Security engineer | mid - Senior
nexos.ai Vilnius, Vilnius County, Lithuania · €38K–€72K/yr
Technology, Information and Internet · 51-200 employees
About the role
You will own the security of the cloud and Kubernetes infrastructure, driving remediation and developing policies for an AI-focused environment. Additionally, you will conduct threat modeling, manage SOC-escalated alerts, and embed security practices into CI/CD pipelines.
What they look for
Requirements
The role requires a solid foundation in cloud or infrastructure security with experience in container security and threat modeling. Candidates should be proficient in scripting for automation and possess strong communication skills to collaborate effectively within a fast-paced startup.
Benefits
Full description
As a Security Engineer at nexos.ai you will own the security of the cloud and Kubernetes platform behind a live AI product - an environment where AI is both the product and the primary risk surface, and where AI-specific attack paths are part of the threat model, not an afterthought.
You will bring an attacker's mindset to defense, work closely with the SOC and DevOps teams, and act as the internal technical anchor that bridges cloud security, detection, and engineering, with the Information Security Lead as your strategic counterpart.
Main Responsibilities:
- Own the security of nexos.ai cloud and Kubernetes infrastructure - triage findings, set priorities, assess the impact of changes, drive remediation to completion within reasonable timeframes, and develop policies for an environment where AI is both the product and the attack surface
- Harden Kubernetes and cloud infrastructure end-to-end - covering container security, network policies, identity, and secrets management
- Own the resolution of SOC-escalated alerts - investigating findings, making sound judgments on what requires action, and coordinating remediation with DevOps and engineering teams
- Continuously identify security gaps across the environment - drive remediation, propose improvements, and engage the right teams and stakeholders based on the scope and impact of each issue
- Conduct cloud and AI-focused threat modeling and proactive threat hunting - identifying realistic attack paths and closing them before they can be exploited
- Embed security into CI/CD pipelines, infrastructure-as-code, and GitOps delivery - automated scanning, pipeline gates, and shift-left practices
- Build scripts and automation to eliminate repetitive security tasks and improve operational efficiency,
Core Requirements:
- A solid foundation in security engineering - cloud, application, or infrastructure - with a demonstrated appetite for learning new domains and a track record of mastering them
- Solid working knowledge of cloud environments, container security, or infrastructure-as-code - AWS experience is a strong plus
- Experience in alert triage, incident investigation, or security operations; comfortable making judgment calls and driving findings to resolution
- Threat modeling experience or a strong intuition for how attackers think - able to identify realistic attack paths and translate them into defensive action
- Able to read and write scripts to automate security tasks and investigations
- Strong collaborator, who works credibly with technical teams and communicates security risks clearly to leadership
- Thrives in a fast-moving startup environment, takes ownership, builds from scratch, and drives initiatives independently.
Bonus Point For:
- Hands-on experience with a CNAPP platform (e.g. Wiz)
- Familiarity with AI/ML infrastructure security
- Offensive background (penetration testing, red teaming, CTFs, or security research)
- Relevant certifications (AWS Security Specialty, CKS, OSCP, or equivalent)
- Community contributions (CVEs, bug bounty recognition, open-source tools, or security writing).
Salary range:
Gross salary is 3200 - 6000 EUR per month.
What We Offer
- Professional growth. Internal and external events, online training, conferences, books - everything you need to reach your full potential.
- Health benefits. Private health insurance, online & on-site workouts (LT) / online workouts & sports access card (PL), consultations - to feel and be your best.
- Team spirit. Team buildings and parties with games, shows, tastings, food coupons, gifts - and it's on us.
- More free time. Stay with us and additional vacation days will be added to your calendar.
- Additional paid leave. Additional days are covered by us in cases of illness or special occasions.
- Flexibility. Flexible working time arrangement.
Similar roles
-
Security Engineer (French Speaker) | BPCE-SI
Natixis in Portugal Portugal
-
OPERATIONAL SECURITY ENGINEER – NETWORK FILTERING
BE Bucharest, Romania
-
Cybersecurity Operations Engineer - Singpass
Assurity Trusted Solutions Singapore, Singapore
-
Lead Cybersecurity Analyst
TerraPay Bengaluru, Karnataka, India
-
Senior Cloud Security Engineer | Remote
Tasq Staffing Solutions, Inc. Philippines
-
Cybersecurity Senior Full-Stack Engineer (100 % remote) (m/f/d)
EWOR GmbH Karlsruhe, Baden-Württemberg, Germany