
Security Engineer
ALGOQUANT
full-time
Posted on:
Location Type: Remote
Location: Anywhere in Europe
Visit company websiteExplore more
About the role
- Architect, deploy, and maintain secure network and system infrastructure across AWS, corporate, and hybrid environments, data centers.
- Implement and manage Zero Trust Architecture (ZTA) frameworks, leveraging tools such as Cato for secure access, segmentation, and traffic control.
- Lead configuration and hardening of Microsoft Entra ID (Azure AD), SSO, and Intune to establish robust identity, device, and access management policies.
- Oversee and continuously enhance system, application, and network security controls, including intrusion detection, endpoint protection, and vulnerability management.
- Automate security monitoring, compliance checks, and remediation workflows
- Integrate security controls into CI/CD and infrastructure-as-code pipelines to ensure consistent enforcement and auditability.
- Conduct regular risk assessments, security audits, and incident response exercises.
- Develop and enforce security baselines, policies, and monitoring for both cloud and on-prem environments.
- Collaborate with cross-functional teams to ensure compliance with internal and regulatory standards.
Requirements
- Deep expertise in network, system, identity, and datacenter security, with hands-on experience securing enterprise-grade or high-scale hybrid environments
- Strong practical experience with Microsoft Entra ID (Azure AD), including SSO, Conditional Access, MFA, and identity lifecycle management, as well as Microsoft Intune for endpoint management
- Proven experience designing and implementing Zero Trust Architecture (ZTA), including work with Cato Networks or comparable SASE / secure access frameworks
- Strong background in AWS security, including IAM roles and policies, least-privilege access models, VPC design, network segmentation, and cloud hardening
- Experience securing on-prem and colocation datacenter environments, including network segmentation, firewalling, secure routing, physical and logical access controls, and secure management of servers, hypervisors, and core infrastructure services
- Solid administration experience in Windows and Linux environments, including OS hardening, patch management, secure baseline configurations, intrusion detection, vulnerability scanning, and remediation
- Working knowledge of core security engineering tools, including SIEM and log analysis platforms (e.g., Splunk, Sentinel), vulnerability management tools (e.g., Tenable, Qualys), EDR/XDR, secrets management solutions, and certificate/key management
- Ability to leverage scripting and automation (e.g., PowerShell, Bash, Python) to improve security operations, reduce manual effort, and enforce consistency
- Familiarity with Infrastructure-as-Code (IaC) and integrating security controls into CI/CD pipelines
- Experience leading or participating in security incident response, including investigation, containment, root-cause analysis, and post-incident improvements
- Ability to perform threat modeling, risk assessment, and security architecture reviews, making pragmatic trade-offs based on business impact and risk
- Familiarity with security compliance frameworks (e.g., SOC 2, ISO 27001) and supporting audits through technical controls and evidence
- Experience evaluating, selecting, and integrating security tools and vendors in production environments
- Excellent analytical and communication skills, with the ability to explain complex security topics to both technical and non-technical stakeholders
- A proactive, ownership-driven mindset, focused on clarity, resilience, and continuous improvement of the overall security posture.
Benefits
- Remote first environment
- Competitive compensation, including performance-based incentives and long-term upside potential.
- Work at the forefront of quantitative trading and AI-driven research in crypto markets.
- Collaborate with world-class researchers, traders, and engineers to drive technological excellence.
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills & Tools
Zero Trust ArchitectureAWS securityMicrosoft Entra IDSSOMFAendpoint managementnetwork segmentationOS hardeningscriptingthreat modeling
Soft Skills
analytical skillscommunication skillsproactive mindsetownership-drivencollaborationrisk assessmentincident responsecontinuous improvementproblem-solvingleadership
Certifications
SOC 2ISO 27001