Cloud Security Engineer

Job not on LinkedIn

đŸ”„ 1 minute ago

đŸ‡ȘđŸ‡ș Europe – Remote

⏰ Full Time

🟡 Mid-level

🟠 Senior

đŸ‘źâ€â™‚ïž Cybersecurity / Security Engineer

đŸ‘» Ghost score 14%

infoinfo
Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of YGO

YGO

11 - 50 employees

Founded 2024

✈ Travel

đŸ€– Artificial Intelligence

☁ SaaS

💰 Seed Round - YGO on 2025-02

Travel ‱ Artificial Intelligence ‱ SaaS

YGO is a B2B AI infrastructure provider for travel platforms. It delivers a modular, API-first suite of AI capabilities—search, personalized recommendations, real-time packaging of flights/hotels/activities and ancillaries, content enrichment and automation, and AI customer service—that integrate with travel platforms and go live in weeks. YGO positions itself as purpose-built for travel complexity, trained on millions of transactions, and focused on driving measurable business impact (higher conversion, larger baskets, and reduced manual operations) for tour operators, OTAs, airlines and travel agencies.

📋 Description

‱ Own hands-on security engineering and build the security function as the company grows ‱ Review source code and architecture across APIs, backend services, and internal tooling ‱ Conduct targeted penetration testing and work with engineers on root causes and practical fixes ‱ Manage vulnerabilities and commissioned external penetration tests ‱ Own alerting, intrusion detection, incident processes, and the on-call path ‱ Harden cloud and platform security, including access control, network boundaries, secrets, containers, deployment pipelines, CI/CD, repositories, and dependencies ‱ Secure APIs through authentication, authorization, tenant isolation, token scoping and lifecycle, abuse prevention, enterprise SSO, and audit trails ‱ Secure AI systems against prompt injection and risks involving tools, agents, MCP, retrieval, data ingestion, and data residency ‱ Manage identity and company security, including employee SSO, MFA, privileged access, onboarding/offboarding, access reviews, MDM, endpoint security, and SaaS access ‱ Conduct threat modelling and secure design reviews across engineering pods ‱ Set security priorities and roadmap based on actual risk ‱ Decide what security capabilities to build, buy, automate, or defer ‱ Grow the security team and hire into it ‱ Represent security to enterprise clients ‱ Lead the SOC 2 programme on Drata

🎯 Requirements

‱ 5+ years of hands-on security work spanning more than one discipline ‱ Application security depth, including web/API attack knowledge, code review, and targeted penetration testing ‱ Strong grasp of authentication and authorization, including OAuth, OIDC, sessions, token handling, and access control ‱ Cloud security fundamentals covering identity, network, workload, and pipeline security ‱ Defensive experience investigating real incidents and building or improving detection and alerting ‱ Threat modelling and secure architecture for cloud, container, and API systems ‱ Engineering background; ability to work comfortably in a codebase and build security solutions ‱ Prior Go experience is a plus, not a requirement ‱ Experience in resource-constrained environments such as startups, small security teams, or consultancies ‱ Appetite to build and eventually lead a security team; prior leadership experience is a plus, not a requirement ‱ Working proficiency with Claude Code; specific examples required ‱ Judgement about security pace in a company that ships daily ‱ Experience of SOC 2, ISO 27001, or demanding enterprise security reviews ‱ Excellent spoken and written English ‱ European or African time zones (±3 hours from CET) ‱ Available full-time, 40 hours per week ‱ Nice-to-have: AI and LLM security, early security hire experience, security engineering leadership or mentoring, Go, security tooling or automation, MDM, endpoint protection, identity provider administration, compliance automation tooling, security certifications, GDPR, travel or GDS exposure, German

đŸ–ïž Benefits

‱ Full-time employment (40 hours per week)

Apply Now

Similar Jobs

đŸ”„ 20 hours ago

Newxel

501 - 1000

đŸ’Œ Consulting

📩 Logistics

đŸ„ Healthcare

Senior macOS Engineer owning native endpoint security agents for Check Point’s enterprise AI platform. Building TLS interception, proxy controls, and data-loss protections across managed Macs.

Cloud

MacOS

Objective-C

Swift

🕒 August 23

Nebius Group

1001 - 5000

đŸ€– Artificial Intelligence

🏱 Enterprise

☁ SaaS

Vendor Security & Standards Manager enforcing standards across Nebius’s global AI cloud supply chain. Conducting international vendor inspections, corrective actions, and compliance reporting.

🕒 August 21

OX Security

51 - 200

🔒 Cybersecurity

☁ SaaS

🏱 Enterprise

Security Researcher analyzing supply-chain attacks, malware, and vulnerabilities for Ox Security’s AI-driven SDLC security platform. Building open-source tools and publishing research.

Cyber Security

Maven

SDLC

🕒 August 21

Pencil

51 - 200

đŸ€– Artificial Intelligence

📣 Marketing

đŸ€ B2B

Security specialist protecting Pencil’s generative-AI advertising SaaS platform. Managing endpoints, identity, cloud security and compliance evidence across remote operations.

AWS

Azure

Cloud

Cyber Security

Google Cloud Platform

🕒 August 10

Secfix

11 - 50

đŸ’Œ Consulting

đŸ„ Healthcare

📩 Logistics

Information Security Lead automating ISO 27001, GDPR, and GRC compliance for European companies at Secfix. Owning compliance content, audits, customer delivery, and platform roadmap execution.

AWS

Azure

Cloud

Google Cloud Platform