Senior Security Engineer

🔥 19 hours ago

🇲🇹 Malta – Remote

⏰ Full Time

🟠 Senior

👮‍♂️ Cybersecurity / Security Engineer

👻 Ghost score 14%

infoinfo
Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of The Mill Adventure

The Mill Adventure

11 - 50 employees

🎮 Gaming

Gaming

The Mill Adventure is a comprehensive platform provider for the iGaming industry, offering a complete gaming solution including licenses and operations for quick deployment and success. The company is dedicated to improving the iGaming experience through continuous innovation and supports the industry with features such as gamification, compliance management, data analytics, and high security standards. With certifications from various authorities like Malta and Sweden, The Mill Adventure ensures a reliable and compliant environment for gaming operators.

📋 Description

• Architect and lead the design and implementation of security controls across cloud infrastructure, applications and CI/CD pipelines • Build security controls directly in a small three-person security team • Coach and mentor developers, engineers and architects on secure design, threat modelling and cloud security • Own vulnerability management and attack surface management, prioritizing by exploitability and driving findings to closure • Integrate and tune SAST, DAST and SCA across the SDLC • Engineer and maintain cloud security posture primarily in AWS and Cloudflare • Harden configurations, automate compliance checks and close security gaps proactively • Own detection and response end to end, including logging, alerting, investigation, remediation and post-incident reviews • Architect and guide IAM strategy for least-privilege human and machine identities • Test systems using offensive techniques against infrastructure, applications and identity flows • Use AI tooling for triage, code review, detection engineering, evidence collection and toil automation • Secure AI systems as the company adopts them • Automate repeatable security work • Provide uncomfortable assessments with an actionable plan and initial pull request

🎯 Requirements

• 5+ years hands-on experience in a technical security engineering role • Experience being accountable for implementing fixes and delivering security designs into production • Judgement across security engineering, IT security, security operations and offensive security • Deep AWS security experience: IAM, Organizations and SCPs, Security Hub, GuardDuty, WAF, and Cloudflare • Ability to detect and contain a compromised role • Production coding experience with Python, Go and Bash; TypeScript is a major plus • Infrastructure as Code experience, including drift, over-permissive modules, secrets in state and pipeline privilege escalation • Personally run vulnerability and attack surface management • Solid SIEM and detection engineering knowledge • Hands-on detection and response experience, including investigating real alerts and writing post-incident reviews • Working offensive security knowledge, including chaining misconfigurations into attack paths • Practical current use of AI in security work • Specific understanding of AI-driven threats • SDLC security experience integrating and tuning SAST, DAST and SCA • Ability to work autonomously and closely with engineers • Comfort with open technical debate • Nice to have: hands-on PCI DSS experience • Nice to have: experience building and maintaining a SIEM • Nice to have: serverless and event-driven architecture at scale • Nice to have: iGaming, fintech or another regulated, high-value-target industry experience • Nice to have: corporate IT security, including SSO, identity providers, MDM, SaaS security posture and third-party/vendor access • Nice to have: experience securing AI or agentic systems • Nice to have: NIST CSF, CIS Benchmarks or CSA CCM experience • Nice to have: public artifacts such as released tools, writeups, CVEs, CTF results or talks • Certifications such as CISSP, AWS Certified Security or CEH are welcome, but demonstrated work weighs more heavily

🏖️ Benefits

• Flexible working environment • Opportunity to work with and learn from a highly skilled, talented team • Company culture focused on accountability, transparency and competency • Tight-knit, caring community • Work equipment of your choice • Private health insurance • Learning budget • Company-wide and team-based get-togethers

Apply Now