Nebius
Infrastructure Security Engineer
Job Summary
This role involves designing and implementing security measures for cloud and on-premises infrastructure, including identifying vulnerabilities and building security tools. The candidate should have experience in cloud security, Linux hardening, and network security, along with scripting and automation skills. Collaboration with engineering teams to integrate security best practices and staying informed about emerging threats are key responsibilities. The job offers opportunities for professional development within a hybrid work setting in a forward-thinking, innovative company.
Required Skills
Benefits
Job Description
Why work at Nebius
Nebius is leading a new era in cloud computing to serve the global AI economy. We create the tools and resources our customers need to solve real-world challenges and transform industries, without massive infrastructure costs or the need to build large in-house AI/ML teams. Our employees work at the cutting edge of AI cloud infrastructure alongside some of the most experienced and innovative leaders and engineers in the field.
Where we work
Headquartered in Amsterdam and listed on Nasdaq, Nebius has a global footprint with R&D hubs across Europe, North America, and Israel. The team of over 800 employees includes more than 400 highly skilled engineers with deep expertise across hardware and software engineering, as well as an in-house AI R&D team.
The Role
The Security Engineering Team within the Platform Security organization is responsible for the strategic selection, implementation, management, and optimization of cybersecurity tools and technologies that improve security capabilities of the organization's platform. This team is instrumental in fortifying the security posture, proactively identifying and responding to security threats, ensuring the resilience and protection of critical data, systems, and services.
We are looking for an Infrastructure Security Engineer to secure our cloud and on-premises infrastructure by implementing security controls, monitoring threats, ensuring compliance with industry standards and respond to security incidents. The ideal candidate has a strong background in cloud security, Linux hardening, and network security.
Your responsibilities will include:
-
Design and implement security measures to protect cloud and on-premises infrastructure.
-
Identify and remediate vulnerabilities in cloud environments, networks, and operating systems.
-
Build and maintain cloud and infrastructure security tools.
-
Perform security reviews, threat modeling and risk assessments of infrastructure components.
-
Develop and maintain security guidelines for Network and SRE teams.
-
Collaborate with Network and SRE teams to integrate security best practices into their processes and systems.
-
Stay updated on the latest security threats, vulnerabilities, and mitigation techniques.
-
Serve as an network and infrastructure security subject matter expert to other teams.
We expect you to have:
-
4+ years of experience in network, infrastructure or cloud security.
-
Strong understanding of modern cloud architectures and deployment models (VMs, containers, serverless, Kubernetes).
-
Solid knowledge in networks, distributed systems and Linux systems engineering.
-
Hands-on experience with network, VPN and Linux security.
-
Understanding of Identity and Access Management (IAM) systems.
-
Experience with security automation tools and scripting (e.g. Python, Bash, Go, etc.) and willingness to learn Go, if necessary.
-
Experience in using and accessing security of Infrastructure as Code (Terraform).
-
Experience in hardening Linux based systems (apparmor, seccomp, etc.).
-
Experience in hardening Kubernetes.
-
Strong problem-solving and analytical skills.
-
Good written and verbal communication skills in English.
-
Willingness to learn new things.
-
Being comfortable working independently.
It will be an added bonus if you have:
-
Proficiency in securing AWS, GCP, or Azure environments.
-
Experience in conducting threat-modeling sessions.
-
Experience in designing, building, and maintaining Identity Aware Proxies or Bastion hosts.
-
Experience in translating compliance and regulation requirements into technical specifications.
-
Experience in exploiting vulnerabilities in Linux kernel, VMs, containers, and networks.
-
Experience in securing bare metal workloads.
-
Security certifications such as OSCP or CKS.
We conduct coding interviews as part of the process.
What we offer
- Competitive salary and comprehensive benefits package.
- Opportunities for professional growth within Nebius.
- Hybrid working arrangements.
- A dynamic and collaborative work environment that values initiative and innovation.
We’re growing and expanding our products every day. If you’re up to the challenge and are excited about AI and ML as much as we are, join us!
Nebius
Discover the most efficient way to build, tune and run your AI models and applications on top-notch NVIDIA® GPUs.
See more jobsSafe Remote Job Search Tips
Verify Employer Thoroughly
Research the company's identity thoroughly before applying. Check for a professional website with contacts, active social media, and LinkedIn profiles. Verify details across platforms and look for reviews on Glassdoor or Trustpilot to confirm legitimacy.
Never Pay to Get a Job
Legitimate employers never require payment for applications, training, background checks, or equipment. Always reject upfront payment requests or demands for bank details, even if they claim it's for purchasing necessary work gear on your behalf.
Safeguard Your Personal Information
Protect sensitive data like SSN, bank details, or ID copies. Share this only after accepting a formal, written job offer. Ensure it's submitted via a secure company system or portal, never through insecure channels like standard email attachments.
Scrutinize Communication & Interviews
Watch for communication red flags: poor grammar, generic emails (@gmail), vague details, or undue pressure. Be highly suspicious of interviews held only via text or chat apps; legitimate companies typically use video or phone calls.
Beware of Unrealistic Offers
If an offer's salary or benefits seem unrealistically high for the work involved, be cautious. Research standard pay for similar roles. Offers that appear 'too good to be true' are often scams designed to lure you into providing information or payment.
Insist on a Formal Contract
Always secure and review a formal, written job offer or employment contract before starting work or sharing final personal details. Ensure it clearly defines your role, compensation, key terms, and conditions to avoid misunderstandings or scams.