
Senior Security Engineer
The Mill Adventure
full-time
Posted on:
Location Type: Remote
Location: Remote • 🇪🇺 Anywhere in Europe
Visit company websiteSalary
💰 €60,000 - €70,000 per year
Job Level
Senior
Tech Stack
AWSCloudCyber SecurityGoPythonSDLCTerraformTypeScript
About the role
- Architect and lead the design and implementation of our security controls across our cloud infrastructure, applications, and CI/CD pipelines.
- Coach and mentor developers and engineers on secure coding practices, threat modeling, and cloud security, fostering a security-first culture within our teams.
- Own the security of the SDLC by integrating and automating security tools (SAST, DAST, SCA) and championing secure coding practices with our development teams.
- Engineer and maintain a robust cloud security posture, primarily in AWS, by implementing and managing security services, automating compliance checks, and hardening configurations.
- Own the response to security alerts by investigating, triaging, and remediating threats across our cloud and application environments.
- Architect and guide our IAM strategy, collaborating with engineering teams to ensure secure, least-privilege access for all human and machine identities.
- Automate everything. Use your coding and scripting skills to automate security processes, alerts, and remediation actions to improve our security response time and efficacy.
Requirements
- 5+ years of hands-on experience in a technical security engineering role.
- Deep expertise in Cloud Security, particularly with AWS and Cloudflare.
- Hands-on experience with services like AWS IAM, Security Hub, GuardDuty, WAF and their equivalents.
- A genuine passion for cybersecurity, demonstrated by staying current with the latest industry trends, attack vectors, and threat intelligence.
- Proven experience embedding security into the CI/CD pipeline and working with tools for SAST, DAST, and SCA.
- Solid understanding of industry security frameworks such as the NIST Cybersecurity Framework (CSF), CIS Benchmarks, or the CSA Cloud Controls Matrix.
- Strong proficiency in at least one language for automation and security tooling (e.g., Python, Go, Bash), with experience in TypeScript being a major plus.
- Hands-on experience with Infrastructure as Code (IaC) and its associated security challenges (e.g., Terraform, CloudFormation).
- An ownership mindset. You are a proactive, accountable, and results-driven professional who can work autonomously to drive change.
- Relevant security certifications (e.g., CISSP, AWS Certified Security, CEH) are a plus, but practical experience is paramount.
Benefits
- Private health insurance
- Learning budget
- Parking/transport or co-working allowance
- Company wide and team based get togethers
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard skills
cloud securitysecure coding practicesthreat modelingSASTDASTSCAAWSInfrastructure as CodePythonTerraform
Soft skills
coachingmentoringownership mindsetproactiveaccountableresults-drivenautonomouscommunicationcollaborationfostering security culture
Certifications
CISSPAWS Certified SecurityCEH