Cybersecurity Engineer - Cloud, Ops (human)

NEURA Robotics

Germany (OH)

On-site

USD 120,000 - 160,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

NEURA Robotics seeks a security-focused engineer to own cloud-native and embedded security across the robot controller to cloud backend. You will lead AppSec tooling, threat modeling, and NIS2 compliance, driving secure architecture decisions in collaboration with engineering and governance teams.

The role requires hands-on experience with Python, Bash, AWS security tooling, and AI/ML pipeline security; you will implement remediation guidance and audit-ready controls within CI/CD.

Qualifications

  • Minimum 3–5 years in application or cloud security with AppSec tooling ownership.
  • Handson with OWASP Top 10/ASVS and cloud security posture (AWS preferred).
  • Experience in vuln management lifecycle and audit-ready documentation.
  • Familiarity with NIS2, EU CRA, ISO 27001, or IEC 62443.
  • Proficiency in Python and Bash; secure coding practices.
  • Experience with AI/ML pipeline security and model supply chain risks.
  • Strong collaboration with embedded security, certification, and external auditors.

Responsibilities

  • Secure cloud-native platforms via IAM, network segmentation, secrets management, and policy-as-code.
  • Operate AppSec toolchain including SAST/DAST/SCA in CI/CD.
  • Drive vulnerability management with risk scoring and remediation.
  • Perform threat modeling across microservices, edge, and AI/ML pipelines.
  • Support NIS2 compliance documentation and incident workflows.
  • Define secure coding standards for Python, TypeScript, C++; OAuth2/OIDC/JWT.
  • Lead secure architecture reviews for cloud-native and AI-adjacent systems.
  • Bridge to embedded security for end-to-end integrity.

Skills

Python
Bash
Container security
Kubernetes security
IaC scanning
OWASP Top 10
DevSecOps tooling
SAST/DAST tooling
Communication

Education

Degree in Computer Science, Cybersecurity, or Software Engineering
OSCP or AWS Security Specialty (differentiator)

Tools

SAST tools (Semgrep/SonarQube)
DAST tools (ZAP/Burp)
SCA tools
GitLab CI/CD
AWS governance tooling (Config, SCPs, GuardDuty)

Job description

Your Mission & Challenges
  • Secure Cloud-Native Platforms: Secure cloud-native platforms (AWS EKS, Lambda, API Gateway, IoT Core, S3) via least-privilege IAM, network segmentation, secrets management, and policy-as-code (Terraform/AWS Organizations).

  • Own the AppSec Toolchain: Operate SAST (Semgrep/SonarQube), DAST (ZAP/Burp), SCA, and container/IaC scanning in GitLab CI/CD; extend coverage to Kubernetes manifests and supply chain.

  • Drive Vulnerability Management: Run risk-based vulnerability management: CVSS + exploitability rating, SLA-driven remediation tracking, and structured closure evidence for internal KPIs and regulatory reporting.

  • Perform Threat Modeling: Conduct STRIDE threat modeling across microservices, edge, and AI/ML inference pipelines; translate findings into architecture decisions.

  • Support NIS2 Compliance: Own NIS2 Art. 21 measure documentation, incident notification workflows (24h/72h), and supply‑chain security assessments for cloud dependencies.

  • Define Secure Coding Standards: Define and enforce secure coding and API standards (Python, TypeScript, C++; OAuth2/OIDC, JWT) and deliver developer‑oriented remediation guidance embedded in engineering workflows.

  • Lead Secure Architecture Reviews: Lead secure architecture reviews for cloud‑native and AI‑adjacent systems; assess AI/ML pipeline security controls (SageMaker, Triton, ONNX) and model supply chain risks.

  • Bridge to Embedded Security: Align cloud threat models and security controls with the embedded cybersecurity team to maintain end‑to‑end integrity from robot controller to cloud backend.

What We Can Look Forward To
  • Education & Certification: Degree in Computer Science, Cybersecurity, or Software Engineering; OSCP or AWS Security Specialty is a differentiator.

  • Track Record: 3–5 years in application or cloud security with demonstrated ownership of AppSec tooling and vuln management in a product environment — not advisory only.

  • Security Fundamentals: Hands‑on command of OWASP Top 10/ASVS, cloud security posture (AWS preferred), and DevSecOps tooling (SAST, DAST, SCA) — not just theoretical.

  • Vulnerability Management Process: Proven vuln management lifecycle: CVSS + exploitability triage, SLA‑driven closure, and audit‑ready documentation.

  • Regulatory Familiarity: Working knowledge of NIS2, EU CRA, ISO 27001, or IEC 62443; able to translate findings into compliance documentation for internal governance and external audit.

  • Technical Skills: Python/Bash proficiency; hands‑on with container and Kubernetes security, IaC scanning, and AWS governance tooling (Config, SCPs, GuardDuty).

  • AI/ML Pipeline Exposure: Exposure to AI/ML pipeline security (SageMaker, Triton, ONNX) and model supply chain risks is a significant differentiator.

  • Collaboration & Communication: Communicates security risk clearly to engineering and management; written outputs audit‑ready. Interfaces effectively with embedded security, certification, and external auditors.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Security Engineer
Senior Security Engineer

Novacoast • Salt Lake City (UT)

On-site
USD 100,000 - 130,000
Devsecops Engineer
Devsecops Engineer

Sutherland • United States

Remote
USD 140,000 - 180,000
Senior Security Engineer
Senior Security Engineer

Mach7 Technologies • New Jersey

On-site
USD 120,000 - 190,000
Staff Security Engineer, Application Security
Staff Security Engineer, Application Security

Jobtailor • California (MO)

On-site
USD 140,000 - 190,000
Staff Security Engineer (Product Security and Architecture)
Staff Security Engineer (Product Security and Architecture)

Compass • Ventura (CA)

On-site
USD 150,000 - 230,000
Principal Security Engineer
Principal Security Engineer

Jobtailor • Town of Texas (WI)

On-site
USD 140,000 - 190,000
Senior Security Engineer
Senior Security Engineer

Hiring Our Heroes • Arlington (VA)

On-site
USD 120,000 - 150,000
Senior Security Engineer
Senior Security Engineer

Zermount, Inc. • United States Virgin Islands

On-site
USD 100,000 - 150,000
Senior Application Security Engineer – Vulnerability Operations
Senior Application Security Engineer – Vulnerability Operations

Veriipro • Jersey City (NJ)

On-site
USD 120,000 - 150,000
Senior Software Engineer, Cloud Security
Senior Software Engineer, Cloud Security

Jobtailor • Boston (MA)

On-site
USD 150,000 - 210,000