Job Opportunities API

The Public Ledger of Openings

← Back to the ledger

Senior Security Engineer

Orfium
CompanyOrfium
CategoryEngineering
LocationAthens
RemoteOn-site (inferred)
EmploymentFull-time
LevelSenior
SalaryNot stated by the employer
Posted16 Jul 2026
Last verified30 Jul 2026
SourceEmployer career page (workable)
Applications are handled by the employer, not by us.Apply on the employer's site →
Description
We are seeking an experienced Senior Security Engineer to join Orfium’s Cloud & Infrastructure team. In this role, you will help strengthen the security of our cloud platforms, infrastructure, engineering practices, and internal systems while supporting the continued maturity of our Information Security programme. You will work closely with Cloud & Infra, Engineering, IT Operations, Legal, and business stakeholders to drive practical security improvements across areas such as cloud security, access governance, vulnerability management, security assessments, incident response, compliance, and security awareness. Responsibilities  Support the execution of Orfium’s cloud security strategy and roadmap by creating and supporting security controls across our cloud platforms and workloads Improve the security posture of Orfium’s cloud infrastructure, internal systems, and engineering platforms. Partner with Cloud & Infrastructure and Engineering teams on secure architecture, cloud security controls, GitHub security, secrets management, and secure coding practices. Support ISO 27001, SOC 2, ISMS, audit readiness, evidence collection, and security governance activities. Run and coordinate security assessments, vulnerability reviews, penetration testing activities, and remediation follow-ups. Manage and improve security tooling and processes across areas such as vulnerability scanning, access governance, endpoint/security controls, and compliance monitoring. Define, maintain, and test incident response processes, including tabletop exercises and security incident coordination. Support business continuity, disaster recovery, vendor security reviews, and risk assessments. Collaborate with IT Operations on identity, access management, admin access, onboarding/offboarding controls, and security-related tooling. Deliver or support security awareness initiatives, helping employees understand threats such as phishing, social engineering, password security, device security, and safe internet practices. Work with Legal and business teams to ensure security obligations, contractual requirements, and notification processes are understood and followed. Stay up to date with emerging threats, security trends, and cloud security best practices, and translate them into practical improvements for Orfium. Requirements 5+ years of experience in security engineering, cloud security, infrastructure security, or a similar role. Strong understanding of cloud security, networking, IAM, application security, vulnerability management, and incident response. Hands-on experience working with engineering and infrastructure teams to design and implement secure systems. Experience with ISO 27001, SOC 2, security audits, risk assessments, and compliance-related activities. Familiarity with security tooling such as vulnerability scanners, cloud security controls, endpoint/security platforms, and access governance tools. Ability to investigate security issues, coordinate remediation, and communicate risks clearly to technical and non-technical stakeholders. Strong problem-solving skills, autonomy, ownership, and ability to manage multiple priorities. Ability to collaborate effectively with cross-functional teams, including Cloud & Infra, Engineering, IT Operations, Legal, and People teams. Fluent English language communication skills, written and verbal. Nice to Have Experience supporting security in SaaS, product, and data-heavy technology environments. Experience with AWS, GCP, GitHub security, CI/CD security, WAF, secrets management, or secure software development practices. Familiarity with security awareness programmes, phishing response, tabletop exercises, and BCP/DRP processes. Experience with vendor security questionnaires, third-party risk, or customer security requirements. Security certifications such as CISSP, CISM, CCSP, Security+, AWS Security Specialty, or similar. Love for music!
HOUSE AD976,467 openings. Erioun finds yours.Scored against your own profile, every hour.Try the radar →