NE

Senior/Staff Infrastructure Security Engineer

Nebius

ILremote countryPosted Feb 17, 2025
Posting intelligenceMay be filled, listed long ago

Skills

kubernetesterraformpythonazuregooglecloudawsgoml

About the role

About Nebius:

Nebius is leading a new era in cloud infrastructure for the global AI economy. We are building a full-stack AI cloud platform that supports developers and enterprises from data and model training through to production deployment, without the cost and complexity of building large in-house AI/ML infrastructure.

Built by engineers, for engineers. From large-scale GPU orchestration to inference optimization, we own the hard problems across compute, storage, networking and applied AI.

Listed on Nasdaq (NBIS) and headquartered in Amsterdam, we have a global footprint with R&D hubs across Europe, the UK, North America and Israel. Our team of 1,500+ includes hundreds of engineers with deep expertise across hardware, software and AI R&D.

Infrastructure security

Infrastructure is a special type of “products“, securing it demands engineers with a distinct skill set. It includes ik8s, server infrastructure, the backbone network, GPU fabrics, public clouds, and more. The team is responsible for hardening, monitoring, and securing these foundational infrastructure services, and for driving company-wide projects such as secure platform bootstrapping, zero-touch production, and secure access controls.

The role

We are looking for an Senior/Staff Infrastructure Security Engineer to secure our cloud and on-premises infrastructure by implementing security controls, monitoring threats, ensuring compliance with industry standards and respond to security incidents. The ideal candidate has a strong background in cloud security, Linux hardening, and network security.

Your responsibilities will include:

Design and implement security measures to protect cloud and on-premises infrastructure.

Identify and remediate vulnerabilities in cloud environments, networks, and operating systems.

Build and maintain cloud and infrastructure security tools.

Perform security reviews, threat modeling and risk assessments of infrastructure components.

Develop and maintain security guidelines for Network and SRE teams.

Collaborate with Network and SRE teams to integrate security best practices into their processes and systems.

Stay updated on the latest security threats, vulnerabilities, and mitigation techniques.

Serve as an network and infrastructure security subject matter expert to other teams.

We expect you to have:

6+ years of experience in network, infrastructure or cloud security.

Strong understanding of modern cloud architectures and deployment models (VMs, containers, serverless, Kubernetes).

Solid knowledge in networks, distributed systems and Linux systems engineering.

Hands-on experience with network, VPN and Linux security.

Understanding of Identity and Access Management (IAM) systems.

Experience with security automation tools and scripting (e.g. Python, Bash, Go, etc.) and willingness to learn Go, if necessary.

Experience in using and accessing security of Infrastructure as Code (Terraform).

Experience in hardening Linux based systems (apparmor, seccomp, etc.).

Experience in hardening Kubernetes.

It will be an added bonus if you have:

Proficiency in securing AWS, GCP, or Azure environments.

Experience in conducting threat-modeling sessions.

Experience in designing, building, and maintaining Identity Aware Proxies or Bastion hosts.

Experience in translating compliance and regulation requirements into technical specifications.

Experience in exploiting vulnerabilities in Linux kernel, VMs, containers, and networks.

Experience in securing bare metal workloads.

Security certifications such as OSCP or CKS.

We conduct coding interviews as part of the process.

Benefits & Perks:

Competitive compensation

Career growth and learning opportunities

Flexibility and ownership

Collaborative and innovative culture

Opportunity to work on impactful AI projects

International environment and talented teams

What's it like to work at Nebius:

Fast moving - Bold thinking - Constant growth - Meaningful impact - Trust and real ownership - Opportunity to shape the future of AI

Equal Opportunity Statement:

Applicants must be authorized to work in the country in which they apply and will be required to provide proof of employment eligibility as a condition of hire.

If you need accommodations during the application process, please let us know.

Questions about this role

Click "Apply with AI Applyd" above and you are done. Your resume is rewritten for this advert, the screening questions are answered, and it is submitted on Nebius's own hiring system. No retyping your history, no fourteen tabs, no evening lost.

Compensation for Security Engineer roles in Israel varies widely by seniority, employer size, and remote vs onsite arrangement. Check the salary range on this listing when published, or browse our Security Engineer hub for Israel medians across recent openings.

You never touch the form - the application is filled and submitted for you on Nebius's own hiring system. It is not marked sent when we press submit. It is marked sent when a confirmation from their system arrives at the address we apply with, and your dashboard shows which stage each application is at until then.

Twelve applicant tracking systems have a real apply path: Workday, Greenhouse, Lever, Ashby, Workable, iCIMS, Personio, Recruitee, Teamtailor, Rippling, Breezy and SmartRecruiters. Your application goes in on the employer's own hiring system, never into an aggregator queue.

Want AI Applyd to auto-apply to roles like this?

We tailor your resume per posting, fill the forms, and track replies for you.