IT & Security Engineer

Nomagic, Inc.

Warszawa

Hybrid

PLN 180,000 - 240,000

Full time

14 days+
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Benefits offered by this job

Equity for every employee
Relocation package
Hybrid work from Warsaw

Job summary

Nomagic, Inc. is seeking a Security & Compliance Engineer to own security and compliance across the company, from corporate to edge deployments. You’ll collaborate with a strong DevOps/Infrastructure team and security consultants to implement robust controls and policies.

You’ll help shape policy for AI tooling, manage third-party risk, and ensure secure endpoints, identity, and networks while operating in an English-speaking, hybrid environment based in Warsaw.

Qualifications

  • 5+ years in information security or a similar role.
  • Understanding of endpoint and identity security - MDM, SSO, SAML, access control models.
  • Solid understanding of network security architecture - segmentation and secure remote access.
  • Hands-on experience with a GRC framework (ISO 27001, SOC 2) including third-party risk assessments.
  • Comfortable writing and reviewing security policies.
  • Scripting ability for automation - Python, Bash, PowerShell, or similar.
  • Fluent communication in English.

Responsibilities

  • Own security and compliance across cloud, edge, and on-prem infrastructure.
  • Lead ISO 27001 and SOC 2 posture day-to-day with vendor assessments.
  • Define security standards for endpoints, identity, and network; verify outsourced IT implementation.
  • Run third-party risk processes and security questionnaires.
  • Monitor and respond to security events — SIEM triage and improved detection.
  • Collaborate with DevOps/Infrastructure on security across cloud, edge, and OT environments.

Skills

Information security
Endpoint security
Identity security
Network security
GRC framework
Policy writing
Scripting
English fluency

Tools

Wazuh SIEM
Vanta
Drata
Tugboat Logic

Job description

  • Are you the kind of person who is comfortable getting hands-on with technical work - reviewing a firewall ruleset, hardening an endpoint fleet, triaging a SIEM alert - and equally at ease with documenting evidence needed to pass a compliance audit?
  • Do you want the kind of role where security is yours to shape, not just operate?
  • Would you like to cooperate with top professionals in our industry?

If your answers are mostly yes, then you should keep reading. At Nomagic, we're on a mission to teach robots the real world. We're now looking for a Security & Compliance Engineer to own security and compliance across the company - from our corporate environment to the edge stations we deploy at customer sites.

Offer essentials:
  • Own security and compliance hands-on at a scaling robotics company
  • Work across cloud, edge, and on-prem infrastructure
  • Equity for every employee
  • Relocation package
  • No late evening calls - the entire eng team is based in Europe
  • English-speaking environment
  • Hybrid work from Warsaw - you'll be in the office regularly, as the role benefits from presence
Here is why we love this job ourselves, and hope you will enjoy it too:
  • We get to be creative
  • We're still pretty small, so everyone has a direct impact on the final result
  • Nothing is written in stone, we can easily change the tools and processes we use (if the requirements change)
  • We take security and compliance seriously as operational reality, not as a checkbox
  • You won't be alone — you'll have a strong DevOps/Infrastructure team for cloud and edge topics, outsourced IT support for day-to-day administration, and security consultants for specialized work
  • The CEO and part of the management are experienced infrastructure engineers who created the foundations of Google Cloud Platform
  • We combine world-class research with top-notch engineering and apply it to solve real problems
Some of problems you may try to solve with us :
  • Owning our ISO 27001 and SOC 2 compliance posture day-to-day on Vanta — evidence, controls, audits, and closing gaps as we grow
  • Co-create policy for AI tooling usage — be at the forefront of how AI can boost productivity at Nomagic, while applying best security practices around evaluation, access, and data handling
  • Defining the security standards for our endpoints, identity, and network — and verifying that our outsourced IT provider implements them correctly
  • Running the third-party risk process — assessing vendor security posture and handling customer security questionnaires
  • Monitoring and responding to security events — SIEM, alert triage, investigation, and improving detection over time
  • Working with the DevOps/Infrastructure team on security topics that span cloud, edge, and OT environments
Skills we’d like you to have:
  • 5+ years of hands-on experience in information security, IT security, or a similar role
  • Practical understanding of endpoint and identity security - MDM, SSO, SAML, access control models
  • Solid understanding of network security architecture - segmentation, trust boundaries, and secure remote access
  • Hands-on experience with a GRC framework (ISO 27001, SOC 2, or similar), including third-party risk assessment and security questionnaires
  • Comfortable writing and reviewing security policies
  • Scripting ability for automation - Python, Bash, PowerShell, or similar
  • Fluent communication in English
Nice to have:
  • Experience with Vanta or a similar GRC platform (Drata, Tugboat Logic) — matches our current stack
  • Familiarity with SIEM tooling, especially Wazuh — matches our current stack
  • Exposure to OT, industrial, or edge/hardware environments
  • Cloud security experience (GCP preferred)
  • Background in a tech scaleup

Important: Feedback after completing the recruitment process.

https://vimeo.com/manage/videos/1051464045

https://vimeo.com/manage/videos/1051465112

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security & Compliance Engineer
Security & Compliance Engineer

Nomagic • Warszawa

Hybrid
PLN 180,000 - 260,000
Equity
Relocation package
Hybrid work in Warsaw
Security & Compliance Engineer
Security & Compliance Engineer

Nomagic • Warszawa

Hybrid
PLN 290,160 - 357,120
Equity for every employee
Relocation package
No late evening calls
+1
Engineering Manager
Engineering Manager

Nomagic • Warszawa

Hybrid
Relocation package
Flexible working hours
English-speaking environment
+1
Service Manager
Service Manager

USound • Warszawa

On-site
Relocation package
Flexible working hours
Equity options
Engineering Manager
Engineering Manager

Nomagic Inc. • Warszawa

Hybrid
Relocation package
Flexible working hours
English-speaking environment
+1
Security & Compliance Engineer — Robotics Scaleup
Security & Compliance Engineer — Robotics Scaleup

Nomagic • Warszawa

Hybrid
PLN 180,000 - 260,000
Equity
Relocation package
Hybrid work in Warsaw
Senior Automation Engineer
Senior Automation Engineer

Nomagic • Warszawa

Hybrid
PLN 234,000 - 246,000
Relocation package
Equity
Up to 40% remote work
Senior Fullstack Engineer
Senior Fullstack Engineer

Nomagic • Warszawa

On-site
Relocation package
Flexible working hours
Equity options
Security Operations Engineer (Europe - Remote)
Security Operations Engineer (Europe - Remote)

SpotMe • Poland

On-site
PLN 180,000 - 260,000
Robotics & Software Engineer
Robotics & Software Engineer

Nomagic • Warszawa

On-site
PLN 212,000 - 279,000
Relocation package
Equity for every employee
Partly remote work
+2