Security Engineer

Job not on LinkedIn

🔥 2 minutes ago

🌐 Georgia, Serbia, +2 more countries – Remote

info

⏳ Contract/Temporary

🟡 Mid-level

🟠 Senior

👮‍♂️ Cybersecurity / Security Engineer

Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of Virtuozzo

Virtuozzo

201 - 500 employees

Founded 1999

💼 Consulting

🏥 Healthcare

📦 Logistics

Consulting • Healthcare • Logistics

Virtuozzo is a technology company that specializes in providing tools for creating and managing digital connections. Their products include URL shorteners, QR code generators, and mobile-optimized landing pages. These solutions are designed to enhance branding and improve customer engagement by enabling businesses to customize, share, and track their digital links and content. Virtuozzo's platform is utilized across various industries, including retail, consumer packaged goods, media, entertainment, healthcare, and financial services, offering analytics and API integrations to streamline operations and enhance user experience.

📋 Description

• Operate and improve vulnerability management by running and tuning scans, triaging findings, tracking remediation with system owners, and maintaining scan evidence • Monitor SIEM and EDR platforms to detect, investigate, and respond to security incidents • Maintain and configure EDR, SIEM, firewalls, intrusion detection and prevention systems, and MFA and SSO policies • Support identity and access management, including access provisioning, privileged access, and periodic access reviews • Contribute to ISO/IEC 27001 operations through control implementation, evidence collection, risk register input, and audit support • Assist with security assessments, penetration-test coordination, and remediation follow-up • Support application security across the software development lifecycle by operating SAST, DAST, dependency scanning, and container scanning in CI/CD pipelines • Triage application-security findings with R&D teams and track remediation • Help secure the build and release chain, including source-repository access, secrets management, artifact signing, and pipeline hardening • Maintain security policies, procedures, and standards, and track exceptions • Track endpoint fleet security posture across Windows, macOS, and Linux, including MDM enrollment, EDR coverage, and disk encryption • Participate in security-awareness training and educate end users on security best practices • Troubleshoot security-related outages and incidents, producing root-cause or post-incident documentation where required • Build, document, and implement internal processes and workflows with the wider IT and Security team • Stay up to date with security threats, trends, and technologies

🎯 Requirements

• At least three years of experience in security engineering, security operations, or systems administration with a strong security focus • Working knowledge of firewalls, IDS/IPS, SIEM, EDR, and vulnerability scanners • Solid networking fundamentals, including TCP/IP, VLANs, routing, VPNs, and firewalling • Experience with identity and access management, including Active Directory or Microsoft Entra ID and SSO/MFA platforms such as Okta or similar • Working experience with Microsoft 365 and Exchange Online • Comfortable working with Windows, macOS, and Linux systems • Understanding of application-security fundamentals, including the OWASP Top 10, secure-coding practices, and vulnerability triage in code and dependencies • Understanding of security and compliance frameworks such as ISO/IEC 27001, SOC 2, or similar, including suitable audit evidence • Strong problem-solving skills and attention to detail • Ability to work collaboratively within a team • Strong written and verbal communication skills in English • Security certifications such as Security+, SSCP, CEH, ISO/IEC 27001 Lead Implementer, ISO/IEC 27001 Lead Auditor, or similar would be an advantage • Experience with Qualys, Greenbone/OpenVAS, Wazuh, Splunk, or similar tools would be an advantage • Experience with MDM tools such as Hexnode or similar, as well as endpoint hardening, would be an advantage • Security automation experience using Python, Bash, or PowerShell would be an advantage • Hands-on experience with SonarQube, Semgrep, Snyk, OWASP ZAP, Trivy, or similar would be an advantage • Experience with CI/CD security using Bitbucket Pipelines, Jenkins, or similar tools would be an advantage • Experience with secure-SDLC practices, including threat modelling, security code reviews, and secrets scanning, would be an advantage • Exposure to cloud and virtualization platforms and their security models would be an advantage • Previous participation in an ISO/IEC 27001 certification program or customer security audits would be an advantage

🏖️ Benefits

• A role at the forefront of cloud technology with real impact and growth opportunities • A collaborative environment where your ideas are valued and shipped • Other perks and engagement opportunities • Share options • Referral bonuses • Certifications and learning opportunities in line with interest and role requirements

Apply Now