Senior Security Engineer
This is the employer's own posting, not a copy on a job board.
What we know
Is it still open?
Confirmed still open
Last checked 1d ago — checked against the employer's own applicant tracking system, which is the company answering directly.
We re-read the employer's own applicant tracking system and the posting was still there. That is the company answering directly.
How old is it?
Posted 1d ago
The date the source published, not the day we noticed it (2026-09-30). Last seen at its source just now.
We have tracked this listing since 30 Sep 2026 (1 days). The employer's own board has carried it every time we have read it, most recently just now.
Is it remote?
Remote - Hungary; Sofia, Bulgaria
That is the location the employer filed this posting under. Quoted as written — we do not re-word the source's own location.
Who may apply?
Hungary, Bulgaria
The description states no restriction of its own. This is the source's own tag.
Pay not stated
Similar roles pay €77.0k–84.8k/yr
Middle 50% of 9 listings that do state pay — Engineering · all levels · Bulgaria · EUR/year. This employer has published no salary; this is what comparable listings we hold disclose, never converted between currencies or periods. How this is calculated.
Skills named in the ad
Recognised terms only, from a fixed vocabulary — this is what CV matching compares against.
Carried by 1 source
-
greenhouse employer's own board first seen 1d ago · last seen just now
The listing
We are seeking a Senior Security Engineer to help monitor, investigate, and respond to security activity across cloud, identity, endpoint, and Linux-based environments. This role requires hands-on technical ability, strong scripting skills, and practical experience working with AWS, with GCP experience preferred.
- Monitor and investigate security alerts across cloud, identity, endpoint, and network environments.
- Review logs and activity from AWS, GCP, Active Directory, Linux systems, Windows systems, and security tools.
- Support incident response by gathering evidence, validating suspicious activity, and documenting findings.
- Write scripts to automate repetitive security tasks, log analysis, reporting, or enrichment.
- Assist with security reviews, including IAM, storage exposure, compute workloads, and network configurations.
- Investigate authentication activity, user behavior, privilege changes, and potential account compromise.
- Work with internal teams to understand systems, identify risks, and support remediation, compliance and audit activities.
- Be available for after-hours incident response when urgent security events require investigation or support.
- Experience with cloud security concepts, services, logs, and IAM.
- Strong scripting ability, preferably with Python, Bash, or PowerShell.
- Experience with SIEM platforms such as Splunk, Chronicle, Sentinel, or similar tools.
- Working knowledge of Linux and Windows systems, command line usage, permissions, processes, and logs.
- Basic to intermediate understanding of Active Directory, including users, groups, authentication, and privilege changes.
- Ability to read and interpret logs from cloud platforms, operating systems, and security tools.
- Understanding of common security concepts such as phishing, credential compromise, privilege escalation, lateral movement, and exposed services.
- Strong analytical, documentation, and communication skills.
Preferred Skills
- Experience with Google Cloud Platform security, including IAM, Cloud Logging, Compute Engine, Cloud Storage, VPCs, and service accounts.
- Exposure to Kubernetes, containers, or cloud-native workloads.
- Experience creating automation for security monitoring or response.
- Experience with Github/Gitlab
Minimum Qualifications
- 3-5 years of experience in security operations, incident response, systems administration, cloud operations, or a similar technical role.
- Hands-on experience using scripts to solve operational or security problems.
- Comfortable working in both cloud and Linux command-line environments.
Please note:
- Candidates must be available for after-hours incident response when urgent security events require investigation or support.
- The interview process will include a hands-on practical exercise conducted through screen sharing, where candidates will be asked to demonstrate relevant technical skills.