Security Solutions Engineer

Nebius
Austria +26 more
Remote

Who this role is best for

Geared toward security professionals comfortable with technical validation and vendor due diligence, with a preference for those experienced in cloud and compliance-focused domains.

Best fit for

  • Candidates with 6+ years in security engineering and hands-on PoC experience in cloud security tools.
    — “Minimum 6+ years in Security Engineering, Security Architecture, or a dedicated Security Research role focused on solution validation and vendor management.
  • Individuals with deep knowledge of cloud security frameworks and tools like Kubernetes, IaC, and network segmentation.
    — “Deep understanding of modern cloud security principles (e.g., AWS/Azure/GCP security models, Kubernetes/containers, network segmentation, IaC scanning, least privilege, identity-centric security, confidential computing).
  • Professionals who have worked in compliance-focused industries and are familiar with frameworks such as GDPR and SOC 2.
    — “Experience in a compliance-focused industry (e.g., finance, healthcare, or cloud infrastructure) and familiarity with frameworks such as ISO 27001, SOC 2, or GDPR.

Things to consider

  • The role demands a high level of technical autonomy and ownership in setting up and executing PoCs.
    — “Independently architect and deploy isolated PoC environments that accurately simulate our production infrastructure

How to stand out

  • Highlight your ability to translate complex security findings into strategic business recommendations.
    — “Exceptional analytical skills with the ability to translate complex technical findings into clear business risk and strategic recommendations.
  • Showcase your hands-on experience with enterprise-grade security tools like SIEM, EDR, and Secrets Management.
    — “Proven, hands-on experience with the architecture, deployment, and testing of two or more enterprise-grade security tools
  • Emphasize your background in cloud infrastructure and your ability to integrate tools via APIs and CI/CD pipelines.
    — “Strong scripting / programming skills (e.g., Python, Go, or similar) for automating PoCs, building test harnesses, and integrating tools via APIs and CI/CD pipelines.
  • Demonstrate your experience with market analysis and vendor evaluation for security products and services.
    — “Evaluate potential vendors based on technical capability, security posture, integration requirements, roadmap, data residency/compliance, and support quality
  • Demonstrate your ability to design test plans aligned with threat models and attack scenarios.
    — “Develop detailed, objective, and threat-aligned test plans and success criteria for all security solution Proof-of-Concepts (PoCs), including quantitative success metrics, coverage of key attack scenarios
Pace · SteadyCollaboration · HighAutonomy · MediumDecision Impact · TeamLevel · Senior

Derived from job-description analysis by Serendipath's career intelligence engine.

What success looks like

  • successful PoC execution
  • vendor selection
Typical background
security engineeringtechnical validation

Skills & requirements

Required

Security EngineeringVendor AssessmentTechnical Validation

Preferred

Cloud SecurityAI

Stack & domain

Strategic Solution EvaluationVendor AssessmentProof-of-concept (poc) ValidationSecurity RequirementsEnterprise-grade SolutionsCloud InfrastructureAi/mlSecurity ToolingServicesCspm/cnappDLPIam/igaEdr/xdrData SecurityKubernetes SecurityAi/ml SecurityProblem-solvingTeamworkLeadershipOwnershipCommunicationEnterpriseSecurityCloud

About the role

Original posting from Nebius

About Nebius:

Nebius is leading a new era in cloud infrastructure for the global AI economy. We are building a full-stack AI cloud platform that supports developers and enterprises from data and model training through to production deployment, without the cost and complexity of building large in-house AI/ML infrastructure.

Built by engineers, for engineers. From large-scale GPU orchestration to inference optimization, we own the hard problems across compute, storage, networking and applied AI.

Listed on Nasdaq (NBIS) and headquartered in Amsterdam, we have a global footprint with R&D hubs across Europe, the UK, North America and Israel. Our team of 1,500+ includes hundreds of engineers with deep expertise across hardware, software and AI R&D.

The role

We are seeking a Security Solutions Engineer with a strong background in strategic solution evaluation, vendor assessment, and hands-on Proof-of-Concept (PoC) validation. This role is a crucial bridge between identifying customer security requirements and implementing best-in-class, enterprise-grade solutions. You will be responsible for defining the criteria, researching the market, and executing technical validation for all major security tooling and services adopted by the company. 

Key responsibilities: 

  • Strategic Research & Requirement Definition 

Threat-to-Solution Mapping: Proactively analyze customer expectations, regulatory/compliance drivers, and threat models to define precise functional and non-functional requirements for new security solutions. 

Market Analysis & Scouting: Conduct thorough market scans to identify cutting-edge security products, platforms, and vendors across key domains (e.g., CSPM/CNAPP, DLP, IAM/IGA, EDR/XDR, data security, Kubernetes security, and AI/ML security). 

Vendor Due Diligence: Evaluate potential vendors based on technical capability, security posture, integration requirements, roadmap, data residency/compliance, and support quality, and shortlist candidates for the PoC phase. 

  • Technical Validation & Proof-of-Concept (PoC) Leadership 

PoC Planning & Design: Develop detailed, objective, and threat-aligned test plans and success criteria for all security solution Proof-of-Concepts (PoCs), including quantitative success metrics, coverage of key attack scenarios, and opportunities for automation. 

Hands-on Environment Setup: Independently architect and deploy isolated PoC environments that accurately simulate our production infrastructure (e.g., setting up cloud VPCs, Kubernetes clusters, integrating with test data via IaC, and mimicking typical workloads). 

Testing & Analysis: Execute security research methodologies within the PoC (e.g., simulating attack scenarios, conducting deep feature validation, assessing false positive/negative rates) to rigorously test the vendor solution's effectiveness. 

Artifact Generation: Document all findings, including technical performance data, integration challenges, security gaps discovered, and clear comparative analysis metrics. 

  • Decision Support & Communication 

Recommendation & Insight: Deliver comprehensive, data-driven reports and compelling presentations to security and product leadership and engineering stakeholders, providing a clear recommendation for the optimal solution and vendor selection. 

Integration Planning: Work closely with Security Engineering, Platform/Infra, and DevOps teams to ensure selected solutions are feasible to integrate, operate, and scale, and to hand off PoC learnings into implementation plans. 

Must-haves: 

Experience: Minimum 6+ years in Security Engineering, Security Architecture, or a dedicated Security Research role focused on solution validation and vendor management. 

Technical Depth: Deep understanding of modern cloud security principles (e.g., AWS/Azure/GCP security models, Kubernetes/containers, network segmentation, IaC scanning, least privilege, identity-centric security, confidential computing). 

Programming and Automation - Strong scripting / programming skills (e.g., Python, Go, or similar) for automating PoCs, building test harnesses, and integrating tools via APIs and CI/CD pipelines. 

Solutions Expertise: Proven, hands-on experience with the architecture, deployment, and testing of two or more enterprise-grade security tools (e.g., SIEM/SOAR platforms, Endpoint Detection and Response (EDR), Vulnerability Management, Secrets Management). 

PoC Proficiency: Demonstrated ability to plan and execute complex technical Proof-of-Concepts, including setting up test environments and defining quantitative success metrics. 

Soft Skills: Exceptional analytical skills with the ability to translate complex technical findings into clear business risk and strategic recommendations. Strong written and verbal communication. 

Nice-to-haves: 

Experience in Cloud or Cloud-Heavy companies. 

Experience in a compliance-focused industry (e.g., finance, healthcare, or cloud infrastructure) and familiarity with frameworks such as ISO 27001, SOC 2, or GDPR. 

Advanced professional certifications such as CISSP, CCSK or relevant cloud certifications (e.g., AWS/GCP/Azure Security Specialty). 

Experience contributing to security standards, open-source tools, talks, or publications.  

Benefits & Perks:

Competitive compensation

Career growth and learning opportunities

Flexibility and ownership

Collaborative and innovative culture

Opportunity to work on impactful AI projects

International environment and talented teams

What's it like to work at Nebius:

Fast moving - Bold thinking - Constant growth - Meaningful impact - Trust and real ownership - Opportunity to shape the future of AI 

Equal Opportunity Statement:

Nebius is an equal opportunity employer. We are committed to fostering an inclusive and diverse workplace and to providing equal employment opportunities in all aspects of employment. We do not discriminate on the basis of race, color, religion, sex (including pregnancy), national origin, ancestry, age, disability, genetic information, marital status, veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by applicable law.

Applicants must be authorized to work in the country in which they apply and will be required to provide proof of employment eligibility as a condition of hire. 

If you need accommodations during the application process, please let us know.

Source: Nebius careers

Similar roles