Deep understanding of security standards and frameworks such as NIST, ISO 27001, CIS Controls, and industry compliance regulations (GDPR, HIPAA, PCI-DSS)
Hands-on experience with security tools such as IDS/IPS, SIEM, vulnerability scanners, and penetration testing platforms
Experience with cloud platforms (AWS, Azure, GCP, OCI or Alibaba) and securing cloud-native applications
Proficiency in programming languages (e.g., Python, Java, C++) and automation tools (e.g., Terraform, Ansible)
Strong knowledge of networking protocols, firewalls, VPNs, proxies, and security monitoring tools
5+ years of relevant experience in security engineering and GRC-focused security solutions development
Extensive hands-on experience in DevSecOps, integrating security in CI/CD pipelines, and supporting development teams in secure coding practices
Proven expertise in cryptography, including encryption, key management, and digital signatures
Friendly and welcoming environment focused on people, learning & development
25 vacation days and extra vacation days after age and after children
Cafeteria benefit via SZEP card
Medicover private health insurance for employees and their family members
10% of your time to work on anything you like, reading groups, tech talks
Flexible working and working from home
An extensive people development program, including access to Udemy
Candidates must be available for after-hours incident response when urgent security events require investigation or support
The interview process will include a hands-on practical exercise conducted through screen sharing, where candidates will be asked to demonstrate relevant technical skills