Skip to content
← Back to job listings

Security engineer | mid - Senior

nexos-ai · Vilnius

RemoteImported listingfull-time3 days ago

About The Role

As a Security Engineer at <nexos.ai> you will own the security of the cloud and Kubernetes platform behind a live AI product - an environment where AI is both the product and the primary risk surface, and where AI-specific attack paths are part of the threat model, not an <afterthought.You> will bring an attacker's mindset to defense, work closely with the SOC and DevOps teams, and act as the internal technical anchor that bridges cloud security, detection, and engineering, with the Information Security Lead as your strategic counterpart.Main Responsibilities:Own the security of <nexos.ai> cloud and Kubernetes infrastructure - triage findings, set priorities, assess the impact of changes, drive remediation to completion within reasonable timeframes, and develop policies for an environment where AI is both the product and the attack surfaceHarden Kubernetes and cloud infrastructure end-to-end - covering container security, network policies, identity, and secrets managementOwn the resolution of SOC-escalated alerts - investigating findings, making sound judgments on what requires action, and coordinating remediation with DevOps and engineering teamsContinuously identify security gaps across the environment - drive remediation, propose improvements, and engage the right teams and stakeholders based on the scope and impact of each issueConduct cloud and AI-focused threat modeling and proactive threat hunting - identifying realistic attack paths and closing them before they can be exploitedEmbed security into CI/CD pipelines, infrastructure-as-code, and GitOps delivery - automated scanning, pipeline gates, and shift-left practicesBuild scripts and automation to eliminate repetitive security tasks and improve operational efficiency,Core Requirements:A solid foundation in security engineering - cloud, application, or infrastructure - with a demonstrated appetite for learning new domains and a track record of mastering themSolid working knowledge of cloud environments, container security, or infrastructure-as-code - AWS experience is a strong plusExperience in alert triage, incident investigation, or security operations; comfortable making judgment calls and driving findings to resolutionThreat modeling experience or a strong intuition for how attackers think - able to identify realistic attack paths and translate them into defensive actionAble to read and write scripts to automate security tasks and investigationsStrong collaborator, who works credibly with technical teams and communicates security risks clearly to leadershipThrives in a fast-moving startup environment, takes ownership, builds from scratch, and drives initiatives independently.Bonus Point For:Hands-on experience with a CNAPP platform (e.g. Wiz)Familiarity with AI/ML infrastructure securityOffensive background (penetration testing, red teaming, CTFs, or security research)Relevant certifications (AWS Security Specialty, CKS, OSCP, or equivalent)Community contributions (CVEs, bug bounty recognition, open-source tools, or security writing). Salary range: Gross salary is 3200 - 6000 EUR per month.What We OfferProfessional growth. Internal and external events, online training, conferences, books - everything you need to reach your full <potential.Health> benefits. Private health insurance, online & on-site workouts (LT) / online workouts & sports access card (PL), consultations - to feel and be your <best.Team> spirit. Team buildings and parties with games, shows, tastings, food coupons, gifts - and it's on us.More free time. Stay with us and additional vacation days will be added to your calendar.Additional paid leave. Additional days are covered by us in cases of illness or special occasions.Flexibility. Flexible working time arrangement.

This is an external listing. JobSpring does not represent or verify the employer. Report this listing