Logo for Nebius Group

Infrastructure Security Engineer

Role overview

Qualifications

  • 4+ years of experience in network, infrastructure or cloud security.
  • Strong understanding of modern cloud architectures and deployment models (VMs, containers, serverless, Kubernetes).
  • Solid knowledge in networks, distributed systems and Linux systems engineering.
  • Hands-on experience with network, VPN and Linux security.

Responsibilities

  • Design and implement security measures to protect cloud and on-premises infrastructure.
  • Identify and remediate vulnerabilities in cloud environments, networks, and operating systems.
  • Build and maintain cloud and infrastructure security tools.
  • Perform security reviews, threat modeling and risk assessments of infrastructure components.

About the company

Nebius Group logo

Nebius Group

Cloud Computing & Infrastructure (IaaS/PaaS)

Nebius Group is building one of the largest commercially available AI infrastructure businesses, based in Europe. Our core business is an AI-centric cloud platform built for intensive AI workloads. We are building full-stack infrastructure to service the explosive growth of the global AI industry, including large-scale GPU clusters, cloud platforms and tools and services for developers. Our headquarters and main R&D presence is in Amsterdam, with additional R&D and commercial hubs in Europe, North America and Israel. Our businesses operate and serve customers on four continents. Our name reflects our mission and values as a company. Combining nebula, the Latin word for cloud, with a reference to the endless MΓΆbius strip, the name Nebius embodies our belief in the endless possibilities offered by cloud technologies. In addition to our core AI infrastructure business, we are developing three other businesses that operate under their own distinctive individual brands: β€’ Toloka AI – a data partner for all stages of AI development from training to evaluation; β€’ TripleTen – a leading edtech player in the US and certain other markets, re-skilling people for careers in tech; β€’ Avride – one of the most experienced teams developing autonomous driving technology for self-driving cars and delivery robots. The group is led by Arkady Volozh, the entrepreneur and visionary co-founder of Yandex.

Company details

IndustryCloud Computing & Infrastructure (IaaS/PaaS)
Company size1001 - 5000

Your match analysis

See how your profile stacks up against this role.

We compared the job requirements to your profile to show where you're strong and where you fall short.

Job description

Why work at Nebius
Nebius is leading a new era in cloud computing to serve the global AI economy. We create the tools and resources our customers need to solve real-world challenges and transform industries, without massive infrastructure costs or the need to build large in-house AI/ML teams. Our employees work at the cutting edge of AI cloud infrastructure alongside some of the most experienced and innovative leaders and engineers in the field.

Where we work
Headquartered in Amsterdam and listed on Nasdaq, Nebius has a global footprint with R&D hubs across Europe, North America, and Israel. The team of over 1400 employees includes more than 400 highly skilled engineers with deep expertise across hardware and software engineering, as well as an in-house AI R&D team.

The role

The Security Engineering Team within the Platform Security organization is responsible for the strategic selection, implementation, management, and optimization of cybersecurity tools and technologies that improve security capabilities of the organization's platform. This team is instrumental in fortifying the security posture, proactively identifying and responding to security threats, ensuring the resilience and protection of critical data, systems, and services.

We are looking for an Infrastructure Security Engineer to secure our cloud and on-premises infrastructure by implementing security controls, monitoring threats, ensuring compliance with industry standards and respond to security incidents. The ideal candidate has a strong background in cloud security, Linux hardening, and network security.

Your responsibilities will include:

  • Design and implement security measures to protect cloud and on-premises infrastructure.

  • Identify and remediate vulnerabilities in cloud environments, networks, and operating systems.

  • Build and maintain cloud and infrastructure security tools.

  • Perform security reviews, threat modeling and risk assessments of infrastructure components.

  • Develop and maintain security guidelines for Network and SRE teams.

  • Collaborate with Network and SRE teams to integrate security best practices into their processes and systems.

  • Stay updated on the latest security threats, vulnerabilities, and mitigation techniques.

  • Serve as an network and infrastructure security subject matter expert to other teams.

We expect you to have:

  • 4+ years of experience in network, infrastructure or cloud security.

  • Strong understanding of modern cloud architectures and deployment models (VMs, containers, serverless, Kubernetes).

  • Solid knowledge in networks, distributed systems and Linux systems engineering.

  • Hands-on experience with network, VPN and Linux security.

  • Understanding of Identity and Access Management (IAM) systems.

  • Experience with security automation tools and scripting (e.g. Python, Bash, Go, etc.) and willingness to learn Go, if necessary.

  • Experience in using and accessing security of Infrastructure as Code (Terraform).

  • Experience in hardening Linux based systems (apparmor, seccomp, etc.).

  • Experience in hardening Kubernetes.

  • Strong problem-solving and analytical skills.

  • Good written and verbal communication skills in English.

  • Willingness to learn new things.

  • Being comfortable working independently.

It will be an added bonus if you have:

  • Proficiency in securing AWS, GCP, or Azure environments.

  • Experience in conducting threat-modeling sessions.

  • Experience in designing, building, and maintaining Identity Aware Proxies or Bastion hosts.

  • Experience in translating compliance and regulation requirements into technical specifications.

  • Experience in exploiting vulnerabilities in Linux kernel, VMs, containers, and networks.

  • Experience in securing bare metal workloads.

  • Security certifications such as OSCP or CKS.

We conduct coding interviews as part of the process.

What we offer 

  • Competitive salary and comprehensive benefits package.
  • Opportunities for professional growth within Nebius.
  • Flexible working arrangements.
  • A dynamic and collaborative work environment that values initiative and innovation.

We’re growing and expanding our products every day. If you’re up to the challenge and are excited about AI and ML as much as we are, join us!

Apply once. Then go straight to the hiring manager.

After you apply, unlock the direct contact details of the people who actually make the call. A quick follow-up makes you 5x more likely to land an interview.

MR

Marcus Rivera

Chief Revenue Officer

m.rivera@company.com
linkedin.com/in/marcusrivera
Unlocked after you apply
Β·

Network Security Engineer Related jobs

Other jobs at Nebius Group

Premium

Reach out to the hiring manager directly.

Gain access to the contact details of the hiring managers who actually decide, and reach out to network with them directly. That, plus more when you upgrade:

  • Full match report with fit score and gaps
  • Career diagnostics on how recruiters read you
  • Curated company matches and warm intros
  • 48h early access to new roles

Cancel anytime.