Stop applying to remote jobs that are already dead.
Every listing verified, aged honestly, expired when filled.

All listings

SAP Fioneer via Workable

Cyber Defense Engineer

Level not stated Romania
still open verified 4h ago posted 14h ago checked 1h ago
Apply at apply.workable.com

This is the employer's own posting, not a copy on a job board.

What we know

Is it still open?

Confirmed still open

Last checked 4h ago — checked against the employer's own applicant tracking system, which is the company answering directly.

We re-read the employer's own applicant tracking system and the posting was still there. That is the company answering directly.

Check this listing's status as JSON

How old is it?

Posted 14h ago

The date the source published, not the day we noticed it (2026-09-18). Last seen at its source 1h ago.

Is it remote?

Marked remote on the employer's board

Their board carries a remote setting on this posting — a field they filled in, not wording we read. The location field names somewhere specific, which is usually where the team or the entity sits.

Who may apply?

Romania

The description states no restriction of its own. This is the source's own tag.

Pay not stated

Similar roles pay PLN 316.8k–368k/yr

Middle 50% of 24 listings that do state pay — Engineering · all levels · Eastern Europe · PLN/year. This employer has published no salary; this is what comparable listings we hold disclose, never converted between currencies or periods. How this is calculated.

Skills named in the ad

AzureISO 27001Incident ManagementLinuxSAPSOC 2

Recognised terms only, from a fixed vocabulary — this is what CV matching compares against.

Carried by 1 source

The listing

Innovation is and will always be the core to SAP Fioneer, and it is the promise of why we were spun out of SAP: agility, innovation, and delivery.

SAP Fioneer builds on a heritage of outstanding technology and a deep understanding of corporate and consumer demands. At the heart of it all it is simple: We bring financial services to the next level with innovative software solutions and platforms.

We are helping companies in the financial services industry to achieve speed, scalability, and cost-efficiency through digital business innovation, cloud technology, and solutions that cover banking and insurance processes end-to-end.

A global company, rapid growth, innovative people, and a lean organization make SAP Fioneer a place where you accelerate your future!

About the role

In this role, you will play a key part in strengthening our security operations by supporting incident response, enhancing detection capabilities, and driving automation across our defense activities. You will collaborate closely with IT, Privacy, and other stakeholders to improve security controls, ensure effective system hardening, and maintain compliance with key security standards and regulatory frameworks. This is a hands-on role with the opportunity to shape and continuously improve our overall security posture.

Responsibilities

  • Participate in the Incident Response (IR) function, investigating and responding to security incidents in a timely and effective manner
  • Automate IR and defense center activities by leveraging playbooks, automation rules, and scripts, ensuring consistency and efficiency across operations
  • Tune and develop detection rules aligned with organizational needs to maintain strong detection coverage and a high true-positive rate
  • Collaborate with IT and other relevant stakeholders to ensure proper hardening configurations across laptops and servers, and partner with the Privacy team on notifications to affected parties in the event of a data disclosure
  • Ensure ongoing compliance with relevant standards and frameworks, including ISO 27001, SOC 2, DORA, and others

Requirements

  • 3+ years of experience in defense engineering or incident response, with hands-on expertise configuring detection mechanisms
  • Strong understanding of cloud environments and experience with security tooling for detection and response (e.g., SIEM/XDR/EDR platforms such as Microsoft Sentinel, Defender, or equivalents). Azure knowledge is a plus.
  • Strong understanding of attacker methodologies, TTPs, and attack paths within cloud environments and across Windows, macOS, and Linux operating systems
  • Proficiency in scripting and KQL (Kusto Query Language) or similar query languages.
  • Working knowledge of APIs for security tooling and automation (e.g., Microsoft Graph, Defender, Purview, or equivalents)
  • Proficiency English language level, both written and verbal

Benefits

Join forces with some of the industry's most brilliant minds in a thrilling venture to shape the ever-evolving financial landscape.

Picture an environment that offers the best of both worlds: the agility, enthusiasm, and dynamism of a startup, seamlessly blended with the tried-and-true expertise, robust market presence, and vast customer network of a well-established organization.

At SAP Fioneer, you'll thrive in a flexible work setting that not only fosters creativity but also empowers you to think beyond conventional boundaries, bringing fresh concepts to the forefront and challenging the status quo. Here, you'll become an integral part of a diverse and globally connected team that we take immense pride in – a team that's perpetually expanding and innovating.

As a member of our workforce, you'll have the opportunity to carve your own career path, all while enjoying competitive compensation packages and advancement prospects based solely on your achievements.

Apply at apply.workable.com