Security Engineer (Fractional)

Lever, Inc.

Italia

Remote

EUR 30,000 - 60,000

Part time

3 days ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Benefits offered by this job

Fully remote
Part-time, fractional engagement
Exposure to security leadership across

Job summary

Lever, Inc. is seeking a Security Engineer (Fractional) for a part-time, fully remote engagement based in Italy. You will shape the security strategy, establish practical controls, and prioritize initiatives by business risk, balancing strong security with agility.

You will mentor IT leadership, support DevSecOps practices, and help vendors and portfolio companies implement foundational security controls across cloud, apps, and data handling, including GDPR compliance.

Qualifications

  • Proven hands-on experience in security engineering, cloud security, application security, DevSecOps, or a closely related discipline.
  • Strong technical understanding of SDLC, CI/CD security, cloud platforms (AWS and GCP), IAM, vulnerability management, and endpoint security.
  • Ability to independently assess and validate security controls across cloud configs, GitHub repos, CI/CD pipelines, and tooling.
  • Translate technical findings into practical, prioritized recommendations for teams to implement.

Responsibilities

  • Develop and maintain a 12-month security roadmap balancing enterprise-grade security with speed and flexibility.
  • Establish and maintain a security risk register based on business impact and remediation priorities.
  • Mentor IT leadership and translate technical activities into measurable security controls.
  • Provide guidance on secure coding, OWASP, DevSecOps, and security best practices.
  • Assess and strengthen controls across cloud infrastructure, development environments, repositories, CI/CD, IAM, and endpoints.
  • Ensure GDPR, privacy laws, and regional regulations are complied with across Europe, Asia, and Australia.
  • Standardize responses to client security questionnaires, audits, vendor assessments, and due-diligence processes.
  • Develop security policies for incident response, access control, business continuity, and disaster recovery.
  • Guide selection and deployment of security tech including EDR, SIEM, vulnerability management.

Skills

Security engineering
Cloud security
Application security
DevSecOps
CI/CD security
Vulnerability management
Governance & compliance

Education

Security certifications (CISSP, CISM, CISA, AWS/GCP)

Tools

AWS
GCP
SIEM

Job description

This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Security Engineer (Fractional) based in Italy.

This is a part-time security engineering opportunity focused on elevating an established technology organization toward an enterprise-grade security posture.
You will shape the security strategy, establish practical controls, and prioritize initiatives according to business risk and impact.
The role combines hands-on cloud and application security with compliance, incident readiness, policy development, and security governance.
You will work closely with IT leadership and engineering teams, providing mentorship and helping developers adopt safe coding and DevSecOps practices.
You will also support cross-border privacy and security requirements across European, Asian, and Australian operations.
Beyond the core organization, you will advise early-stage ventures on right-sized security frameworks and help assess security risks during investment processes.
This role is ideal for an experienced security professional who can operate independently, translate technical risks into practical actions, and balance strong security standards with business agility.

Accountabilities
  • Develop and maintain a 12-month security roadmap that balances enterprise-grade security expectations with the speed and flexibility of a technology-focused organization.

  • Establish and maintain a security risk register, assessing risks based on business impact and prioritizing remediation efforts accordingly.

  • Mentor the IT Manager and help translate day-to-day technical activities into measurable security controls and improvements.

  • Establish security office hours and provide practical guidance to engineering teams on secure coding, OWASP principles, DevSecOps, and security best practices.

  • Assess and strengthen security controls across cloud infrastructure, development environments, repositories, CI/CD pipelines, identity and access management, and endpoint environments.

  • Ensure data-handling practices align with applicable privacy and security regulations, including GDPR, the Philippines Data Privacy Act, and the Australian Privacy Act.

  • Standardize and improve responses to client security questionnaires, audits, and vendor assessments to support efficient business development and sales processes.

  • Develop and implement practical security policies covering areas such as incident response, access control, business continuity, and disaster recovery.

  • Guide the selection and implementation of essential security technologies, including endpoint detection and response, SIEM, vulnerability management, and related security tooling.

  • Establish a right-sized security framework for early-stage portfolio companies, helping founders implement foundational controls without unnecessarily slowing growth.

  • Evaluate technical security, privacy, and data protection risks during assessments of potential new ventures and investment opportunities.

  • Act as a fractional security advisor to startups, supporting GDPR and data privacy compliance, security policies, and the development of a security-by-design culture.

Requirements
  • Proven hands-on experience in security engineering, cloud security, application security, DevSecOps, or a closely related discipline, ideally within software, technology, SaaS, or outsourcing environments.

  • Strong technical understanding of the software development lifecycle, CI/CD security, cloud platforms such as AWS and GCP, identity and access management, vulnerability management, and endpoint security.

  • Ability to independently assess and validate security controls, including cloud configurations, GitHub repositories, CI/CD pipelines, and security tooling.

  • Strong ability to translate technical findings into practical, prioritized recommendations that teams can realistically implement.

  • Experience handling client security assessments, security questionnaires, audits, vendor assessments, or similar external security reviews.

  • Knowledge of governance, risk management, SOC 2, ISO 27001, GDPR, and related compliance frameworks is highly valuable.

  • Relevant security certifications such as AWS or GCP certifications, CISSP, CISM, CISA, or equivalent credentials are preferred.

  • Experience working with geographically distributed teams across Europe, Asia, and Australia is an advantage.

  • Previous experience supporting early-stage startups or high-growth environments is a plus.

  • Strong communication, mentoring, and stakeholder-management skills, with the ability to work effectively with technical teams, leadership, and business stakeholders.

  • Comfortable working independently in a fractional capacity, prioritizing high-impact security initiatives without unnecessary complexity.

Benefits
  • Fully remote working arrangement.

  • Part-time, fractional engagement designed to provide flexibility.

  • Opportunity to shape and elevate an organization's security posture toward enterprise-grade standards.

  • Broad exposure across cloud security, application security, DevSecOps, privacy, compliance, governance, and incident management.

  • Opportunity to mentor engineering and IT professionals and influence security culture across distributed teams.

  • Exposure to startup environments and the opportunity to advise early-stage ventures on practical security foundations.

  • Opportunity to contribute to security assessments of potential investment opportunities.

  • Flexible, autonomy-focused working culture built around trust and meaningful contribution.

  • International collaboration across Europe, Asia, and Australia.

  • Opportunity to balance robust security practices with practical business and engineering needs.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Remote Fractional Security Engineer – Europe
Remote Fractional Security Engineer – Europe

Lever, Inc. • Italy

Remote
EUR 30,000 - 60,000
Fully remote
Part-time, fractional engagement
Exposure to security leadership across
IT & Security Manager at Exein
IT & Security Manager at Exein

Exein S.p.a. • Roma

Hybrid
EUR 55,000 - 65,000
Security Engineering Lead
Security Engineering Lead

Stealth Startup • Milano

On-site
EUR 110,000 - 160,000
Cyber Security Specialist
Cyber Security Specialist

Volkswagen Group Italia S.p.A. • Verona

On-site
EUR 48,000 - 56,000
Remote work up to 8 days/mo
Bonuses based on performance
Cafeteria and meal options
+1
Senior DevOps Engineer
Senior DevOps Engineer

Lever, Inc. • Italy

Remote
EUR 90,000 - 120,000
100% remote
International project exposure
Health and life insurance
+1
Security Operations Analyst (Cyber Defense Operations)
Security Operations Analyst (Cyber Defense Operations)

Pragmatike • Puglia

Hybrid
EUR 70,000 - 110,000
Staff Platform Engineer
Staff Platform Engineer

Jobgether SRL • Italy

Remote
EUR 90,000 - 140,000
Global remote work
Equity participation
Ownership and impact
+1
Systems Engineer (Linux & Windows)
Systems Engineer (Linux & Windows)

Lever, Inc. • Italy

Remote
EUR 65,000 - 90,000
Cybersecurity Solutions Architect
Cybersecurity Solutions Architect

NHOA Group • Torino

On-site
EUR 36,000 - 44,000
Permanent full-time contract
Flexible remote working
International, multicultural team
+1
Enterprise Account Executive, Italy
Enterprise Account Executive, Italy

Horizon3.ai • Italy

Hybrid
EUR 240,000 - 270,000
Inclusive Team
Growth Opportunities
Innovative Culture
+2