> Markdown version of [/jobs/ext/1942315-experienced-security-engineer](https://www.wearedevelopers.com/jobs/ext/1942315-experienced-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Experienced Security Engineer - **Company:** Silverflow - **Location:** Ouderkerk aan de Amstel, Netherlands - **Experience:** Experienced - **Salary:** €5,417.0 - €7,083.0 - **Contract:** Permanent contract - **Skills:** Artificial Intelligence, Amazon Web Services, Software System Penetration Testing, Bash Shell, Cloud Computing, Cyber Security, Continuous Integration, Identity and Access Management, Intrusion Detection and Prevention, Python (Programming Language), PCI Data Security Standards, Security Information and Event Management, Scripting, Software Security, Containerization, Machine Learning Operations, Vulnerability Analysis - **Published:** August 6, 2026 - **Apply:** https://www.adzuna.nl/details/5828377328 ## About the Role Do you thrive when you can independently own security challenges across multiple domains and work collaboratively to enable others? Then this role is for you. You'll join our Security team in Amsterdam and contribute across the full breadth of operational security by, You are someone who operates with autonomy and sound judgment, and who has: * 3-5 years of hands-on experience in a security operations or security engineering role, ideally in a cloud-native environment. * Solid experience with cloud platforms (AWS preferred), including understanding of IAM, networking, and infrastructure security in production environments. * The ability to translate compliance and regulatory requirements into practical technical controls, not just checking boxes, but understanding why a control exists and how to implement it effectively. * Hands-on experience with security tooling: SIEM, EDR, vulnerability scanners, or detection engineering platforms. You've built dashboards and detection rules, not just consumed them. * Proficiency in Python, Bash, or similar scripting languages for building automation and tooling that others on the team can rely on. * Strong communication skills: you can explain a security risk differently to a developer than to a finance manager, and write clear documentation or advisories that people can act on without follow-up. * A collaborative mindset: you enable colleagues to do their work securely by finding practical solutions that balance risk and business needs. As Silverflow is an office-first company, being located in the Netherlands and able to work onsite is required for this role. Nice-to-Have * Experience in payments, fintech, or another regulated industry where security operations directly support compliance obligations. * Relevant certifications (e.g., AWS Security Specialty, OSCP, or similar practitioner-level credentials). * Experience with penetration testing tools and methodologies. * Familiarity with AI/ML security risks and governance frameworks. * Familiarity with infrastructure-as-code and CI/CD pipeline security. ## Description * Monitoring production environments and security infrastructure, investigating alerts, building and tuning detection rules in our SIEM, and maintaining dashboards that give the team and stakeholders real visibility into our security posture. * Translating compliance requirements (SOC 2, PCI-DSS) into technical controls, owning their implementation and evidence collection, and ensuring they remain effective, time. * Collaborating with colleagues across the organization to enable them to do their jobs securely, providing guidance, building self-service resources, and removing security bottlenecks. * Reviewing and managing access across our cloud and application environments, applying least-privilege principles, running access reviews, and improving our IAM posture as the company grows. * Helping scope and coordinate penetration tests (both internal efforts and external vendor engagements), tracking remediation, and communicating findings to engineering teams with clear context and priority. * Assessing the security posture of third-party vendors and new integrations, and advising teams on emerging risks, including AI/ML tools as they become more embedded in how we work and build. * Identifying manual or repetitive security tasks across our operations, and participating in automation efforts to reduce toil, improve response times, and help our security posture scale. Note: This role is focused on infrastructure, operational security, and corporate environments. It is not an Application Security (AppSec) position. Who you are ## Related Videos - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Old tools, new tricks](https://www.wearedevelopers.com/videos/1916-old-tools-new-tricks) - [JavaScript? No. Java Scripts! - Scripting with Java](https://www.wearedevelopers.com/videos/2094-javascript-no-java-scripts-scripting-with-java) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) - [MCP doesn’t suck — your agent does](https://www.wearedevelopers.com/videos/100202-mcp-doesn-t-suck-your-agent-does) ## Related Articles - [How to land a developer job in Amsterdam](https://www.wearedevelopers.com/magazine/36-how-to-land-a-developer-job-in-amsterdam) - [How to Find Tech Jobs in Amsterdam](https://www.wearedevelopers.com/magazine/279-how-to-find-tech-jobs-in-amsterdam) - [Best Companies in the Netherlands: Top 25 Companies in 2023 ](https://www.wearedevelopers.com/magazine/193-best-companies-in-the-netherlands-top-25-companies-in-2023) - [Software Developer Salary in The Netherlands [2023]](https://www.wearedevelopers.com/magazine/217-software-developer-salary-in-the-netherlands-2023) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Fully Remote Software Engineer Jobs](https://www.wearedevelopers.com/magazine/447-fully-remote-software-engineer-jobs)