Logo for Nebius Group

Senior/Staff Infrastructure Security Engineer

Role overview

Qualifications

  • 6+ years of experience in network, infrastructure or cloud security
  • Strong understanding of modern cloud architectures and deployment models
  • Solid knowledge in networks, distributed systems and Linux systems engineering
  • Hands-on experience with network, VPN and Linux security

Responsibilities

  • Design and implement security measures to protect cloud and on-premises infrastructure
  • Identify and remediate vulnerabilities in cloud environments, networks, and operating systems
  • Build and maintain cloud and infrastructure security tools
  • Perform security reviews, threat modeling and risk assessments of infrastructure components

Key facts

Hard skills

Other skills

  • Collaboration
  • Problem Solving

About the company

Nebius Group logo

Nebius Group

Cloud Computing & Infrastructure (IaaS/PaaS)

Nebius Group is building one of the largest commercially available AI infrastructure businesses, based in Europe. Our core business is an AI-centric cloud platform built for intensive AI workloads. We are building full-stack infrastructure to service the explosive growth of the global AI industry, including large-scale GPU clusters, cloud platforms and tools and services for developers. Our headquarters and main R&D presence is in Amsterdam, with additional R&D and commercial hubs in Europe, North America and Israel. Our businesses operate and serve customers on four continents. Our name reflects our mission and values as a company. Combining nebula, the Latin word for cloud, with a reference to the endless Möbius strip, the name Nebius embodies our belief in the endless possibilities offered by cloud technologies. In addition to our core AI infrastructure business, we are developing three other businesses that operate under their own distinctive individual brands: • Toloka AI – a data partner for all stages of AI development from training to evaluation; • TripleTen – a leading edtech player in the US and certain other markets, re-skilling people for careers in tech; • Avride – one of the most experienced teams developing autonomous driving technology for self-driving cars and delivery robots. The group is led by Arkady Volozh, the entrepreneur and visionary co-founder of Yandex.

Company details

IndustryCloud Computing & Infrastructure (IaaS/PaaS)
Company size1001 - 5000

Your match analysis

See how your profile stacks up against this role.

We compared the job requirements to your profile to show where you're strong and where you fall short.

Job description

About Nebius:

Nebius is leading a new era in cloud infrastructure for the global AI economy. We are building a full-stack AI cloud platform that supports developers and enterprises from data and model training through to production deployment, without the cost and complexity of building large in-house AI/ML infrastructure.

Built by engineers, for engineers. From large-scale GPU orchestration to inference optimization, we own the hard problems across compute, storage, networking and applied AI.

Listed on Nasdaq (NBIS) and headquartered in Amsterdam, we have a global footprint with R&D hubs across Europe, the UK, North America and Israel. Our team of 1,500+ includes hundreds of engineers with deep expertise across hardware, software and AI R&D.

Infrastructure security

Infrastructure is a special type of “products“, securing it demands engineers with a distinct skill set. It includes ik8s, server infrastructure, the backbone network, GPU fabrics, public clouds, and more. The team is responsible for hardening, monitoring, and securing these foundational infrastructure services, and for driving company-wide projects such as secure platform bootstrapping, zero-touch production, and secure access controls.


The role

We are looking for an Senior/Staff Infrastructure Security Engineer to secure our cloud and on-premises infrastructure by implementing security controls, monitoring threats, ensuring compliance with industry standards and respond to security incidents. The ideal candidate has a strong background in cloud security, Linux hardening, and network security.

Your responsibilities will include:

  • Design and implement security measures to protect cloud and on-premises infrastructure.

  • Identify and remediate vulnerabilities in cloud environments, networks, and operating systems.

  • Build and maintain cloud and infrastructure security tools.

  • Perform security reviews, threat modeling and risk assessments of infrastructure components.

  • Develop and maintain security guidelines for Network and SRE teams.

  • Collaborate with Network and SRE teams to integrate security best practices into their processes and systems.

  • Stay updated on the latest security threats, vulnerabilities, and mitigation techniques.

  • Serve as an network and infrastructure security subject matter expert to other teams.

We expect you to have:

  • 6+ years of experience in network, infrastructure or cloud security.

  • Strong understanding of modern cloud architectures and deployment models (VMs, containers, serverless, Kubernetes).

  • Solid knowledge in networks, distributed systems and Linux systems engineering.

  • Hands-on experience with network, VPN and Linux security.

  • Understanding of Identity and Access Management (IAM) systems.

  • Experience with security automation tools and scripting (e.g. Python, Bash, Go, etc.) and willingness to learn Go, if necessary.

  • Experience in using and accessing security of Infrastructure as Code (Terraform).

  • Experience in hardening Linux based systems (apparmor, seccomp, etc.).

  • Experience in hardening Kubernetes.

It will be an added bonus if you have:

  • Proficiency in securing AWS, GCP, or Azure environments.

  • Experience in conducting threat-modeling sessions.

  • Experience in designing, building, and maintaining Identity Aware Proxies or Bastion hosts.

  • Experience in translating compliance and regulation requirements into technical specifications.

  • Experience in exploiting vulnerabilities in Linux kernel, VMs, containers, and networks.

  • Experience in securing bare metal workloads.

  • Security certifications such as OSCP or CKS.

We conduct coding interviews as part of the process.

Benefits & Perks:

  • Competitive compensation
  • Career growth and learning opportunities
  • Flexibility and ownership
  • Collaborative and innovative culture
  • Opportunity to work on impactful AI projects
  • International environment and talented teams

What's it like to work at Nebius:

Fast moving - Bold thinking - Constant growth - Meaningful impact - Trust and real ownership - Opportunity to shape the future of AI 

Equal Opportunity Statement:

Nebius is an equal opportunity employer. We are committed to fostering an inclusive and diverse workplace and to providing equal employment opportunities in all aspects of employment. We do not discriminate on the basis of race, color, religion, sex (including pregnancy), national origin, ancestry, age, disability, genetic information, marital status, veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by applicable law.

Applicants must be authorized to work in the country in which they apply and will be required to provide proof of employment eligibility as a condition of hire. 

If you need accommodations during the application process, please let us know.

Apply once. Then go straight to the hiring manager.

After you apply, unlock the direct contact details of the people who actually make the call. A quick follow-up makes you 5x more likely to land an interview.

MR

Marcus Rivera

Chief Revenue Officer

m.rivera@company.com
linkedin.com/in/marcusrivera
Unlocked after you apply
·

IT Security Manager Related jobs

Other jobs at Nebius Group

Premium

Reach out to the hiring manager directly.

Gain access to the contact details of the hiring managers who actually decide, and reach out to network with them directly. That, plus more when you upgrade:

  • Full match report with fit score and gaps
  • Career diagnostics on how recruiters read you
  • Curated company matches and warm intros
  • 48h early access to new roles

Cancel anytime.