Security Engineer Poland : Kielce, Kraków, Wrocław + Remote 140 – 170 PLN NET PER HOUR B2B Security Engineer

Virtus Lab Sp. z o.o. All trademarks their respective owners

Kielce, Kraków, Wrocław

Hybrid

PLN 180,000 - 300,000

Full time

14 days+
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Benefits offered by this job

Home office reimbursement
Training Package
Virtusity / in-house training
Building tech community

Job summary

VirtusLab is partnering on a UK insurance sector security engagement to harden a hybrid Microsoft environment and unify security tooling across multiple entities.

You will help implement a Zero Trust architecture, strengthen detection and response, and coordinate with MDR providers to improve incident handling and policy standardization across global operations.

Qualifications

  • 5+ years of Cloud/SaaS Infrastructure Security consulting or engineering engagements.
  • Hands-on expertise with Microsoft Security Stack including Entra ID, Defender, Intune, Network Security, and Cloud Security.
  • Proficiency in incident response, security analysis, and posture hardening.

Responsibilities

  • Help establish a modern security function for a multi-entity group with governance and tooling alignment.
  • Implement and optimize Defender XDR across endpoints, identity, and cloud apps; integrate signals into Sentinel.
  • Drive IAM hardening, policy standardization, and security governance across the org.

Skills

Cloud Security
Incident response
Posture hardening
Microsoft Security Stack

Education

Computer Science or STEM degree

Tools

Entra ID
Defender for Endpoint
Defender for Identity
Defender for Cloud Apps
Microsoft Sentinel
Intune
Privileged Identity Management (PIM)

Job description

VirtusLab is a leading European software consulting and engineering company. Our mission is to craft clean code and practical solutions with precision and purpose. We foster a dynamic culture rooted in strong engineering, a sense of ownership, and transparency, empowering professionals to make a substantial impact in the software industry.

About the Engagement

Shape the future of a rapidly scaling UK insurance leader. The scope of cooperation encompasses supporting security operations within a modern security stack and streamlining integration capabilities to unify a high-growth MGA and brokerage ecosystem. Core deliverables include contributing to incident response operations, managing AV/EDR mechanisms, developing and updating security policy frameworks, optimizing SIEM operations, and driving IAM hardening initiative.

Networking Security Regular

Azure Security Regular

Zero Trust Concepts Regular

Infrastructure as a Code Regular

Entra Internet Access & Private Access Nice to have

Project

Enterprise Security E2E

Project Scope

Establishing a modern, enterprise-grade security function for one of the UK’s fastest-growing Managing General Agents and brokerage groups. The end-client operates across three continents with entities spanning the UK, Europe, and Asia-Pacific, expanding dynamically through M&A operations.

The scope focuses on hardening a complex hybrid Microsoft environment, unifying fragmented security tooling across a multi-entity ecosystem, and driving a consistent, governed, and resilient security baseline across the entire Group.

Legacy, reactive security practices are being replaced with a Zero Trust architecture – deploying Microsoft’s full security stack across identity, endpoints, cloud apps, data, and network. The project aims at strengthening detection and response capabilities to protect a high-growth insurance business operating under Lloyd’s, UK GDPR, and MAS regulatory frameworks.

Key Deliverables & Challenges

The primary objective is hardening the Group’s security posture across a multi-entity structure and building operational capabilities to detect, respond to, and recover from security events. Main areas of engagement:

  • Deploying and Optimizing Microsoft Defender XDR: Onboarding entities to Defender for Endpoint, Defender for Identity, and Defender for Cloud Apps, alongside integrating operational signals into Microsoft Sentinel as the central SIEM/SOAR platform.

  • Identity and Access Hardening: Implementing Zero Trust identity controls including phishing-resistant MFA, Privileged Identity Management (PIM), Conditional Access policies, and Active Directory security hardening across hybrid on-premises and Entra ID environments.

  • Security Operations & Incident Response: Co-operating with external MDR providers to optimize operational response workflows.

  • Security Policy Standardization: Developing, documenting, and monitoring compliance with security baselines, configuration standards, and control frameworks across all Group entities worldwide.

  • Cloud and SaaS Security Governance: Securing M365, Azure, and the broader SaaS ecosystem through Purview data classification, DLP policies, MDCA session controls, and continuous posture management.

  • M&A Security Integration: Execution of a repeatable security onboarding framework for newly acquired entities during continuous business expansion.

The engagement takes place within a lean, agile project environment delivering complete security stack coverage across DevOps, Infrastructure Engineering, Security Engineering, and Business Analysis domains, requiring close cross-functional alignment with business stakeholders to facilitate effective knowledge transfer and strict integration with strategic goals.

Required Technical Expertise & Capabilities
  • 5+ years of track record in Cloud/SaaS Infrastructure Security consulting or engineering engagements.
  • Hands-on expertise with Microsoft Security Stack including Entra ID, Microsoft Defender, Intune, Network Security, and Cloud Security.
  • Proficiency in security practices: incident response, security analysis, and posture hardening.
  • Demonstrated experience in securing and maintaining Microsoft Stack services.
  • Experience with insurance infrastructure ecosystems is a plus.
  • Formal background in Computer Science, STEM, or equivalent practical industry expertise.
  • English communication skills at B2+ level or higher.
  • Familiarity with security standards and compliance frameworks such as ISO 27001 / SOC-2 is advantageous.
A few perks of being with us
  • Building tech community
  • Home office reimbursement
  • Training Package
  • Virtusity / in-house training
  • Access to the above perks is optional and completely voluntary for B2B contractors
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Security Engineer (Senior)
Security Engineer (Senior)

Virtus Lab sp. z o.o. (Ltd.) • Kraków, Kielce

On-site
PLN 180,000 - 240,000
Information Security Engineer
Information Security Engineer

Dentons • Warszawa

Hybrid
PLN 180,000 - 280,000
Medical healthcare provided by Medicov
MultiSport card
Benefit Cafeteria system
+4
Cloud Infrastructure/M365 Administrator @ VirtusLab
Cloud Infrastructure/M365 Administrator @ VirtusLab

VirtusLab • Poland

Hybrid
PLN 180,000 - 260,000
Building tech community
Flexible hybrid work model
Home office reimbursement
+6
Information Security Engineer (Dentons Business Services EMEA)
Information Security Engineer (Dentons Business Services EMEA)

Dentons • Warszawa

Hybrid
PLN 180,000 - 260,000
Private medical healthcare
MultiSport card
Benefit Cafeteria system
+4
Engineer - Cybersecurity (Vulnerability & Threat Management)
Engineer - Cybersecurity (Vulnerability & Threat Management)

Sysco Corporation • Poland

On-site
PLN 40,000 - 60,000
Professional development opportunities
Collaborative culture
Modern security technologies
Senior Vulnerability Management Specialist
Senior Vulnerability Management Specialist

Antal Poland • Kraków

Hybrid
PLN 180,000 - 280,000
Hybrid working model
Lux Med private medical care
Contractor Care specialist
+1
Senior Cloud Security Engineer - Microsoft Stack
Senior Cloud Security Engineer - Microsoft Stack

Virtus Lab sp. z o.o. (Ltd.) • Kraków, Kielce

On-site
PLN 180,000 - 240,000
Engineer Endpoint Security
Engineer Endpoint Security

Grant Thornton International • Poznań

Hybrid
PLN 70,000 - 110,000
Hybrid work model
Private medical care
MultiSport benefits
+6
Cybersecurity Network Security Specialist
Cybersecurity Network Security Specialist

Vector Synergy • Warszawa

Hybrid
PLN 212,000 - 298,000
Internal IT/Security Engineer
Internal IT/Security Engineer

Digital Workforce • Łódź

Hybrid
PLN 90,000 - 140,000
Hybrid work
Benefits package
Growth opportunities
+2