Security Solutions Engineer
Nebius
Skill Required
Key highlights
- Competitive compensation
- Minimum 6+ years of relevant security experience
- Career growth and learning opportunities
- Deep understanding of modern cloud security principles required
- Hands‑on experience with two or more enterprise‑grade security tools
- Flexibility and ownership in the role
Role overview
Nebius is leading a new era in cloud infrastructure for the global AI economy. We are building a full‑stack AI cloud platform that supports developers and enterprises from data and model training through to production deployment, without the cost and complexity of building large in‑house AI/ML infrastructure. Built by engineers, for engineers, we own the hard problems across compute, storage, networking and applied AI. We are seeking a Security Solutions Engineer with a strong background in strategic solution evaluation, vendor assessment, and hands‑on Proof‑of‑Concept (PoC) validation. This role bridges identifying customer security requirements and implementing best‑in‑class, enterprise‑grade solutions, defining criteria, researching the market, and executing technical validation for all major security tooling and services adopted by the company.
Responsibilities
- Strategic Research & Requirement Definition – Threat‑to‑Solution Mapping: Proactively analyze customer expectations, regulatory/compliance drivers, and threat models to define precise functional and non‑functional requirements for new security solutions.
- Strategic Research & Requirement Definition – Market Analysis & Scouting: Conduct thorough market scans to identify cutting‑edge security products, platforms, and vendors across key domains (e.g., CSPM/CNAPP, DLP, IAM/IGA, EDR/XDR, data security, Kubernetes security, and AI/ML security).
- Strategic Research & Requirement Definition – Vendor Due Diligence: Evaluate potential vendors based on technical capability, security posture, integration requirements, roadmap, data residency/compliance, and support quality, and shortlist candidates for the PoC phase.
- Technical Validation & PoC Leadership – PoC Planning & Design: Develop detailed, objective, and threat‑aligned test plans and success criteria for all security solution Proof‑of‑Concepts (PoCs), including quantitative success metrics, coverage of key attack scenarios, and opportunities for automation.
- Technical Validation & PoC Leadership – Hands‑on Environment Setup: Independently architect and deploy isolated PoC environments that accurately simulate our production infrastructure (e.g., setting up cloud VPCs, Kubernetes clusters, integrating with test data via IaC, and mimicking typical workloads).
- Technical Validation & PoC Leadership – Testing & Analysis: Execute security research methodologies within the PoC (e.g., simulating attack scenarios, conducting deep feature validation, assessing false positive/negative rates) to rigorously test the vendor solution's effectiveness.
- Technical Validation & PoC Leadership – Artifact Generation: Document all findings, including technical performance data, integration challenges, security gaps discovered, and clear comparative analysis metrics.
- Decision Support & Communication – Recommendation & Insight: Deliver comprehensive, data‑driven reports and compelling presentations to security and product leadership and engineering stakeholders, providing a clear recommendation for the optimal solution and vendor selection.
- Decision Support & Communication – Integration Planning: Work closely with Security Engineering, Platform/Infra, and DevOps teams to ensure selected solutions are feasible to integrate, operate, and scale, and to hand off PoC learnings into implementation plans.
Requirements
- Minimum 6+ years in Security Engineering, Security Architecture, or a dedicated Security Research role focused on solution validation and vendor management.
- Deep understanding of modern cloud security principles (e.g., AWS/Azure/GCP security models, Kubernetes/containers, network segmentation, IaC scanning, least privilege, identity‑centric security, confidential computing).
- Strong scripting/programming skills (e.g., Python, Go, or similar) for automating PoCs, building test harnesses, and integrating tools via APIs and CI/CD pipelines.
- Proven, hands‑on experience with the architecture, deployment, and testing of two or more enterprise‑grade security tools (e.g., SIEM/SOAR platforms, Endpoint Detection and Response (EDR), Vulnerability Management, Secrets Management).
- Demonstrated ability to plan and execute complex technical Proof‑of‑Concepts, including setting up test environments and defining quantitative success metrics.
- Exceptional analytical skills with the ability to translate complex technical findings into clear business risk and strategic recommendations.
- Strong written and verbal communication skills.
Nice to have
- Experience in Cloud or Cloud‑Heavy companies.
- Experience in a compliance‑focused industry (e.g., finance, healthcare, or cloud infrastructure) and familiarity with frameworks such as ISO 27001, SOC 2, or GDPR.
- Advanced professional certifications such as CISSP, CCSK or relevant cloud certifications (e.g., AWS/GCP/Azure Security Specialty).
- Experience contributing to security standards, open‑source tools, talks, or publications.
Benefits
- Competitive compensation
- Career growth and learning opportunities
- Flexibility and ownership
- Collaborative and innovative culture
- Opportunity to work on impactful AI projects
- International environment and talented teams
Additional details
- Nebius is listed on Nasdaq (NBIS) and headquartered in Amsterdam with R&D hubs across Europe, the UK, North America and Israel.
- Team of 1,500+ employees, including hundreds of engineers with deep expertise across hardware, software and AI R&D.
- Fast moving – Bold thinking – Constant growth – Meaningful impact – Trust and real ownership – Opportunity to shape the future of AI.
- Equal Opportunity Statement: Nebius is an equal opportunity employer committed to fostering an inclusive and diverse workplace.
- Applicants must be authorized to work in the country in which they apply and will be required to provide proof of employment eligibility as a condition of hire.
- Accommodations are available during the application process upon request.
- Originally posted on Himalayas.