SECURITY TECHNICAL TEAM LEAD
Are you an experienced Security engineer looking to contribute your expertise to a new project?
ABOUT THE ROLE
We are seeking a Security Technical Team Lead for one of our partners, to help shape the team’s security vision, drive innovation, and work on complex technologies to design safeguards, develop secure practices, and mentor the team. This role blends technical expertise, leadership, and innovation to strengthen the organization’s security initiatives.
SOME MORE INTERESTING PROJECT FACTS
Our partners are an outsourcing company headquartered in Cluj-Napoca and point of contact in close-to-client locations in the UK and US.
From software solutions that power emerging industries with complex software architecture and integrations, to apps that improve the age-old business of sales and relationship management in B2B environments, they cover a wide range of diverse needs addressing them through methodical strategies and the latest tech.
The project you'd be joining is for a platform delivering best-in-class financing and software products for sustainable solutions form solar panels to roofing and windows.
DUTIES AND RESPONSIBILITIES
- Lead, participate in, and contribute to partnerships between security, engineering, product, and operations teams to build, orchestrate, and automate security controls and services in SaaS solutions, with an emphasis on building rather than advising;
- Support the product and application security team by defining and refining processes such as threat modeling, embedment models, and prioritization of features, defects, and vulnerabilities;
- Assist the red team with ongoing activities, including managing bug bounty programs and continuous penetration testing platforms;
- Lead the design and development of key security features for the GoodLeap platform, such as authentication (authn), authorization (authz), device profiling, and data safeguards;
- Mentor and provide technical guidance to other members of the security team;
- Support or build components of the security analytics platform;
- Contribute to investigations, threat hunting, and incident response activities in a supporting role; assist the monitoring and response team with creating playbooks for specific incident response scenarios;
- Collaborate with the security operations team to select, implement, and operate security solutions;
- Support the security operations team with the vulnerability management lifecycle;
- Ensure technical alignment across security solutions and initiatives within the team, from governance, risk, and compliance (GRC) to product security;
- Represent the security team in enterprise architecture forums as needed;
REQUIREMENTS
- Strong communicator with the ability to lead technical architecture discussions and drive technical decisions, while effectively communicating with non-technical audiences;
- Deep familiarity with AWS services, including KMS, SST, Container Registry, ELBs, Lambda, API Gateway, CloudTrail, IAM, and others (knowledge of GCP and/or Azure is a plus);
- Proven ability to establish credibility and build trust with engineers and operational staff; confident yet humble;
- Hands-on experience with microservices and associated orchestration tools, such as ECS, EKS, Nomad, and Istio, with an understanding of the operational and security implications of these technologies;
- Excellent understanding of both human and non-human identity management, as well as common enterprise and consumer authentication standards and use cases;
- Practical experience with CI/CD pipelines and DevOps tools, including Infrastructure-as-Code (IaC) tools like Terraform, Pulumi, or CDK; GitHub and GitHub Actions; artifact management; and secrets management tools such as Doppler and HashiCorp Vault;
- Passionate about learning new technologies; while you're not expected to know everything, you should demonstrate the ability and willingness to learn when necessary;
- Prior experience developing security services for products or enterprise platforms, ideally using Python, Node.js, TypeScript, or .NET;
- Proficiency in writing automation scripts in more than one language, with prior experience automating security processes in cloud or SaaS environments;
- Strong understanding of cryptography and key management use cases;
- Experience overseeing vulnerability and threat management at the infrastructure, platform, and application levels;
- Familiarity with penetration testing and red team exercises, including manual verification, exploitation, and lateral movement; prior oversight of bug bounty platforms or managed penetration testing services is a plus;
- Ability to balance a high-level view of security strategy with attention to detail, ensuring thoroughness in execution;
- Expertise with event management and Security Event Management (SEM) solutions, including data modeling for building event detection and alerting capabilities;
- Practical experience investigating incidents and performing threat hunting, with familiarity using common incident response tools and processes;
- Prior expertise with workforce security solutions, including zero-trust models and enterprise browsers.
- Role
- Software Engineering
- Locations
- Cluj-Napoca
- Remote status
- Hybrid Remote
YOUR TALENTS
Tech Talents
Soft Talents
WHAT GUIDES THEM
Their mission is to help build cutting-edge software solutions specifically designed to improve operational efficiency, increase productivity, help alleviate costs, and enhance customer experience, thus unlocking their client’s digital acceleration potential.
THEIR VALUES
-
Innovation as a Collective Mindset
They are intentional and thoughtful about creating a culture of innovation, where everyone feels empowered to think outside the box and come up with new ideas.
-
Customer Centricity
Quality in software development comes from truly understanding the client’s specifics. They focus not only on the quality of the products and solutions delivered but, also on the experience clients have with them, while working together.
-
Collaboration as a key driver
They focus on sharing common goals and achieving milestones together.
WHAT SETS THEM APART
They’re a results-driven team of engineering and creative professionals with a knack for innovation and using the latest technologies to help enterprises achieve digital transformation.
So far, they’ve built robust systems for players in solar, financial, ecommerce, education and mobility industries.
What started as a couple of technical teams building fixed-scope projects using bleeding edge tech for a portfolio of clients across the US & Australia soon turned into a fully formed customer-centric tech organization offering challenging positions for colleagues and constant growth at competitive prices for clients.
How will they support your growth and well-being?
-
Comprehensive Medical Insurance
-
Monthly Gym allowance up to 150 RON
-
24 holiday days plus 3 bonus days off
-
A day off on your birthday
-
Technical Trainings & Certificates
-
Learning & Development sessions
-
Weekly breakfast/lunch at the office
-
Yearly team building and other exciting company gatherings
Colleagues
Talent Matchmakers
When was the last time you thought about how your ideal workplace and job opportunity would look like?
Or received help in achieving that goal?
An organization that fits your values and principles, that would help you achieve your ambitions and professional goals. A role in which you would unveil your true potential and from which you would grasp your energy and motivation daily.
Cluj-Napoca
About TALENT MATCHMAKERS
We have been immersed in the IT ecosystem and technical recruitment since 2017. Given this, we have valuable insights regarding organizations and also a wide talent pool of candidates.
From us, you can expect genuine determination, open communication, a strong accuracy of candidates, and diligent, skillful hiring process management.
SECURITY TECHNICAL TEAM LEAD
Are you an experienced Security engineer looking to contribute your expertise to a new project?
Loading application form