Jobiglo

No results.

Security Engineer (Cloud & Application)

Tuum · Tallinn

New
Hybrid 🇬🇧 English
AWS GCP IAM Terraform Kubernetes Okta Java TypeScript SAST SCA ECR image scanning OWASP Top 10 OAuth/OIDC SAML PCI DSS SOC 2 ISO 27001 Detection engineering Incident response

Job description

About the role

Tuum is a next‑generation banking platform looking for a Security Engineer to protect its cloud infrastructure, CI/CD pipeline, and product code. The role is hands‑on, focusing on building automation, fixing root causes, and collaborating directly with the Head of Security.

Key responsibilities

  • Threat model new services with product engineers, review code and infrastructure‑as‑code, and build tooling that automatically catches recurring problems.
  • Harden the cloud environment (primarily AWS, some GCP) – IAM, network boundaries, secrets/key management, logging, Kubernetes workloads, and Okta identity engineering.
  • Own the vulnerability cycle end‑to‑end: CI/CD gates (SAST, SCA, ECR image scanning), quarterly internal/external scans, remediation, and penetration‑testing programme.
  • Build and maintain detections on native cloud services and code, act as first responder on incidents.
  • Support the Head of Security on PCI DSS, SOC 2 and ISO 27001 compliance, handling testing and recurring calendar activities.
  • Assist the IT Lead with corporate environment automation, complex investigations, and coverage during absences.

Required profile

  • Security engineering experience or software/infrastructure engineering with substantial security ownership.
  • Strong cloud security background focused on AWS (IAM, networking, key management, logging) and ability to write Terraform.
  • Proficiency in at least one general‑purpose programming language and ability to read Java and TypeScript.
  • Practical experience securing containerised workloads and identity/access fundamentals (OAuth/OIDC, SAML, least‑privilege).
  • Knowledge of common vulnerability classes (OWASP Top 10 and beyond) and experience operating inherited security controls.

Required skills

  • AWS
  • GCP
  • IAM
  • Terraform
  • Kubernetes
  • Okta
  • Java
  • TypeScript
  • SAST
  • SCA
  • ECR image scanning
  • CI/CD pipelines
  • OWASP Top 10
  • OAuth/OIDC
  • SAML
  • PCI DSS
  • SOC 2
  • ISO 27001
  • Detection engineering
  • Incident response

What we offer

  • Competitive salary
  • Company stock options
  • Hybrid working (3 days a week in the office)
  • 4‑day work week during June‑August
  • Private health insurance or generous wellness compensation
  • Career growth opportunities as the company scales
  • Bright, inclusive team culture
  • Equal opportunity employer committed to diversity and inclusion

Questions fréquentes

Le salaire n'est pas communiqué publiquement par le recruteur. Vous pouvez postuler et négocier directement avec Tuum.
Cliquez sur "Postuler maintenant" en haut de la page. Vous pouvez importer votre CV en 1 clic — Jobiglo extrait automatiquement vos informations et postule pour vous.

Why are you reporting this job?

Thank you for your report. We will review this job.

Explore further

Salaries, guides and searches in Estonia.

Salaries by job title

Apply in 30 seconds

Enter your email to apply. An account will be created automatically.

By continuing, you accept our terms of use.

Already have an account? Login

💬 Chat with us on Telegram Chat on WhatsApp

Published 12 hours ago

Expires 1 month from now

4 views · 0 interested

Boost your chances

Upload your CV — we will match you with relevant openings.

Analyzing your CV...

Tuum

Tallinn