You will join a three-person team where responsibility is genuinely shared: no ticket queues and no “that’s not my area.” We plan together, cover for one another, and usually implement and operate the security controls we design ourselves. This means you will see the impact of your work immediately - not at some point in the distant future.
Your Responsibilities
- Security Architecture & Cloud Guardrails: You will take technical ownership of the security architecture and controls across our Azure environment - from Defender for Cloud and Microsoft Sentinel to Log Analytics. You will build and maintain the corresponding guardrails directly in Terraform.
- Detection Engineering: You will develop and continuously improve our detections in close collaboration with our Security Analyst, who is responsible for day-to-day SIEM monitoring and triage. You will work as a well-coordinated team rather than in separate silos.
- Vulnerability Management: You will further develop our vulnerability management and monitoring across a hybrid environment. This includes our growing cloud landscape as well as the existing on-premises stack for as long as the migration is ongoing.
- Security Beyond the Cloud: You will contribute your expertise beyond cloud security, including identity, endpoint security, application security, incident response, and AI. Using your security engineering skills, you will, for example, develop tooling for AI-assisted penetration testing within our team and translate it into practical, scalable processes.
- AI-Assisted Engineering: You will use tools such as Claude Code to build and maintain internal security tools and automations. At the same time, you will help us identify AI-specific risks early—from the secure use of AI coding assistants to prompt injection.
