SRE and Security Engineer
Role details
Job location
Tech stack
Job description
but also hardened against any digital threat. You are the kind of person who locks every back door behind you while keeping the gate always open for customers worldwide. Responsibilities: Lead security architecture and design reviews to ensure new systems and platforms meet security, reliability, and scalability requirements. Develop, implement, and enforce technical security standards, secure baseline configurations, and infrastructure hardening guidelines. Own the reliability, availability, performance, and security of production systems across the organization. Design, implement, and optimize secure and scalable CI/CD pipelines, integrating security practices throughout the SDLC. Build and maintain automation tools and operational processes to improve deployment efficiency, system stability, and security posture. Enhance security and observability by implementing and managing monitoring, logging, alerting, and SIEM solutions across distributed systems. Lead and participate in incident
Requirements
response activities, including threat monitoring, on-call support, and continuous improvement of operational readiness processes. Conduct security assessments, vulnerability management, and compliance audits to identify and remediate risks. Promote a security-first engineering culture by mentoring teams on secure coding, infrastructure, and deployment best practices. Stay current with emerging threats, vulnerabilities, attack vectors, and industry best practices, and proactively integrate improvements into engineering and security processes. Participate in the on-call rotation to provide 24x7 support (maximum 72 days per year). Don't worry, we'll keep the coffee flowing. Requirements About You Basic Requirements 5+ years of experience in DevOps and Security Engineering, with a strong focus on cloud security, infrastructure hardening, and application security. Hands-on experience securing cloud environments in AWS and GCP, including Infrastructure as Code (IaC) using tools such as Terraform and Ansible. Experienced in AI security best practice. Proven experience managing and supporting large-scale, high-availability, and distributed production systems. Strong experience integrating security controls and automated validation into CI/CD pipelines using platforms such as Jenkins and Bitbucket. Deep understanding of application and infrastructure security practices, including SAST, DAST, SCA, secret scanning, and vulnerability management. Familiarity with industry security and compliance frameworks such as CIS, NIST, ISO 27001, and SOC 2. Strong scripting and automation skills using Python and Bash to streamline operational and security processes. Experience implementing Zero Trust security principles, identity and access management (IAM), and secrets management solutions. Hands-on experience with AWS and GCP security services such as GuardDuty, Security Command Center (SCC), Shield, and CloudTrail, as well as SIEM and observability platforms like Elastic Stack. Strong troubleshooting and analytical skills in network security, encryption, authentication mechanisms, and secure system design. Preferred Qualifications: Certified AWS and GCP Architects. WhyFreightos is the Perfect Runway for Your Career We genuinely value work-life balance We work hybrid, allowing you to enjoy quiet days at home, free from traffic, with in-office days, to meet your fabulous team face-to-face just 5 days a month. We believe that employees who get better make us all better. We strive for professional development and continuous learning. Alongside career support and guidance, you'll receive an annual training budget for personal and professional development.