Ness Digital Engineering

Cyber Security Operations Engineer

Ness Digital Engineering Timișoara, Romania

Software Development · 1,001-5,000 employees

19 h ago
Remote Senior (5-10 yrs) Full-time Romania
Log in to apply, save this posting, or score it against your profile with AI.

About the role

The role involves designing, implementing, and maintaining security measures to protect organizational systems and SaaS products. Responsibilities include leading incident response efforts, managing vulnerability assessments, and monitoring security logs to ensure data integrity.

What they look for

Cyber security Security operations Vulnerability management Incident response SIEM EDR Cloud security AWS Azure GCP Networking protocols Identity and access management Penetration testing Security tooling Risk mitigation

Requirements

Candidates must have at least 5 years of experience in information security with hands-on engineering and operations expertise. Proficiency in networking, cloud technologies, and security frameworks like NIST or ISO 27001 is required.

Benefits

Flexible remote options Learning resources Certification support Professional development

Full description

Job ID 9242

Life at Ness

At Ness, people come first. Here, you'll be part of a vibrant team that values curiosity, innovation, and growth. We work with industry-leading clients on projects that truly make an impact while supporting every team member in carving out their unique career path. With resources for learning, certifications, and hands-on experiences, Ness offers you more than just a job—it’s a place where your ideas, ambition, and well-being matter.

The Role

We are seeking a highly skilled and experienced Senior Cyber Security Operations Engineer to join our team. The ideal candidate will be responsible for designing, implementing, and maintaining security measures to protect our organization's computer systems, networks, and SaaS products. This role requires a hands-on approach to identifying vulnerabilities, implementing solutions, and staying abreast of the latest security trends and technologies. The Senior Information Security Engineer will collaborate closely with cross-functional teams to ensure the confidentiality, integrity, and availability of our systems and data.

Key Responsibilities

  • Security Tooling:  Deploy, maintain, integrate, and perform initial configuration of security tools.
  • Vulnerability Management: Coordinate and conduct regular security assessments, penetration testing, and vulnerability scans to identify and address security weaknesses proactively.
  • Incident Response: Lead incident response efforts to promptly detect, analyze, and mitigate security incidents and breaches. Develop and maintain incident response plans and procedures.
  • Security Operations: Monitor security logs and alerts, investigate suspicious activities, and respond to security events in real-time. Implement and maintain security tools and technologies to enhance our security posture.
  • Identity and Access Management: Manage user access controls, authentication mechanisms, and identity management systems to ensure appropriate levels of access and privilege.
  • Security Awareness: Promote security awareness and best practices among employees through training sessions, communication campaigns, and ongoing education initiatives.
  • Research and Development: Stay updated on emerging threats, vulnerabilities, and security technologies. Evaluate new security products and technologies to enhance our security infrastructure.
  • Documentation: Create and maintain detailed documentation of security policies, procedures, configurations, and incident response plans.
  • Collaboration: Work closely with cross-functional teams, including IT, engineering, and compliance, to integrate security into all aspects of our systems and operations.

Qualifications and Skills 

  • At least 5 years of experience in information security, with a focus on hands-on security engineering and operations.
  • In-depth knowledge of networking protocols, operating systems, and cloud technologies.
  • Strong understanding of security principles, practices, and frameworks (e.g., PCI, NIST, ISO 27001).
  • Experience with security tools such as SIEM, IDS/IPS, endpoint protection, and penetration testing tools.
  • Experience with public cloud security, specifically AWS, Azure, and Google Cloud Platform (GCP).
  • Relevant certifications such as CISSP, CISM, CEH, or cloud-specific certifications (e.g., AWS Certified Security – Specialty, Microsoft Certified:

Azure Security Engineer Associate, Google Professional Cloud Security Engineer) are highly desirable.

  • Excellent analytical and problem-solving skills, with the ability to identify and mitigate security risks effectively.
  • Strong communication and interpersonal skills, with the ability to collaborate effectively with stakeholders at all levels of the organization.

Other must-have skills

  • SIEM , EDR;
  • Security incident / alerts investigation / analysis (mandatory);
  • Deployment / administration of security tools;
  • Security alerts monitoring.

Why Join Us

At Ness, you will work with diverse, talented professionals who are dedicated to making an impact through technology. We encourage applicants of all backgrounds to apply—even if you don’t meet every requirement, we’d love to connect with you if this role excites you. We’re committed to creating an inclusive workplace that celebrates each team member’s unique talents. With flexible remote options, diverse projects, and access to development resources, joining Ness means building a career that’s meaningful and impactful.

What to Expect Next

We believe great experiences start with transparency—and that includes our hiring process. Here’s what you can typically expect after you hit "Apply": 1.      HR Interview – A conversation to get to know you better and align on expectations. 2.     Technical Interview – A chance to showcase your skills and experience. 3.      Client Interview – Ensuring mutual fit between you and the client team. 4.      Offer Stage – If everything aligns, we’ll be happy to make it official. While many of our roles involve just 2–3 steps, some client processes may include additional conversations. Regardless of the path, we aim to keep every step transparent and respectful of your time.

Ready to Start Your Journey?