Veo

Senior Infrastructure and Cloud Security Engineer

Veo Copenhagen, Capital Region of Denmark, Denmark

Spectator Sports · 201-500 employees

18 h ago
security Senior (5-10 yrs) Full-time Denmark
Log in to apply, save this posting, or score it against your profile with AI.

About the role

You will lead the design and tooling for office and data center networks, workforce identity, and cloud configuration drift checks. As part of the Security Enablement Team, you will build paved roads and patterns that empower other engineering and IT teams to operate securely.

What they look for

Cloud Security Infrastructure Security Network Security Identity and Access Management AWS GCP Terraform SSO MFA VPN Endpoint Security Automation Security Enablement IT Fundamentals Risk Management

Requirements

The role requires solid IT fundamentals in networking, identity, and endpoint posture, along with hands-on experience in AWS or GCP. You should possess a security mindset with the ability to build internal tooling and collaborate effectively across technical teams.

Full description

Veo is a global leader in AI-based sports camera technology. Our innovative, fully automatic camera solution enables sports teams to record matches and training sessions without a camera operator. We’re democratizing the world of sports by granting video analysis for teams on all levels—a privilege that used to be only for the few. More than 40,000 clubs in 90+ countries record their games every week.

But what truly sets us apart? Our people. We’re a diverse group of innovative thinkers, creators, and problem-solvers who believe in delivering an incredible product—and having fun while doing it.

The Opportunity

Veo's security surface is unusual. We train models on-premise on dedicated GPU infrastructure, run the product across AWS and GCP, and operate a fleet of tens of thousands of cameras deployed at clubs and venues worldwide. That is a scope most SaaS security engineers never touch: physical devices in the field, heavy on-prem compute, and multi-cloud production, all in one role.

We are forming a Security Enablement Team that makes it easier for every engineering and IT team at Veo to build, ship, and operate secure systems. You will own the infrastructure and cloud security slice, where office networks, data center networks, and employee access to product systems meet, partnering with the teams that own these systems so security is built in from the start. As an enablement function, the team does not run these systems day to day. We build the paved roads, tooling, and patterns that let the owning teams operate securely by default.

You will join during a pivotal moment. We are standing the team up, defining what good looks like across infrastructure, network, and workforce identity security, and rolling out the first paved roads for a unified internal network across our datacenters (GCP, AWS) and offices (Miami, Berlin, and Copenhagen), workforce identity and access, and drift checks for cloud configuration and network rules. You'll have direct impact on how 100+ engineers, and every Veo employee, work securely across our offices and clouds.

\n

What You Will Do You'll join the Security Enablement Team and focus on the infrastructure and cloud security slice, where office networks, data center networks, and employee access to product systems meet. Everything below follows the same pattern. We design the paved road, prove it works, and hand it to the team that will own it. We share ownership of the team's work, pair on complex problems, and rotate responsibilities. The systems themselves stay with the owning teams, and our job is to make those teams successful.

  • Lead the design, reviews, and tooling for our office and data center networks and the VPN that connects them, as part of the network security direction the team sets together. Day-to-day operation and firewall changes stay with the team that owns the network
  • Build patterns and tooling for secure cross-site connectivity and endpoint security posture that IT can adopt and run, in a way that supports how Veo engineers actually work
  • Build the patterns and automation for workforce identity and access, including SSO hygiene, MFA enforcement for employees, and clean joiner, mover, and leaver flows for access to product systems, with IT owning the day-to-day operation
  • Build automated checks that surface drift in cloud configuration and network rules, so the owning teams get a signal and can act on it
  • Act on infrastructure and network findings from external penetration tests, routed through the team's shared intake, with the owning teams driving remediation
  • Build the first version of cross-cutting capabilities, such as the cross-site VPN or the drift checks, then hand each one to a long-term owner with a written transition that covers the runbook, ownership, and escalation path
  • Partner with GRC to build evidence pipelines for IT and access-related controls that produce auditable output without manual follow-up
  • Run office hours where IT, platform, and product teams can get a network or access review

As the team matures, you'll help shape how Veo's network and identity stack evolves across our offices and clouds as the company grows.

What You Could Bring This role deliberately sits where IT, cloud, and security meet. You do not need to be world class at all three. You are strong in one or two and comfortable operating across the rest.

You likely have several years of experience at that intersection. That tends to show up in several of the following:

  • Solid IT fundamentals: networking, identity, endpoint posture, MFA, and SSO at production scale
  • Cloud infrastructure experience: hands-on work on at least one of GCP or AWS, including IAM, networking, and basic Terraform-style IaC
  • Workforce identity and access: hands-on experience with SSO and identity providers (Okta, Google Workspace) and clean joiner, mover, and leaver flows
  • A security mindset layered on that IT and cloud depth: you instinctively look for misconfigurations, drift, and bad access patterns, without needing to be a dedicated security specialist
  • Cross-context comfort: you can work on an office network problem and a product cloud problem in the same week without context-switching pain
  • Platform-as-product mindset: you've built internal tooling that real teams adopt, with guard rails built into the tools people already use and manual review as a last resort, and you gathered feedback and measured impact
  • Comfort handing work back to a long-term owner once the build phase is done
  • Collaboration: you work through discussion and feedback, share context effectively, and write things down.

Nice to have: VPN solutions at scale (Tailscale, Cloudflare Access, WireGuard), endpoint management tooling, and audit log pipelines.

How We Work You'll join a Copenhagen-based Security Enablement Team of three engineers plus a manager. We operate as an enablement function: we build shared tooling and golden paths, and we step in for focused, high-leverage missions where no other team is positioned to deliver. We do not run a SOC and we do not carry a security pager.

You'll collaborate regularly with the Platform, Product, IT, Firmware, and GRC teams. We work pragmatically and iterate quickly. We document decisions, favor simple solutions where possible, and focus on tooling and platform patterns that help teams move faster with confidence.

If you read that list and matched on most of it but not all of it, apply anyway. People who span IT, cloud, and security are rare, and we do not expect every box ticked. We value diversity and inclusion and welcome applicants from all backgrounds.

\nOur Copenhagen office mirrors our innovative technology – with an indoor ball court, rooftop terrace, and well-equipped gym. We have created a facility that supports connecting disciplines across the business, facilitates creative thinking, and gives the space to engage with colleagues, our global partners, and the entire Veo community.

Values we hold at Veo:

Dare - We take initiative, stay curious, and challenge the status quo in our work.

Own it - We drive impact by identifying opportunities, taking responsibility, and confidently executing.

Level up - We embrace growth, continuously learning and shaping our skills.

Play as a team - We collaborate across a diverse organization, leveraging shared insights for stronger outcomes.

Customer Centric - We deliver value by having close partnerships and a deep understanding of our customers (internally and externally)

We value diversity and inclusion and welcome applicants from all backgrounds, even if your experience doesn’t completely match every qualification listed. What matters most is your creativity, potential, and ability to contribute meaningfully.

Similar roles