Offboarding Support: Support the IT setup for new joiners, including preparing devices, configuring accounts and ensuring they have access to the tools they need. Assist with device recovery and access removal during offboarding processes. Inventory and Asset Management: Help keep track of IT equipment, devices, accessories and assignments, ensuring records are updated and equipment is properly managed. Documentation: Create and update internal guides, troubleshooting steps and procedures for recurring IT issues and common employee requests. Collaboration with Internal Teams: Work closely with People, Tech and other departments to support employee needs and improve internal IT processes. REQUIREMENTS Foundational IT Knowledge: Basic understanding of computers, operating systems, hardware, software installation and common troubleshooting steps. Security-Aware Mindset: Strong understanding of the importance of security in day-to-day IT work. The candidate must apply security best practices as a natural part of their tasks — from managing access permissions to handling onboarding and offboarding processes — without cutting corners or bypassing established controls. User Support Mindset: Willingness to help employees, communicate clearly and provide practical solutions to technical problems. Attention to Detail: Rigorous and organized approach when handling devices, access, tickets, documentation and IT inventory. Problem-solving Skills: Ability to investigate technical issues, identify possible causes and escalate when needed. Communication Skills: Ability to explain technical topics clearly to both technical and non-technical users. Organization: Ability to manage several requests at the same time, prioritize issues and keep ticket information updated. Desirable: * Basic knowledge of Windows and macOS environments. * Basic understanding of hardware components and common laptop performance issues. * Experience or familiarity with ticketing tools such as Jira, Zendesk or similar. * Basic knowledge of Google Workspace administration. * Basic knowledge of user access management and permissions. * Basic networking knowledge, such as WiFi, VPN, DNS, IP or connectivity troubleshooting. * Basic knowledge of endpoint and server hardening practices (e.g. CIS Benchmarks, OS hardening guides). * Familiarity with common phishing patterns and N1 security response procedures. * Interest in cybersecurity, device management, EDR tools and IT operations. * Basic scripting knowledge, such as Bash or PowerShell, would be a plus. * Familiarity with common phishing patterns and N1 security response procedures. Educational Background: Currently pursuing a degree or vocational training in Computer Science, Systems Administration, IT, Telecommunications, Cybersecurity or related technical fields. WHAT WE OFFER * Opportunity to gain hands-on experience in IT support, internal systems administration and cybersecurity within an established SaaS company. * Mentorship and guidance from experienced professionals. * Practical exposure to employee support, device management, troubleshooting, endpoint hardening , IT documentation and internal operations. * Flexible working hours and the possibility of remote work. * 30h to 35h per week. * 7€/hour.
RDQ327R181 While candidates in the listed location(s) are encouraged for this role, candidates in other US locations will be considered. The Security Field Engineering team helps data teams solve the world's toughest problems by empowering customers to understand the security of the Databricks platform and by helping account teams address questions that come up during security reviews. Reporting to the Head of Security Field Engineering, you will meet with customers to answer questions, train other Databricks team members, build customer-facing content such as slide decks, white papers, and maybe write code that customers can use. Our team prioritizes scale -- we'd rather spend an hour building a doc than be in ten hours of meetings, rather deliver agent skills and knowledge base articles than be the rock star answering all the questions. If you want high growth, autonomy, and to touch all elements of security, look no further. The impact you will have: * You will be viewed as a security expert as you work with field teams and customers to understand architectures, address concerns and handle compliance questions * Your contributions may come in multiple ways, including customer interactions, scalable slides or white paper creation, internal enablement, process improvement, automation, or technical leadership—no one excels in every area, but all are valuable * When you’re on the call, you will be directly appreciated. When you’re not, your impact will be felt across the company through the enablement, collateral, knowledge management, and systems you build * You might not come from an assurance team, but you’ll come up to speed with common security and compliance regimes to save customers hours of effort and months of uncertainty * You will identify customer pain points and work with product management and product marketing will improve our product and our messaging * You will contribute to internal-facing services and automation that make life easier for our field staff and our customers. * You are probably already great at AI productivity, but you’ll sit in a group focused on becoming legendary. What we look for: * 6 + years of technical pre-sales or post-sales experience where you're the person in the room explaining the hard concepts * Equal love of understanding complex security principles and architectures, and of communicating them simply * Real-world experience in multiple security domains such as IaaS+PaaS+SaaS, network and endpoint security, web applications, vulnerability management, identity management, and SIEM, though not all are needed * You've done some scripting or programming, and are excited to use AI relentlessly to scale our impact across many thousands of customers and employees. * Understanding of the Databricks platform is a strong plus. Pay Range Transparency Databricks is committed to fair and equitable compensation practices. The pay range(s) for this role is listed below and represents the expected base salary range for non-commissionable roles or on-target earnings for commissionable roles. Actual compensation packages are based on several factors that are unique to each candidate, including but not limited to job-related skills, depth of experience, relevant certifications and training, and specific work location. Based on the factors above, Databricks anticipated utilizing the full width of the range. The total compensation package for this position may also include eligibility for annual performance bonus, equity, and the benefits listed above. For more information regarding which range your location is in visit our page here. Zone 1 Pay Range $194,800—$267,850 USD Zone 2 Pay Range $175,400—$241,100 USD Zone 3 Pay Range $165,600—$227,700 USD Zone 4 Pay Range $155,800—$214,300 USD About Databricks Databricks is the data and AI company. More than 10,000 organizations worldwide — including Comcast, Condé Nast, Grammarly, and over 50% of the Fortune 500 — rely on the Databricks Data Intelligence Platform to unify and democratize data, analytics and AI. Databricks is headquartered in San Francisco, with offices around the globe and was founded by the original creators of Lakehouse, Apache Spark™, Delta Lake and MLflow. To learn more, follow Databricks on Twitter, LinkedIn and Facebook. Benefits At Databricks, we strive to provide comprehensive benefits and perks that meet the needs of all of our employees. For specific details on the benefits offered in your region click here. Our Commitment to Diversity and Inclusion At Databricks, we are committed to fostering a diverse and inclusive culture where everyone can excel. We take great care to ensure that our hiring practices are inclusive and meet equal employment opportunity standards. Individuals looking for employment at Databricks are considered without regard to age, color, disability, ethnicity, family or marital status, gender identity or expression, language, national origin, physical and mental ability, political affiliation, race, religion, sexual orientation, socio-economic status, veteran status, and other protected characteristics. Compliance If access to export-controlled technology or source code is required for performance of job duties, it is within Employer's discretion whether to apply for a U.S. government license for such positions, and Employer may decline to proceed with an applicant on this basis alone.
RDQ327R177 While candidates in the listed location(s) are encouraged for this role, candidates in other US locations will be considered. The Security Field Engineering team helps data teams solve the world's toughest problems by empowering customers to understand the security of the Databricks platform and by helping account teams address questions that come up during security reviews. Reporting to the Head of Security Field Engineering, you will meet with customers to answer questions, train other Databricks team members, build customer-facing content such as slide decks, white papers, and maybe write code that customers can use. Our team prioritizes scale -- we'd rather spend an hour building a doc than be in ten hours of meetings, rather deliver agent skills and knowledge base articles than be the rock star answering all the questions. If you want high growth, autonomy, and to touch all elements of security, look no further. The impact you will have: * You will be viewed as a security expert as you work with field teams and customers to understand architectures, address concerns and handle compliance questions * Your contributions may come in multiple ways, including customer interactions, scalable slides or white paper creation, internal enablement, process improvement, automation, or technical leadership—no one excels in every area, but all are valuable * When you’re on the call, you will be directly appreciated. When you’re not, your impact will be felt across the company through the enablement, collateral, knowledge management, and systems you build * You might not come from an assurance team, but you’ll come up to speed with common security and compliance regimes to save customers hours of effort and months of uncertainty * You will identify customer pain points and work with product management and product marketing will improve our product and our messaging * You will contribute to internal-facing services and automation that make life easier for our field staff and our customers. * You are probably already great at AI productivity, but you’ll sit in a group focused on becoming legendary. What we look for: * 7+ years of technical pre-sales or post-sales experience where you're the person in the room explaining the hard concepts * Equal love of understanding complex security principles and architectures, and of communicating them simply * Real-world experience in multiple security domains such as IaaS+PaaS+SaaS, network and endpoint security, web applications, vulnerability management, identity management, and SIEM, though not all are needed * You've done some scripting or programming, and are excited to use AI relentlessly to scale our impact across many thousands of customers and employees. * Understanding of the Databricks platform is a strong plus. Pay Range Transparency Databricks is committed to fair and equitable compensation practices. The pay range(s) for this role is listed below and represents the expected base salary range for non-commissionable roles or on-target earnings for commissionable roles. Actual compensation packages are based on several factors that are unique to each candidate, including but not limited to job-related skills, depth of experience, relevant certifications and training, and specific work location. Based on the factors above, Databricks anticipated utilizing the full width of the range. The total compensation package for this position may also include eligibility for annual performance bonus, equity, and the benefits listed above. For more information regarding which range your location is in visit our page here. Zone 1 Pay Range $270,300—$371,700 USD Zone 2 Pay Range $243,300—$334,500 USD Zone 3 Pay Range $229,800—$315,900 USD Zone 4 Pay Range $216,200—$297,350 USD About Databricks Databricks is the data and AI company. More than 10,000 organizations worldwide — including Comcast, Condé Nast, Grammarly, and over 50% of the Fortune 500 — rely on the Databricks Data Intelligence Platform to unify and democratize data, analytics and AI. Databricks is headquartered in San Francisco, with offices around the globe and was founded by the original creators of Lakehouse, Apache Spark™, Delta Lake and MLflow. To learn more, follow Databricks on Twitter, LinkedIn and Facebook. Benefits At Databricks, we strive to provide comprehensive benefits and perks that meet the needs of all of our employees. For specific details on the benefits offered in your region click here. Our Commitment to Diversity and Inclusion At Databricks, we are committed to fostering a diverse and inclusive culture where everyone can excel. We take great care to ensure that our hiring practices are inclusive and meet equal employment opportunity standards. Individuals looking for employment at Databricks are considered without regard to age, color, disability, ethnicity, family or marital status, gender identity or expression, language, national origin, physical and mental ability, political affiliation, race, religion, sexual orientation, socio-economic status, veteran status, and other protected characteristics. Compliance If access to export-controlled technology or source code is required for performance of job duties, it is within Employer's discretion whether to apply for a U.S. government license for such positions, and Employer may decline to proceed with an applicant on this basis alone.
RDQ227R1176 While candidates in the listed location(s) are encouraged for this role, candidates in other locations (US based) will be considered. Mission Databricks is hiring an L6 Enterprise Security Engineer to expand Enterprise Security coverage across a rapidly evolving enterprise environment. This role will focus on securing enterprise applications, cross-system integrations, data flows, and emerging AI-adjacent use cases. The scope includes modern access patterns such as MCP, integration, and trust boundary security, and broader security engineering support across enterprise platforms and services. This engineer will help identify risk, define practical security requirements, and improve security outcomes through strong technical judgment and cross-functional partnership. Opportunity This role sits at the intersection of enterprise architecture, security engineering, and business enablement. The engineer will review new technologies, integrations, and workflows with an emphasis on secure design, authentication and authorization, data handling, logging, third-party connectivity, API and token security, and operational resilience. The role partners closely with IT, Engineering, Legal, Privacy, Procurement, and business stakeholders to surface risk early, set clear requirements, and support scalable adoption of secure patterns. This is a strong opportunity to help shape how Enterprise Security supports SaaS, internal platforms, automation, and AI-connected systems as the environment continues to grow in complexity. Requirements: * 8+ years of experience in security engineering, enterprise security, application security, cloud security, or a related field. * Experience conducting security design or architecture reviews for enterprise applications, SaaS platforms, integrations, or internally developed systems. * Strong understanding of authentication, authorization, SSO, federation, SCIM, API security, token handling, secrets management, and least privilege design * Experience assessing data flows, third-party integrations, trust boundaries, logging and monitoring, and security controls across interconnected systems. * Ability to evaluate risk in modern enterprise environments, including automation platforms, AI-adjacent workflows, and emerging integration patterns such as MCP. * Strong written and verbal communication skills, including the ability to translate technical risk into clear requirements and actionable guidance. * Experience driving security outcomes through engineering judgment, influence, and scalable process improvement. * Familiarity with cloud platforms, enterprise identity systems, and core control domains such as audit logging, encryption, access control, data retention, and incident response. Outcomes * OUTCOME 1: Strengthen security practices across enterprise application and integration reviews by identifying key risks early, improving requirement quality, and helping teams address security issues earlier in the lifecycle. * OUTCOME 2: Strengthen Enterprise Security’s capability to assess and guide AI-adjacent security, MCP and integration security, and cross-system data flow risk, while improving the consistency and scale of security reviews. * OUTCOME 3: Demonstrate the ability to build automation and agent capabilities that help secure systems from the start by allowing IT workflows, internal bots, and automation platforms to call Enterprise Security guidance directly for risk triage, control validation, and escalation decisions. This should reduce dependency on manual review and embed security guidance earlier in the system lifecycle. Pay Range Transparency Databricks is committed to fair and equitable compensation practices. The pay range(s) for this role is listed below and represents the expected base salary range for non-commissionable roles or on-target earnings for commissionable roles. Actual compensation packages are based on several factors that are unique to each candidate, including but not limited to job-related skills, depth of experience, relevant certifications and training, and specific work location. Based on the factors above, Databricks anticipated utilizing the full width of the range. The total compensation package for this position may also include eligibility for annual performance bonus, equity, and the benefits listed above. For more information regarding which range your location is in visit our page here. Zone 1 Pay Range $194,800—$267,850 USD Zone 2 Pay Range $175,400—$241,100 USD Zone 3 Pay Range $165,600—$227,700 USD Zone 4 Pay Range $155,800—$214,300 USD About Databricks Databricks is the data and AI company. More than 10,000 organizations worldwide — including Comcast, Condé Nast, Grammarly, and over 50% of the Fortune 500 — rely on the Databricks Data Intelligence Platform to unify and democratize data, analytics and AI. Databricks is headquartered in San Francisco, with offices around the globe and was founded by the original creators of Lakehouse, Apache Spark™, Delta Lake and MLflow. To learn more, follow Databricks on Twitter, LinkedIn and Facebook. Benefits At Databricks, we strive to provide comprehensive benefits and perks that meet the needs of all of our employees. For specific details on the benefits offered in your region click here. Our Commitment to Diversity and Inclusion At Databricks, we are committed to fostering a diverse and inclusive culture where everyone can excel. We take great care to ensure that our hiring practices are inclusive and meet equal employment opportunity standards. Individuals looking for employment at Databricks are considered without regard to age, color, disability, ethnicity, family or marital status, gender identity or expression, language, national origin, physical and mental ability, political affiliation, race, religion, sexual orientation, socio-economic status, veteran status, and other protected characteristics. Compliance If access to export-controlled technology or source code is required for performance of job duties, it is within Employer's discretion whether to apply for a U.S. government license for such positions, and Employer may decline to proceed with an applicant on this basis alone.
RDQ326R24 - This role can be based remotely anywhere in the United States. The Product Security Team's mission is to Left-shift SDLC (Security Development Lifecycle) processes for ALL code written in Databricks (for Customer Use or Supporting Customer internally) to reduce the likelihood of introducing new vulnerabilities in production and minimize the count and effect of externally identified vulnerabilities on Databricks Services. You will be an individual contributor on the product security team at Databricks, managing SDLC functions for features and products within Databricks. This would include, but is not limited to, security design reviews, threat models, manual code reviews, exploit writing and exploit chain creation. You will also support IR and VRP programs when there is a vulnerability report or a product security incident. You will work with a global team, spread across various locations in the US and EMEA. The impact you will have: * Full SDLC Support for new product features being developed in ENG and non-ENG teams. This would include Threat Modeling, Design Review, Manual Code Review, Exploit writing, etc. * Work with other security teams to provide support for Incident Response and Vulnerability Response as and when needed. * Work with the results of SAST tools to help evaluate and identify false positives and file defects for real issues. * Work on DAST tools and related automation for auto-assessment and defect filing. * Maintain the automation framework and add new features as needed to support different security compliances that Databricks may want to get into – FedRamp, PCI, HIPPA, etc. * Prioritize security from a risk management perspective, rather than an absolute textbook version. * Help develop and implement security processes to improve the overall productivity of the product security organization and the SDLC process in general What we look for: * Experience with the Threat Modeling process and ability to find design problems based on a block diagram of data flow. * Understanding on at least two of the following domains - Web Security, Cloud Security, Systems Security and Applied Cryptography. * Proficient with one or more of Programming languages ( Python/Java/Scala/JavaScript) and ability to read code to identify security defects. * Skilled in scripting and automation on exploits * Fuzzing skills are good to have. * Exploit writing skills is a positive and greatly required. Pay Range Transparency Databricks is committed to fair and equitable compensation practices. The pay range(s) for this role is listed below and represents the expected base salary range for non-commissionable roles or on-target earnings for commissionable roles. Actual compensation packages are based on several factors that are unique to each candidate, including but not limited to job-related skills, depth of experience, relevant certifications and training, and specific work location. Based on the factors above, Databricks anticipated utilizing the full width of the range. The total compensation package for this position may also include eligibility for annual performance bonus, equity, and the benefits listed above. For more information regarding which range your location is in visit our page here. Zone 1 Pay Range $167,100—$229,800 USD Zone 2 Pay Range $150,400—$206,800 USD Zone 3 Pay Range $142,100—$195,350 USD Zone 4 Pay Range $133,700—$183,800 USD About Databricks Databricks is the data and AI company. More than 10,000 organizations worldwide — including Comcast, Condé Nast, Grammarly, and over 50% of the Fortune 500 — rely on the Databricks Data Intelligence Platform to unify and democratize data, analytics and AI. Databricks is headquartered in San Francisco, with offices around the globe and was founded by the original creators of Lakehouse, Apache Spark™, Delta Lake and MLflow. To learn more, follow Databricks on Twitter, LinkedIn and Facebook. Benefits At Databricks, we strive to provide comprehensive benefits and perks that meet the needs of all of our employees. For specific details on the benefits offered in your region click here. Our Commitment to Diversity and Inclusion At Databricks, we are committed to fostering a diverse and inclusive culture where everyone can excel. We take great care to ensure that our hiring practices are inclusive and meet equal employment opportunity standards. Individuals looking for employment at Databricks are considered without regard to age, color, disability, ethnicity, family or marital status, gender identity or expression, language, national origin, physical and mental ability, political affiliation, race, religion, sexual orientation, socio-economic status, veteran status, and other protected characteristics. Compliance If access to export-controlled technology or source code is required for performance of job duties, it is within Employer's discretion whether to apply for a U.S. government license for such positions, and Employer may decline to proceed with an applicant on this basis alone.
RDQ426R108 This role is open to candidates in the US (any location) ABOUT THE TEAM The AI Security team at Databricks sits at the frontier of securing the AI/ML services in the Databricks platform. As we ship AI capabilities at the leading edge of the industry, including Agent Bricks, the Genie suite, AI Model Serving, MLflow, and Unity AI Gateway, the AI Security team ensures these systems are designed, built, and operated securely. Our work also extends to securing our own usage of AI: building the right guardrails that enable Databricks employees to innovate and deliver securely. The team combines offensive security depth with AI/ML engineering knowledge to identify novel threats, build scalable defenses, and influence how AI products are architected from the ground up. We lead AI Red Team exercises, build security tooling for AI workloads, and partner directly with AI Product teams to embed security into the development lifecycle. --- THE ROLE As a Staff Security Software Engineer on the AI Security team, you are a senior technical leader who sets the standards for how Databricks secures its AI and ML capabilities. You combine deep offensive security expertise with practical knowledge of AI/ML systems to identify and drive resolution of the most significant security risks in Databricks' AI platform. You lead AI red team engagements against production AI systems, conduct security architecture reviews for complex, multi-system AI features, and build the tooling and frameworks that scale the team's impact. You are a subject matter expert in at least two AI security domains and you operate with significant autonomy- driving cross-team remediation, setting technical standards, and mentoring teammates in both offensive techniques and secure AI design. --- THE IMPACT YOU WILL HAVE AI RED TEAM & ADVERSARIAL TESTING * Lead AI red team engagements against Databricks' production AI systems, including Foundation Model APIs, Genie and natural language query systems, Model Serving infrastructure, MCP-connected agents, and RAG pipelines * Design and execute adversarial attack scenarios: prompt injection, jailbreaking, memory poisoning, cross-tenant data leakage in multi-tenant serving, and sandbox bypasses * Develop proof-of-concept exploits for AI-specific vulnerability classes and perform variant analysis to identify the full scope of exposure across the AI platform * Contribute to the evolution of the Databricks AI Security Framework (DASF), maintaining and extending the risk taxonomy, control library, and testing methodology as AI capabilities evolve AI PRODUCT SECURITY & ARCHITECTURE REVIEWS * Lead comprehensive security architecture reviews for complex AI features: threat modeling agentic workflows, RAG pipelines, multi-model serving chains, and MCP-based tool integrations * Partner directly with AI and ML engineering teams to identify security risks early in the design process and define practical, scalable controls * Assess and drive resolution of cross-cutting AI security risks: Unity Catalog permission enforcement in AI contexts, inference data isolation, model artifact integrity, fine-tuning pipeline security, and external model API governance via AI Gateway * Identify recurring security patterns across AI features; advocate for class-level architectural fixes rather than feature-by-feature point solutions AI SECURITY TOOLING & AUTOMATION * Design and build automated AI security testing tooling, including adversarial prompt libraries, agent behavior analysis frameworks, and continuous testing harnesses * Build AI-assisted automation that scales security reviews, threat modeling, and vulnerability triage for AI features * Develop and maintain security guardrails and enforcement mechanisms: LLM-as-judge review, prompt delimiting, output validation, rate limiting, and audit logging CROSS-TEAM REMEDIATION & STANDARDS * Set technical standards for how AI security risks are assessed, prioritized, and remediated across the engineering organization * Drive cross-team remediation for significant AI security findings, defining fix requirements, validating patches, and ensuring regression coverage in CI/CD pipelines * Produce high-quality threat models, security advisories, and post-mortems that inform organizational risk decisions for AI products MENTORSHIP & COMMUNITY * Mentor engineers on the AI Security team in adversarial ML techniques, AI threat modeling, and security tooling development * Contribute to internal knowledge assets, including training materials, design patterns, and threat model templates, that raise AI security fluency across the engineering organization * Represent Databricks in the external AI security community through publications, conference talks, or open-source contributions --- WHAT WE LOOK FOR * 7–10 years of combined experience in offensive security, AI/ML security research, or product security engineering, with demonstrated leadership in securing complex systems * Subject matter expert in at least two of the following AI security domains: - LLM and generative AI security (prompt injection, jailbreaking, training data extraction) - AI agent and orchestration security (MCP, memory sharing, multi-agent systems) - ML infrastructure and serving security (model serving multi-tenancy risks, training infrastructure security) - AI data governance and privacy (fine-grained access control, data residency, inference data isolation) * Demonstrated ability to design and execute adversarial attacks against production AI systems * Deep understanding of AI/ML platform architecture- how models are trained, served, and integrated, and where the trust boundaries between components lie * Expert in at least one major cloud platform (AWS, Azure, GCP) and its AI/ML security model * Proficient in Python; able to read and analyze ML model code, training scripts, and API serving code; working knowledge of at least one additional language (Go, Java, Scala, Rust) * Track record of driving cross-team AI security improvements and influencing product architecture decisions * Experience building automated security tooling for AI systems * Strong communicator- translates AI security risks into actionable guidance for engineers, product managers, and leadership * Pragmatic approach to risk- distinguishes real-world exploitable AI risk from theoretical concerns NICE TO HAVE * Published research on AI/ML security topics or experience presenting at AI security venues (DEF CON AI Village, NeurIPS workshops, Black Hat) * Experience with OWASP Top 10 for LLMs, MITRE ATLAS, or similar AI security frameworks * Familiarity with MLflow, Unity Catalog, Delta Lake, or Databricks platform internals * OSCP or equivalent offensive security certification * Academic or research background in machine learning, adversarial ML, or AI safety --- WHY DATABRICKS On the AI Security team, you'll work on a class of security problem that didn't exist five years ago, and that the industry is still figuring out. You'll run red team engagements against a live AI platform used by over 12,000 organizations, build tooling that has no precedent to copy, and drive security decisions that shape how AI products are built across the company. The problems are novel, the stakes are real, and the team working on them is exceptional. About Databricks Databricks is the data and AI company. More than 10,000 organizations worldwide — including Comcast, Condé Nast, Grammarly, and over 50% of the Fortune 500 — rely on the Databricks Data Intelligence Platform to unify and democratize data, analytics and AI. Databricks is headquartered in San Francisco, with offices around the globe and was founded by the original creators of Lakehouse, Apache Spark™, Delta Lake and MLflow. To learn more, follow Databricks on Twitter, LinkedIn and Facebook. Benefits At Databricks, we strive to provide comprehensive benefits and perks that meet the needs of all of our employees. For specific details on the benefits offered in your region click here. Our Commitment to Diversity and Inclusion At Databricks, we are committed to fostering a diverse and inclusive culture where everyone can excel. We take great care to ensure that our hiring practices are inclusive and meet equal employment opportunity standards. Individuals looking for employment at Databricks are considered without regard to age, color, disability, ethnicity, family or marital status, gender identity or expression, language, national origin, physical and mental ability, political affiliation, race, religion, sexual orientation, socio-economic status, veteran status, and other protected characteristics. Compliance If access to export-controlled technology or source code is required for performance of job duties, it is within Employer's discretion whether to apply for a U.S. government license for such positions, and Employer may decline to proceed with an applicant on this basis alone.
RDQ226R605; This role can be based remotely anywhere in the United States. The AI Security Engineering team at Databricks builds the security tools, detection systems, and engineering infrastructure that protect Databricks' AI platform and the AI capabilities our customers depend on. We are the builders — designing and shipping security tooling that scales AI threat detection, automates security assessment of AI systems, and gives Databricks and its customers high-confidence assurance that AI capabilities are operating securely. We sit at the intersection of security engineering and AI systems: we understand how AI systems work, how they can be attacked, and how to build engineering solutions that keep them safe at scale. --- As a Staff Security Software Engineer on the AI Security Engineering team, you set the technical direction for AI security engineering at Databricks — defining the architecture, standards, and methodology by which the team builds tooling for AI security assessment, detection, and defense. You are recognized across the Security organization as the authority on AI security engineering: the person engineering leadership consults when AI security tooling decisions have organizational-scale consequences. You operate across team and organizational boundaries — aligning the AI Security Engineering team's technical roadmap with the detection, GRC, and product security teams that depend on its outputs, and driving AI security engineering standards that the whole security organization can adopt. --- THE IMPACT YOU WILL HAVE AI SECURITY ENGINEERING ARCHITECTURE * Define the architecture and technical strategy for Databricks' AI security tooling platform — spanning adversarial testing, behavioral monitoring, threat detection, and automated assessment of AI components * Set engineering standards for the team: design review processes, reliability requirements, observability practices, security properties of the tooling itself, and integration patterns with downstream consumers * Own the technical decisions on how the team's systems scale to cover Databricks' growing AI surface, how they integrate with product security and detection pipelines, and what tooling capabilities to build vs. buy vs. open-source AI THREAT DETECTION AT SCALE * Lead the design and development of AI platform capabilities that operate at production scale — behavioral analysis of usage, detection of prompt injection attempts, anomaly detection on agentic workflow behavior * Define the methodology for AI security assessment: how Databricks systematically evaluates new AI capabilities against a comprehensive threat model before deployment and monitors them continuously after * Drive technical strategy for AI red-teaming tooling: automated adversarial testing platforms that simulate how real attackers attempt to abuse Databricks' AI systems CROSS-ORGANIZATIONAL TECHNICAL LEADERSHIP * Serve as the technical authority on AI security engineering for the Product Security, SITH, IR, and ConMon teams — ensuring that AI security tooling outputs integrate cleanly into their workflows and meet their detection and assessment needs * Represent AI Security Engineering in architecture reviews, platform security decisions, and cross-team technical discussions where AI security engineering considerations are material * Establish AI security engineering standards that teams building AI-connected systems can adopt — reusable patterns for securing AI components in the Databricks platform MENTORSHIP & TEAM CAPABILITY * Mentor senior and mid-level engineers on AI security engineering architecture, adversarial threat modeling, and technical leadership * Lead design reviews, define team engineering practices, and drive continuous improvement in the quality and reliability of AI security tooling --- WHAT WE LOOK FOR * 7–10 years of experience in security software engineering, security engineering, or a closely related discipline; with demonstrated technical leadership of security tooling programs and organizational-level impact * Expert Python engineering: designs and delivers production systems at scale; understands observability, reliability engineering, and how security tooling integrates into larger security operations ecosystems * Deep expertise in AI/ML security — adversarial ML, prompt injection, model security, agentic framework trust boundaries — at both a research-informed and engineering-practical level * Experience designing security tooling architectures that span multiple teams and systems — not just building features, but defining how the platform is structured, scaled, and maintained * Strong technical communicator: can align engineering and security leadership on architectural direction and drive cross-team adoption of standards and patterns * Track record of shipping high-quality security tooling that other teams depend on in production NICE TO HAVE * Research contributions or deep familiarity with adversarial ML, AI safety, or AI red-teaming methodology * Experience with MLOps platforms, AI serving infrastructure, or AI platform security at cloud scale * Familiarity with AI governance standards (NIST AI RMF, ISO/IEC 42001, EU AI Act technical provisions) as they apply to security engineering * Open-source contributions or publications in AI security, adversarial ML, or security tooling Pay Range Transparency Databricks is committed to fair and equitable compensation practices. The pay range(s) for this role is listed below and represents the expected base salary range for non-commissionable roles or on-target earnings for commissionable roles. Actual compensation packages are based on several factors that are unique to each candidate, including but not limited to job-related skills, depth of experience, relevant certifications and training, and specific work location. Based on the factors above, Databricks anticipated utilizing the full width of the range. The total compensation package for this position may also include eligibility for annual performance bonus, equity, and the benefits listed above. For more information regarding which range your location is in visit our page here. Zone 1 Pay Range $289,200—$397,650 USD Zone 2 Pay Range $260,300—$357,950 USD Zone 3 Pay Range $245,800—$338,050 USD Zone 4 Pay Range $231,400—$318,100 USD About Databricks Databricks is the data and AI company. More than 10,000 organizations worldwide — including Comcast, Condé Nast, Grammarly, and over 50% of the Fortune 500 — rely on the Databricks Data Intelligence Platform to unify and democratize data, analytics and AI. Databricks is headquartered in San Francisco, with offices around the globe and was founded by the original creators of Lakehouse, Apache Spark™, Delta Lake and MLflow. To learn more, follow Databricks on Twitter, LinkedIn and Facebook. Benefits At Databricks, we strive to provide comprehensive benefits and perks that meet the needs of all of our employees. For specific details on the benefits offered in your region click here. Our Commitment to Diversity and Inclusion At Databricks, we are committed to fostering a diverse and inclusive culture where everyone can excel. We take great care to ensure that our hiring practices are inclusive and meet equal employment opportunity standards. Individuals looking for employment at Databricks are considered without regard to age, color, disability, ethnicity, family or marital status, gender identity or expression, language, national origin, physical and mental ability, political affiliation, race, religion, sexual orientation, socio-economic status, veteran status, and other protected characteristics. Compliance If access to export-controlled technology or source code is required for performance of job duties, it is within Employer's discretion whether to apply for a U.S. government license for such positions, and Employer may decline to proceed with an applicant on this basis alone.
DEINE AUFGABEN * Du entwickelst gemeinsam mit unseren Kunden moderne Netzwerk- und Monitoring-Architekturen und setzt diese anschließend um – von klassischen Monitoring-Setups bis hin zu Observability-Plattformen. * Du begleitest Kunden in der frühen Projektphase (Discovery/Workshops) und erarbeitest technische Lösungskonzepte, Demos und Proof-of-Concepts. * In Kundenterminen stellst du unsere Konzepte vor und zeigst, wie wir mit Network Observability, Automatisierung und intelligenter Analyse echten Mehrwert liefern. * Du integrierst relevante Datenquellen und Protokolle (z. B. Telemetry, SNMP, NetFlow, Syslog) und machst Performance, Anomalien und Engpässe transparent. * Du bringst OT/IoT Security als zweiten Schwerpunkt ein: Asset Visibility, Risiko-/Vulnerability-Transparenz und – wo sinnvoll – Segmentierungsansätze in OT-/IoT-nahen Umgebungen. * Du arbeitest hands-on mit Tools/Plattformen wie Kentik, NetBrain und LogicMonitor sowie im OT/IoT-Kontext mit Armis, Sematicon und Akamai Guardicore und integrierst diese passgenau in Kundenumgebungen. * Du übernimmst Aufgaben in IT-Projekten, koordinierst technische Schritte und sorgst für eine strukturierte Umsetzung bis zum Go-Live. * Außerdem unterstützt du Kund:innen bei Fragen, führst Einweisungen durch und begleitest den Support rund um unsere Lösungen. DEIN PROFIL * Du hast ein Studium der Informatik, Wirtschaftsinformatik oder eine vergleichbare Ausbildung erfolgreich abgeschlossen. * Netzwerktechnologien, LAN/WAN-Architekturen und TCP/IP sind dir vertraut, und du hast Spaß daran, dich in komplexe Infrastrukturthemen einzuarbeiten. * Begriffe wie Observability, Telemetry, SNMP, NetFlow oder Syslog sind dir bekannt – oder du bist motiviert, dein Wissen hier weiter auszubauen. * Du hast erste Berührungspunkte mit Monitoring-/Observability- oder Automatisierungsplattformen (z. B. Kentik, NetBrain, LogicMonitor oder vergleichbar) oder möchtest dich in diese Themen einarbeiten. * Idealerweise kennst du OT/IoT-Security-Themen (z. B. Asset Visibility, Risiko-/Vulnerability-Transparenz, Segmentierung) – oder hast Lust, dich genau dort zu vertiefen. * Erfahrung mit Linux-Systemen und/oder Scripting (z. B. Python, Bash/Shell) ist ein Plus. * Du trittst serviceorientiert auf, kommunizierst klar und arbeitest gerne gemeinsam mit Kunden an nachhaltigen technischen Lösungen. * Analytisches Denken, strukturierte Arbeitsweise und Hands-on-Mentalität gehören zu deinen Stärken. * Sehr gute Deutsch- und Englischkenntnisse sowie Reisebereitschaft runden dein Profil ab. Alternativen im Toolstack: Nagios, CheckMK, PRTG, Icinga, SolarWinds. WIR HABEN MEHR ZU BIETEN ALS SPANNENDE JOBS! Wir suchen neugierige IT-Enthusiasten, die mehr wollen! Uns kommt es gar nicht so sehr darauf an, wie viel spezifisches IT-Fachwissen du mitbringst. Denn wir finden: „Learning by Doing“ ist die beste Herangehensweise, um dein Wissen kontinuierlich zu erweitern. Für unsere Jobs im IT-Consulting und IT-Sales suchen wir Leute mit starken Kommunikationsfähigkeiten. Mit Leidenschaft für IT. Mit hoher Eigenmotivation, sich das nötige Fachwissen und die Kompetenzen anzueignen, um die IT-Performance unserer Kunden zu optimieren. Klingt das nach dir? Komm ins Team! Mehr Infos zur Netdescribe: https://netdescribe.com/karriere/ DEINE ANSPRECHPARTNERIN Julia Beck, HR Business Partner & Gruppenrecruiting TELEFONNUMMER 0251 986 33-5203
DEINE AUFGABEN Smarte KI-Unterstützung: * Du begleitest den Aufbau und die Pflege interner KI-Wissensdatenbanken (z. B. RAG-Systeme / Verzeichnis-Vektorisierung über moderne LLM-Umgebungen wie Claude), um wiederkehrende Compliance-Anfragen des Vertriebs sowie Kundenfragebögen teilzuautomatisieren. Unterstützung im ISMS: * Gemeinsam mit unserem Group CISO und dem Security-Team pflegst du kontinuierlich unser Informationssicherheitsmanagementsystem (ISMS) für die gesamte Unternehmensgruppe. Audit-Vorbereitung & Tracking: * Du wirkst bei der Vorbereitung von internen sowie externen Audits (z. B. nach ISO/IEC 27001 oder Lieferantenaudits) mit und dokumentierst die Nachverfolgung von Maßnahmen (AuditFindings) strukturiert in Jira. Daten- und Assetpflege: * Du übernimmst die sorgfältige Pflege und Aktualisierung unseres internen Asset- und Lieferantenregisters. DEIN PROFIL * Du bist aktuell in einem Studium de Informationssicherheit, Cybersicherheit, Wirtschaftsinformatik, Informatik oder einem vergleichbaren Studiengang eingeschrieben. * Du bringst großes Interesse an den ThemenCyberSecurity, IT-Compliance und modernen GRC-Prozessen mit. * Du hast eine hohe Affinität zu modernen KI-Tools (z. B. LLMs wie Claude oder Chat GPT) und hast Lust, dich tief in Prompt Engineering und den Aufbau KI-gestützter Wissensdatenbanken hineinzufuchsen – tiefe Programmier- oder Entwicklerkenntnisse sind dafür nicht erforderlich. * Du arbeitest sorgfältig, analytisch und zuverlässig und hast Freude daran, IT-Sicherheitsherausforderungen im Team zu lösen. * Serviceorientierung, Kommunikationsfreude und Teamfähigkeit zeichnen dich aus. * Sehr gute Deutschkenntnisse sowie gute Englischkenntnisse runden dein Profil ab. WIR HABEN MEHR ZU BIETEN ALS SPANNENDE JOBS! Wir suchen neugierige IT-Enthusiasten, die mehr wollen! Uns kommt es gar nicht so sehr darauf an, wie viel spezifisches IT-Fachwissen du mitbringst. Denn wir finden: „Learning by Doing“ ist die beste Herangehensweise, um dein Wissen kontinuierlich zu erweitern. Für unsere Jobs im IT-Consulting und IT-Sales suchen wir Leute mit starken Kommunikationsfähigkeiten. Mit Leidenschaft für IT. Mit hoher Eigenmotivation, sich das nötige Fachwissen und die Kompetenzen anzueignen, um die IT-Performance unserer Kunden zu optimieren. Klingt das nach dir? Komm ins Team! Mehr Infos zur Netdescribe: https://netdescribe.com/karriere/ DEINE ANSPRECHPARTNERIN Julia Beck, HR Business Partner & Gruppenrecruiting TELEFONNUMMER 0251 986 33-5203
OPPORTUNITY Strengthen enterprise security and protect mission critical systems in a data driven software environment where reliability and control shape every decision. As Security Engineer at ILIAS Solutions, you play a key role in securing systems, identities and data across cloud and infrastructure environments. You work at the intersection of technology and governance, combining hands-on security with compliance frameworks such as ISO27001 and NIST. You help build and maintain a structured security environment where risks are managed, controls are clear and systems remain secure and available. MEANINGFUL WORK IN A MISSION DRIVEN ENVIRONMENT Security supports mission readiness. You help ensure that systems, identities and data remain protected in environments where reliability and trust matter. Your work strengthens control, supports compliance and contributes to secure operations. COMPLEX CHALLENGES, CLEAR SOLUTIONS Security spans systems, cloud platforms and governance frameworks. You work across Microsoft 365, Azure and infrastructure environments, while aligning with ISO27001 and NIST standards. The challenge is to maintain security, manage risks and ensure compliance without disrupting operations. THE IMPACT YOU HELP CREATE You strengthen the security posture, improve compliance and support reliable system availability. Your work helps reduce risk and ensures that systems remain secure and operational. YOUR MISSION You are a medior security professional with hands on experience in IT security and infrastructure. You support both technical security and governance, and contribute to a structured and compliant environment. • Support enterprise security across cloud and infrastructure • Work with Microsoft 365 E5 and Azure security tools • Contribute to incident response and vulnerability management • Support ISMS and maintain security policies and procedures • Align systems and processes with ISO27001 and NIST frameworks SUPPORT CORE DEFENSE CAPABILITIES • Fleet Management through secure systems • Expeditionary Operations through resilient infrastructure • Total Asset Visibility through protected data environments • MRO and Sustainment through secure operations WHAT YOU BRING • 3 to 5 years of experience in IT security or infrastructure roles • Strong knowledge of Microsoft 365 E5 and Azure security tools • Experience with endpoint protection and identity management • Hands on experience with vulnerability scanning and SIEM platforms • Working knowledge of ISO27001 and NIST 800 frameworks • Experience with Linux and Windows environments • Experience with ISMS and security documentation is a plus • Security certifications such as SC-900, SC-200, SC-300 or CISSP are a plus SYSTEMS THINKING AND ANALYTICAL STRENGTH You understand how systems, identities and data connect across environments. You identify risks, recognize patterns and support structured security improvements. WORKING ACROSS TEAMS AND FUNCTIONS You work with IT, security and compliance stakeholders. You support alignment between technical teams and governance requirements in an international environment. BUILD YOUR FUTURE WITH ILIAS Contact Interested in strengthening security in a mission driven environment Apply directly or contact youness.kaissi@ilias-solutions.com
Who we are At Twilio, we’re shaping the future of communications, all from the comfort of our homes. We deliver innovative solutions to hundreds of thousands of businesses and empower millions of developers worldwide to craft personalized customer experiences. Our dedication to remote-first work, and strong culture of connection and global inclusion means that no matter your location, you’re part of a vibrant team with diverse experiences making a global impact each day. As we continue to revolutionize how the world interacts, we’re acquiring new skills and experiences that make work feel truly rewarding. Your career at Twilio is in your hands. We use Artificial Intelligence (AI) to help make our hiring process efficient. That said, every hiring decision is made by real Twilions! . See yourself at Twilio Join the team as a Principal Software Engineer for Stytch, where you'll shape the next generation of identity storage, relationship tracking and resolution. About the job As a Principal Software Engineer, you will serve as the technical anchor for a brand new, 0-1 initiative: building an Identity Graph on the Fraud & Risk teams. This foundational platform will synthesize data across multi-cadence sources to provide real-time identity resolution across multiple use cases. You will take early-stage concepts and POCs, wrangle ambiguity, and actively clarify boundaries to turn them into an actional MVP. In this role you will help own the platform's technical direction, creating a clean separation between the graph substrate and downstream consumers. You’ll partner closely with product management, architect and engineering leadership to drive cross-team alignment and manage stakeholder expectations. This is a rare change to operate like a startup within Twilio: you’ll work in a high-ownership environment with startup speed, backed by Twilio’s reach and scale. Responsibilities * Own the technical vision and system architecture for Identity Graph - evaluating and selecting the optimal technology stack to store complex identifiers and their relationships. * Design, implement, and maintain high-performance, synchronous read models capable of serving identifier topologies and risk postures fast enough for real time risk decisions. * Build out complex data pipelines optimized for multi-cadence hydration, margin real-time dynamic events, periodic batch enrichments and static reference data. * Bake in strict privacy boundaries and secure PII handling from day 1. * Partner closely with product and engineering leadership to manage expectations, set direction, and turn initial concepts into actionable plans, * Collaborate across Twilio and Stytch teams to align on architecture, integrate platform capabilities and unblock cross-team initiatives. * Wrangle ambiguity and execute with a bias for action in grey areas - proactively breaking down undefined problems, making pragmatic architectural trades offs and helping write requirements instead of waiting for them * Establish strong production quality, resilience and observability standards for a large-scale data and distributed graph platform. * Deeply collaborate with the engineering team, prioritizing mentorship, knowledge-sharing, and pairing to elevate the team’s technical bar while actively bringing others along with you. Qualifications Twilio values diverse experiences from all kinds of industries, and we encourage everyone who meets the required qualifications to apply. If your career is just starting or hasn't followed a traditional path, don't let that stop you from considering Twilio. We are always looking for people who will bring something new to the table! Required: * 8+ years experience in designing, building and operating high-scale, mission critical distributed systems, graph databases, and complex data models. * Deep hands-on expertise in a production-grade code base in a modern programming language, setting best practice coding standards and writing high quality code. * Proven experience serving as a strong technical anchor, owning system architecture and vision, and leading cross-functional engineering teams through implementation. * Exceptional ability to wrangle ambiguity and execute with a bias for action - proactively clarifying boundaries, defining scope and turning concepts into an actionable MVP. * Deep commitment to collaborative team dynamics and mentorship, with a track record of prioritizing bringing others along and actively raising a team's technical bar. * Excellent written and verbal communication skills with proven ability to manage stakeholder expectations and drive technical alignment across product and engineering. * Bachelor’s degree in Computer Science or related industry experience. * Schedule: ability to work non-standard, on-call rotation weekend and holiday hours. Desired: * Familiarity with Go, Kubernetes, and DynamoDB or past experience with identity resolution or fraud detection systems * Experience building 0-1 foundational platforms or complex data infrastructure that ensures clean separation between core substrates and downstream consumers * Experience designing high-performance real-time synchronous read model and complex data pipelines. * Builder at heart. Through a hobby or your profession, you are passionate about being hands on and seeing your work come to life. Location This role will be remote. Travel We prioritize connection and opportunities to build relationships with our customers and each other. For this role, you may be required to travel occasionally to participate in project or team in-person meetings. What We Offer Working at Twilio offers many benefits, including competitive pay, generous time off, ample parental and wellness leave, healthcare, a retirement savings program, and much more. Offerings vary by location. Twilio thinks big. Do you? We like to solve problems, take initiative, pitch in when needed, and are always up for trying new things. That's why we seek out colleagues who embody our values — something we call Twilio Magic. Additionally, we empower employees to build positive change in their communities by supporting their volunteering and donation efforts. So, if you're ready to unleash your full potential, do your best work, and be the best version of yourself, apply now! If this role isn't what you're looking for, please consider other open positions. Twilio is proud to be an equal opportunity employer. We do not discriminate based upon race, religion, color, national origin, sex (including pregnancy, childbirth, reproductive health decisions, or related medical conditions), sexual orientation, gender identity, gender expression, age, status as a protected veteran, status as an individual with a disability, genetic information, political views or activity, or other applicable legally protected characteristics. We also consider qualified applicants with criminal histories, consistent with applicable federal, state and local law. Qualified applicants with arrest or conviction records will be considered for employment in accordance with the Los Angeles County Fair Chance Ordinance for Employers and the California Fair Chance Act. Additionally, Twilio participates in the E-Verify program in certain locations, as required by law.
P-1528 As a Staff Security Assurance Engineer within the Security Assurance Team, you will help lead high-visibility security compliance implementation initiatives. Reporting directly to the Senior Director, you will serve as a strategic catalyst for these programs, ensuring seamless execution and alignment with Databricks’ global security objectives. You will navigate a complex, cloud-native landscape, collaborating with Security, IT, Engineering, Internal Audit, Corporate Operations, and other teams, to assure successful completion of highly cross-functional projects that enable the growth of our business and safeguard our customers. This role requires an active Top Secret Clearance, the ability to access and work within a SCIF environment, and residence within the Washington, DC metropolitan area. The impact you will have: * Drive Project Outcomes: Adopt an ownership mindset to manage the end-to-end delivery of work required for new security certifications, federal authorizations, and compliance initiatives that expand Databricks’ reach across regulated and government markets. * Accelerate Execution: Act as a force multiplier by proactively identifying and neutralizing project blockers, reducing friction, and maintaining high velocity in a cloud-native environment. * Orchestrate Cross-Functional Decision Making: Navigate complex technical and compliance trade-offs, driving consensus across Engineering, IT, Product, and Security teams to reach timely resolutions. * Optimize Delivery Methodologies: Continuously refine project frameworks to maximize effectiveness, ensuring that security initiatives are both rigorous and agile. * Precision Program Management: Masterfully oversee project lifecycles—including milestones, dependencies, and risk mitigation—while providing executive-level transparency through accurate status reporting. * Build Strategic Partnerships: Forge deep, collaborative relationships with Security Assurance Team subject matter experts and technical stakeholders to ensure seamless alignment on security goals. What we look for: We are looking for a professional with the following skills and practical experience in: * Active Top Secret (TS) Clearance with the ability to access and work within a SCIF environment. * Location Requirement: Must be located in, or willing to relocate to, the Washington, DC metropolitan area. * Proven Expertise: 7+ years of experience (with Bachelor’s degree or 5+ years with advanced degree) in security and technical program/project management. Ideally, at a fast-paced, cloud-native organization. * Strategic Ownership: Demonstrated success in leading high-stakes security compliance initiatives (e.g., FedRAMP, DoD IL5/IL6, NIST 800-53, CMMC, PCI, HIPAA) from inception to authorization or market. * Complexity Management: Experience navigating projects with intricate technical dependencies, multiple stakeholders, and competing constraints with geo-distributed teams. * Executive Presence: Ability to influence and communicate effectively across the spectrum, from deep-dive technical discussions with engineers to high-level briefings for senior leadership and government stakeholders. * Agility & Continuous Learning: A proven track record of rapidly mastering new processes, methodologies, technologies, and security frameworks to meet evolving business needs. * Communication Excellence: Superb verbal and written skills, with a knack for translating complex project data into clear, actionable insights and documentation. * Educational Foundation: Bachelor’s degree in Computer Science, Information Systems, or a related technical field (or equivalent practical experience). * Federal Experience Preferred: Experience supporting U.S. Government, Defense, Intelligence Community, or other highly regulated environments is strongly preferred. About Databricks Databricks is the data and AI company. More than 10,000 organizations worldwide — including Comcast, Condé Nast, Grammarly, and over 50% of the Fortune 500 — rely on the Databricks Data Intelligence Platform to unify and democratize data, analytics and AI. Databricks is headquartered in San Francisco, with offices around the globe and was founded by the original creators of Lakehouse, Apache Spark™, Delta Lake and MLflow. To learn more, follow Databricks on Twitter, LinkedIn and Facebook. Benefits At Databricks, we strive to provide comprehensive benefits and perks that meet the needs of all of our employees. For specific details on the benefits offered in your region click here. Our Commitment to Diversity and Inclusion At Databricks, we are committed to fostering a diverse and inclusive culture where everyone can excel. We take great care to ensure that our hiring practices are inclusive and meet equal employment opportunity standards. Individuals looking for employment at Databricks are considered without regard to age, color, disability, ethnicity, family or marital status, gender identity or expression, language, national origin, physical and mental ability, political affiliation, race, religion, sexual orientation, socio-economic status, veteran status, and other protected characteristics. Compliance If access to export-controlled technology or source code is required for performance of job duties, it is within Employer's discretion whether to apply for a U.S. government license for such positions, and Employer may decline to proceed with an applicant on this basis alone.
RDQ326R15 The Incident Response team's mission is to respond to security threats, incidents and investigations to protect our customers, employees and enterprise data in a fast, efficient and standardised manner. We're a tight-knit team of security incident responders and incident handlers doing "Security for Databricks on Databricks", using our own platform to create near-real-time log analytics, alerting and forensics. You will be an individual contributor on the security Incident Response (IR) team at Databricks, reporting to the regional IR manager. You will be responsible for conducting security analysis and forensics, responding to high-priority alerts and contributing to automations and agentic capabilities. You will be a security multiplier and help the team scale security incident response at Databricks. The impact you will have: * You will respond to incidents as part of a distributed 24x7 operations and on-call schedule. * You will triage and respond to security events and alerts, ensuring quick and effective containment. * You will contribute to security investigations, conducting analysis and forensics across a range of data sources to determine the timeline and impact of security events. * You will build automations, including leveraging AI and agentic platforms, to deliver autonomous capabilities, expedite your work and scale the impact of the team. * You will communicate technical decisions through design docs and tech talks, and mentor junior security responders via security guidance, design reviews and code reviews. What we look for: * Bachelor's Degree AND 4+ years experience in Incident Response work OR Master's Degree AND 2+ years experience. * Strong cloud security background in at least 1 of AWS, GCP or Azure, and working knowledge of the others. * Knowledge of AI/LLM and agentic capabilities, including effective prompting and use of MCP, agents and agent skills. Prefer experience with building and operating agentic systems in a security setting. * Broad security subject matter expertise. * Expertise in few core IR skills (DFIR , Reverse Engineering, Traditional Network Security, Storage and access security, Sandboxing, Compute security, etc.). * Experience with Enterprise Security and SaaS applications. * Working knowledge of a SIEM and SOAR. * Experience building Incident Response Tooling and scripting language skills. About Databricks Databricks is the data and AI company. More than 10,000 organizations worldwide — including Comcast, Condé Nast, Grammarly, and over 50% of the Fortune 500 — rely on the Databricks Data Intelligence Platform to unify and democratize data, analytics and AI. Databricks is headquartered in San Francisco, with offices around the globe and was founded by the original creators of Lakehouse, Apache Spark™, Delta Lake and MLflow. To learn more, follow Databricks on Twitter, LinkedIn and Facebook. Benefits At Databricks, we strive to provide comprehensive benefits and perks that meet the needs of all of our employees. For specific details on the benefits offered in your region click here. Our Commitment to Diversity and Inclusion At Databricks, we are committed to fostering a diverse and inclusive culture where everyone can excel. We take great care to ensure that our hiring practices are inclusive and meet equal employment opportunity standards. Individuals looking for employment at Databricks are considered without regard to age, color, disability, ethnicity, family or marital status, gender identity or expression, language, national origin, physical and mental ability, political affiliation, race, religion, sexual orientation, socio-economic status, veteran status, and other protected characteristics. Compliance If access to export-controlled technology or source code is required for performance of job duties, it is within Employer's discretion whether to apply for a U.S. government license for such positions, and Employer may decline to proceed with an applicant on this basis alone.
About Pinterest: Millions of people around the world come to our platform to find creative ideas, dream about new possibilities and plan for memories that will last a lifetime. At Pinterest, we’re on a mission to bring everyone the inspiration to create a life they love, and that starts with the people behind the product. Discover a career where you ignite innovation for millions, transform passion into growth opportunities, celebrate each other’s unique experiences and embrace the flexibility to do your best work. Creating a career you love? It’s Possible. At Pinterest, AI isn't just a feature, it's a powerful partner that augments our creativity and amplifies our impact, and we’re looking for candidates who are excited to be a part of that. To get a complete picture of your experience and abilities, we’ll explore your foundational skills and how you collaborate with AI. Through our interview process, what matters most is that you can always explain your approach, showing us not just what you know, but how you think. You can read more about our AI interview philosophy and how we use AI in our recruiting process here. Pinterest’s Security team is seeking an experienced Security Software Engineer to help keep our 619 million monthly active users safe from real-world threats. You will build tooling, product enhancements, and work with teams to improve our overall security posture and enhance our secure development lifecycle. We are looking for a candidate with a passion for security and innovation, who will research and develop new solutions to secure our products. What you'll do: * Design and build out our rules, processes, and platform for our secure development lifecycle. * Deliver and review code that is well-documented, tested, and operable. * Work cross function to architect scalable and secure solutions to a variety of Pinterest’s problems. * Conduct regular security assessments including design reviews. * Help rework our existing controls to address increased productivity due to AI and new AI threats. What we’re looking for: * Bachelor’s degree in Computer Science, Engineering, or a related field, or equivalent experience. * 5+ years of experience in product security, application security, or security related software engineering role. * Enthusiasm for the constant fight to ensure security and privacy. * Proficiency in a dynamic programming language such as Python. In-Office Requirement Statement: * We recognize that the ideal environment for work is situational and may differ across departments. What this looks like day-to-day can vary based on the needs of each organization or role. * This role will need to be in the office for in-person collaboration 1-2 times every 6-months and therefore can be situated anywhere in the country. Relocation Statement: * This position is not eligible for relocation assistance. Visit our PinFlex page to learn more about our working model. #LI-REMOTE #LI-JT1 At Pinterest we believe the workplace should be equitable, inclusive, and inspiring for every employee. In an effort to provide greater transparency, we are sharing the base salary range for this position. The position is also eligible for equity. Final salary is based on a number of factors including location, travel, relevant prior experience, or particular skills and expertise. Information regarding the culture at Pinterest and benefits available for this position can be found here. US based applicants only $155,584—$320,320 USD Our Commitment to Inclusion: Pinterest is an equal opportunity employer and makes employment decisions on the basis of merit. We want to have the best qualified people in every job. All qualified applicants will receive consideration for employment without regard to race, color, ancestry, national origin, religion or religious creed, sex (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender, gender identity, gender expression, age, marital status, status as a protected veteran, physical or mental disability, medical condition, genetic information or characteristics (or those of a family member) or any other consideration made unlawful by applicable federal, state or local laws. We also consider qualified applicants regardless of criminal histories, consistent with legal requirements. If you require a medical or religious accommodation during the job application process, please complete this form for support. By submitting this application, I certify that all information submitted in my application and throughout the hiring process is true, accurate, and complete to the best of my knowledge. I understand that any false statement, omission, or misrepresentation may disqualify me from employment consideration or result in termination if discovered after hire.
About Pinterest: Millions of people around the world come to our platform to find creative ideas, dream about new possibilities and plan for memories that will last a lifetime. At Pinterest, we’re on a mission to bring everyone the inspiration to create a life they love, and that starts with the people behind the product. Discover a career where you ignite innovation for millions, transform passion into growth opportunities, celebrate each other’s unique experiences and embrace the flexibility to do your best work. Creating a career you love? It’s Possible. At Pinterest, AI isn't just a feature, it's a powerful partner that augments our creativity and amplifies our impact, and we’re looking for candidates who are excited to be a part of that. To get a complete picture of your experience and abilities, we’ll explore your foundational skills and how you collaborate with AI. Through our interview process, what matters most is that you can always explain your approach, showing us not just what you know, but how you think. You can read more about our AI interview philosophy and how we use AI in our recruiting process here. This role is part of Pinterest’s Corporate Security team and will collaborate closely with engineers to tackle complex enterprise security challenges. You will have the opportunity to design and implement innovative solutions that protect Pinterest’s systems and data. Your work will directly contribute to ensuring the safety and resilience of the company’s enterprise environment. What you’ll do: * Automation & Tooling - Develop scripts, tools, and automated pipelines to streamline vulnerability scanning, incident triage processes. Integrate security tools within CI/CD pipelines. * Implement Secure Engineering Practices - Design, develop, and maintain software systems with security best practices integrated throughout the development lifecycle.\ * Collaborate with XFN Teams - Partner with security engineers and IT to improve detection and remediation of threats across infrastructure and applications. * Use AI to accelerate analysis and iteration, while applying judgment and verification to ensure correctness and quality. * Leverage AI to streamline and enhance the efficiency, accuracy, and coverage of security engineering and review processes. * Grow your skills in an inclusive and encouraging environment * Learn from supportive, collaborative teammates * Use modern technologies and tools (including AI) * Work on real security challenges that protect millions of users and make a real impact from day one What we’re looking for: * Linux/UNIX, macOS or Windows internals with an emphasis on proactive hardening * Demonstrated ability to use AI to improve speed and quality in your day-to-day workflow for relevant outputs. * Strong track record of critical evaluation and verification of AI-assisted work (e.g., testing, source-checking, data validation, peer review). * High integrity and ownership: you protect sensitive data, avoid over-reliance on AI, and remain accountable for final decisions and deliverables. * Bachelor’s degree in Computer Science, Cybersecurity or, a related field or equivalent experience In-Office Requirement Statement: * We recognize that the ideal environment for work is situational and may differ across departments. What this looks like day-to-day can vary based on the needs of each organization or role. * This role will need to be in the office for in-person collaboration 1-2 times every 6-months and therefore can be situated anywhere in the country. Relocation Statement: * This position is not eligible for relocation assistance. Visit our PinFlex page to learn more about our working model. #LI-REMOTE #LI-AH At Pinterest we believe the workplace should be equitable, inclusive, and inspiring for every employee. In an effort to provide greater transparency, we are sharing the base salary range for this position. The position is also eligible for equity. Final salary is based on a number of factors including location, travel, relevant prior experience, or particular skills and expertise. Information regarding the culture at Pinterest and benefits available for this position can be found here. US based applicants only $123,696—$254,667 USD Our Commitment to Inclusion: Pinterest is an equal opportunity employer and makes employment decisions on the basis of merit. We want to have the best qualified people in every job. All qualified applicants will receive consideration for employment without regard to race, color, ancestry, national origin, religion or religious creed, sex (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender, gender identity, gender expression, age, marital status, status as a protected veteran, physical or mental disability, medical condition, genetic information or characteristics (or those of a family member) or any other consideration made unlawful by applicable federal, state or local laws. We also consider qualified applicants regardless of criminal histories, consistent with legal requirements. If you require a medical or religious accommodation during the job application process, please complete this form for support. By submitting this application, I certify that all information submitted in my application and throughout the hiring process is true, accurate, and complete to the best of my knowledge. I understand that any false statement, omission, or misrepresentation may disqualify me from employment consideration or result in termination if discovered after hire.
About Pinterest: Millions of people around the world come to our platform to find creative ideas, dream about new possibilities and plan for memories that will last a lifetime. At Pinterest, we’re on a mission to bring everyone the inspiration to create a life they love, and that starts with the people behind the product. Discover a career where you ignite innovation for millions, transform passion into growth opportunities, celebrate each other’s unique experiences and embrace the flexibility to do your best work. Creating a career you love? It’s Possible. At Pinterest, AI isn't just a feature, it's a powerful partner that augments our creativity and amplifies our impact, and we’re looking for candidates who are excited to be a part of that. To get a complete picture of your experience and abilities, we’ll explore your foundational skills and how you collaborate with AI. Through our interview process, what matters most is that you can always explain your approach, showing us not just what you know, but how you think. You can read more about our AI interview philosophy and how we use AI in our recruiting process here. Pinterest is seeking an experienced Security Engineer to build and implement detection and response improvements and adapt to emerging threats to protect employees and infrastructure. In this role you will have the opportunity to solve challenging problems and provide a meaningful impact on our overall security posture. We are looking for a candidate with a passion for both security and innovation. What you'll do: * Build alerts and automation workflows to improve capabilities to detect and response to external and internal security threats * Manage our logging pipelines and infrastructure and onboard new logging sources to improve our detection coverage * Develop and maintain internal tooling to expand and automate team detection and response capabilities * Respond to alerts generated from our tooling and run incidents as part of an on-call rotation * Collaborate with cross team partners * Hunt for previously undetected threats in our environment * Leverage AI to streamline and enhance the efficiency, accuracy, and coverage of security engineering What we’re looking for: * Bachelor’s degree in Computer Science, Cybersecurity or, a related field or equivalent experience * Strong knowledge of intrusion detection and incident response with an engineering focus in a modern cloud first environment * Knowledge of the attacker lifecycle, common attack and detection techniques * Hands on experience with writing SIEM queries for alerting, response, and threat hunting * Experience consuming threat intel and applying it to improve detection capabilities * Familiarity with using multiple sources of telemetry for threat investigations: Eg. EDR, Osquery, Firewall logs * Understanding of networking technologies and/or network security, basic TCP/IP network fundamentals * Depth in ideally MacOS internals, or alternatively in Linux/UNIX or Windows internals, persistence mechanisms, privilege escalation techniques * Scripting or automation experience (e.g., Python, Go, Ruby) for tool development or integration * Demonstrated ability to use AI to improve speed and quality in your day-to-day workflow for relevant outputs. * Strong track record of critical evaluation and verification of AI-assisted work (e.g., testing, source-checking, data validation, peer review) * High integrity and ownership: you protect sensitive data, avoid over-reliance on AI, and remain accountable for final decisions and deliverables In-Office Requirement Statement: * We recognize that the ideal environment for work is situational and may differ across departments. What this looks like day-to-day can vary based on the needs of each organization or role. * This role will need to be in the office for in-person collaboration 1-2 times every 6-months and therefore can be situated anywhere in the country. Relocation Statement: * This position is not eligible for relocation assistance. Visit our PinFlex page to learn more about our working model. #LI-REMOTE #LI-JT1 At Pinterest we believe the workplace should be equitable, inclusive, and inspiring for every employee. In an effort to provide greater transparency, we are sharing the base salary range for this position. The position is also eligible for equity. Final salary is based on a number of factors including location, travel, relevant prior experience, or particular skills and expertise. Information regarding the culture at Pinterest and benefits available for this position can be found here. US based applicants only $123,696—$254,667 USD Our Commitment to Inclusion: Pinterest is an equal opportunity employer and makes employment decisions on the basis of merit. We want to have the best qualified people in every job. All qualified applicants will receive consideration for employment without regard to race, color, ancestry, national origin, religion or religious creed, sex (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender, gender identity, gender expression, age, marital status, status as a protected veteran, physical or mental disability, medical condition, genetic information or characteristics (or those of a family member) or any other consideration made unlawful by applicable federal, state or local laws. We also consider qualified applicants regardless of criminal histories, consistent with legal requirements. If you require a medical or religious accommodation during the job application process, please complete this form for support. By submitting this application, I certify that all information submitted in my application and throughout the hiring process is true, accurate, and complete to the best of my knowledge. I understand that any false statement, omission, or misrepresentation may disqualify me from employment consideration or result in termination if discovered after hire.
ABOUT THE ROLE We are looking for a hands-on DevSecOps Engineer to strengthen and scale security initiatives in our fully cloud-native AWS environment. You will help evolve our DevSecOps practices, improve cloud and Kubernetes security, vulnerability management, and perform security reviews across infrastructure and applications. You will work closely with security and engineering teams, making hands-on improvements while contributing to long-term security direction. We value practical, scalable solutions and smart automation, and we expect ownership and a proactive mindset. As we actively adopt AI, use LLMs extensively, and build internal AI agents, security must scale alongside innovation and regulatory requirements – making AI-aware security a key part of this role. YOUR MISSION Cloud & Platform Security * Continuously improve the security of our AWS and Kubernetes platforms. * Strengthen IAM, RBAC, encryption, secrets management, and network controls through secure-by-default policy-as-code. * Manage edge security, including traffic filtering, WAF configuration, and external exposure management. * Perform security reviews of new services, architectural changes, and platform components. Application & AI Security * Embed automated security controls into SDLC and CI/CD (SAST, dependency and container scanning, policy enforcement). * Lead vulnerability management processes, including detection, assessment, prioritization, and reporting. * Integrate automation and AI-assisted tooling to enhance security reviews and reduce manual effort. * Define and implement security controls for AI infrastructure components, including gateways, MCP servers, and model proxies. * Identify and mitigate AI-specific risks such as prompt injection, data leakage, and agent privilege escalation. YOUR PROFILE * 5+ years of hands-on experience in DevSecOps, Cloud Security, or related fields. * Strong hands-on experience operating AWS and Kubernetes in production environments. * Experience implementing security in Infrastructure as Code and CI/CD workflows. * Solid understanding of cloud security fundamentals such as access control, secrets management, network security, and encryption. * Familiarity with container security and common application security risks. * Deep understanding of AI/LLM security risks, including prompt injection, data leakage, model abuse, and agent privilege escalation; hands-on experience securing AI infrastructure components such as LLM gateways, MCP servers, or agent-based workflows. * Comfortable with scripting and working in Git-based development environments. * Good communication skills and ability to work effectively with engineering and product teams. * Comfortable communicating clearly in English, both written and spoken. Nice to Have * Experience scaling security practices in fast-growing or regulated environments. * Experience building internal security tooling or automation from scratch. WHY JOIN VIVID? * We have a hybrid model in our Limassol office, or fully remote outside office locations. * We support relocation to Cyprus (visa, package) when needed. * Competitive senior-level compensation, reflecting the seniority and impact of the role (depending on location). * Learning & development budget to support your professional growth. * Fully paid vacation and sick leave. * Sports compensation. * Real growth prospects, significant responsibility, and the ability to make an immediate impact from day one. Enhance your expertise and shape the future of FinTech. Join Vivid's talented team and help us revolutionize how businesses think about their finances! COMPENSATION RANGE Final compensation is determined individually, based on your experience, skills and the scope of the role, assessed against objective, gender-neutral criteria. ABOUT VIVID At Vivid, we're on a mission to change how businesses and individuals manage their money across Europe. For businesses, we build tools that actually make a difference: multi-IBAN accounts, high-yield savings, business cashback, team cards, and accounting integrations that save real time — all in one place. And for individuals, we offer a simple way to manage and grow your wealth: access to global stocks, ETFs and 150+ cryptocurrencies, cashback, and personalised financial insights. Our mission? Your success. Everyone deserves the chance to see their finances flourish, and we're dedicated to empowering our customers to make this a reality. Founded in 2019 in Berlin by Alexander Emeshev and Artem Iamanov, Vivid has quickly grown into one of Germany's top financial platforms for SMEs and private accounts. Since then, we've expanded rapidly across Europe, earning the trust of over 500,000 customers — and with over €200 million raised and a valuation of €775 million, we're just getting started. We're building Vivid as an AI-native organization — across every function, from product to compliance to operations. Automation handles a growing share of day-to-day execution. For us, this means our teams can focus on architecture, strategy, and high-impact decision-making. This changes how we work: less manual execution, more ownership in building systems that scale. We want to help define what AI-native looks like in a regulated financial environment — and we're looking for people who want to build that future with us.
ABOUT THE ROLE We’re looking for a Security Engineer to own and improve the security of our internal environment — the identities, SaaS apps, endpoints, AI tooling, and networks our employees use every day. This is a hands-on senior role: we expect you to design controls, find the gaps, and drive the changes that close them — and to build the automation that makes it scale. We’re an EMI-licensed fintech in a fully cloud-native AWS environment, we use AI heavily, and we’re growing fast. We need someone who can lead technical initiatives independently, influence our security architecture, challenge approaches that no longer fit, and explain it clearly to engineers and leadership. YOUR MISSION Detection & Response (SIEM) — our top priority * Own SIEM alerting end-to-end: ship logs from endpoints, IdP, VPN, SaaS, and cloud; write and tune detection rules; cut false positives. * Act as first responder for security incidents — investigate, contain, drive to closure with clear runbooks — and feed recurring issues back into preventive controls. Identity, Access & SaaS * Administer the IdP (SSO via SAML/OIDC, MFA, conditional access) and run access recertification end-to-end across IdP, SaaS, AWS, and internal tools — scope, evidence, follow-through on revocations. * Hunt down over-permissive and stale access, enforce least privilege and PAM, catch SoD gaps, and make JML and third-party access work in practice. * Improve SaaS security posture (Google/Microsoft, Slack, GitHub, others) and apply DLP controls to limit data leakage. Endpoint, Email & Phishing Defense * Keep the endpoint stack healthy and well-tuned — MDM, XDR/AV, device-compliance checks for VPN/ZTNA — and define posture requirements (disk encryption, EDR present, OS version) with automated remediation. * Defend against phishing and spoofing — secure email gateway rules, DMARC/SPF/DKIM — and run phishing simulations and security awareness, acting on the results. Automation & Ownership * Build internal tooling and automate repetitive operations — reduce manual work, don't just operate it. * Own the roadmap for your areas: identify gaps, lead initiatives independently, and raise the bar rather than just maintain it. YOUR PROFILE * 5+ years in security operations, corporate/IT security, or endpoint engineering. * Strong with a SIEM (Splunk, Elastic, Panther, Sumo Logic) — detection engineering and incident response — plus an identity provider (Okta, Entra ID, Google Workspace), access recertification, and least-privilege / PAM. * Working knowledge of endpoint security (MDM, XDR/EDR/AV) and email / phishing defense. * Practical experience securing how a company uses AI internally: shadow AI discovery, DLP for AI tools, controls for AI assistants and agents, and a working risk framework for adopting new ones. You've done this for real, not from a vendor pitch deck. * Strong scripting and automation skills — you build tooling against APIs, not just configure consoles. * Track record of driving improvements end-to-end and leading initiatives with little oversight. * Сlear written and spoken English for engineers and leadership. WHY JOIN VIVID? * We have a hybrid model in our Limassol office, or fully remote outside office locations. * We support relocation to Cyprus (visa, package) when needed. * Learning & development budget to support your professional growth. * Fully paid vacation and sick leave. * Sports compensation. * Real growth prospects, significant responsibility, and the ability to make an immediate impact from day one. Enhance your expertise and shape the future of FinTech. Join Vivid's talented team and help us revolutionize how businesses think about their finances! COMPENSATION RANGE Final compensation is determined individually, based on your experience, skills and the scope of the role, assessed against objective, gender-neutral criteria. ABOUT VIVID At Vivid, we're on a mission to change how businesses and individuals manage their money across Europe. For businesses, we build tools that actually make a difference: multi-IBAN accounts, high-yield savings, business cashback, team cards, and accounting integrations that save real time — all in one place. And for individuals, we offer a simple way to manage and grow your wealth: access to global stocks, ETFs and 150+ cryptocurrencies, cashback, and personalised financial insights. Our mission? Your success. Everyone deserves the chance to see their finances flourish, and we're dedicated to empowering our customers to make this a reality. Founded in 2019 in Berlin by Alexander Emeshev and Artem Iamanov, Vivid has quickly grown into one of Germany's top financial platforms for SMEs and private accounts. Since then, we've expanded rapidly across Europe, earning the trust of over 500,000 customers — and with over €200 million raised and a valuation of €775 million, we're just getting started. We're building Vivid as an AI-native organization — across every function, from product to compliance to operations. Automation handles a growing share of day-to-day execution. For us, this means our teams can focus on architecture, strategy, and high-impact decision-making. This changes how we work: less manual execution, more ownership in building systems that scale. We want to help define what AI-native looks like in a regulated financial environment — and we're looking for people who want to build that future with us.
AUFGABEN Gestalten Sie mit uns die Zukunft! Sie möchten Teil eines innovativen Unternehmens werden, finden aber aktuell keine passende Stellenausschreibung? Dann freuen wir uns auf Ihre Initiativbewerbung! Wir suchen Persönlichkeiten! - Deshalb prüfen wir Bewerbungen nicht ausschließlich in Bezug auf eine konkrete Position, sondern verstehen jede Initiativbewerbung als Interesse an einer Mitarbeit bei INTEC. Ein aussagekräftiges Anschreiben gibt uns die Möglichkeit, Ihre fachlichen Interessen, Stärken und Ziele besser einzuordnen. Bringen Sie Ihre Ideen ein, treiben Sie Technologien voran – und starten Sie jetzt mit uns durch! QUALIFIKATIONEN & KENNTNISSE * Abgeschlossenes technisches oder wirtschaftliches Studium oder eine abgeschlossene technische Ausbildung mit Weiterbildung zum Techniker oder Meister * Erste Berufserfahrung im technischen oder projektbezogenen Umfeld * Erfahrung im Umgang mit nationalen und internationalen Kunden sowie in der Zusammenarbeit in interdisziplinären Projekten * Kenntnisse in einer oder mehreren unserer Branchen – Defense, Aeronautik, Automotive oder Marine – sind wünschenswert * Sehr gute Deutsch- und gute Englischkenntnisse in Wort und Schrift * Sicherer Umgang mit MS Office oder Google Workspace, SAP-Kenntnisse von Vorteil BENEFITS * Spannende, innovative und nachhaltige Projekte * Langfristige Perspektiven und vielfältige Entwicklungsmöglichkeiten * 30 Tage Urlaub sowie flexible Arbeitszeiten für eine gute Work-Life-Balance * Mobiles Arbeiten, je nach Tätigkeit anteilig möglich * Digitale Unternehmensprozesse für modernes, effizientes Arbeiten * Vielseitige Teamevents – von sportlich bis gesellig, für ein starkes Miteinander * Familiäres Betriebsklima mit offener Kommunikation und kurzen Entscheidungswegen * Betriebliche Altersvorsorge zur finanziellen Absicherung * Wellpass-Mitgliedschaft mit Zugang zu zahlreichen Fitness-, Sport- und Wellnessangeboten * JobRad-Leasing – nachhaltig mobil unterwegs * Corporate Benefits – exklusive Rabatte bei zahlreichen Marken und Shops