Описание
JetBrains creates intelligent software development tools for developers and teams. Its products help more than 15 million users and over 300,000 companies solve complex problems, with a mission to make development teams more productive and AI adoptable at scale.
Задачи
- Lead and continuously improve cloud security across JetBrains Air, including security posture, preventive controls, detection, and remediation;
- Define, maintain, and measure security baselines for AWS and GCP environments, covering IAM, networking, data protection, and workload configuration;
- Operate and evolve cloud security platforms and vulnerability-management solutions;
- Establish processes for triaging, prioritizing, assigning, and remediating cloud security findings and vulnerabilities;
- Partner with platform engineering, SRE, and product engineering teams to design and implement security controls that fit developer workflows;
- Perform security design and architecture reviews for cloud services, APIs, and integrations;
- Conduct threat modeling and risk assessments and provide actionable recommendations;
- Review product and platform changes for security implications throughout the software development lifecycle, from early design to production;
- Improve security automation by integrating security checks, guardrails, and evidence into engineering and delivery pipelines;
- Support incident response and root-cause analysis, and drive systemic improvements that reduce recurrence;
- Develop metrics for cloud and product security, communicate trends and risks, and help prioritize security investments;
- Contribute to security standards, guidance, runbooks, and patterns that make secure engineering easier across JetBrains.
Требования
- Professional experience in security engineering or a closely related technical security domain, securing SaaS products or cloud-native services;
- Strong experience with AWS and/or GCP security, including assessing architecture and configurations directly rather than relying solely on tool outputs;
- Practical experience deploying, operating, or integrating cloud security and vulnerability-management platforms;
- Hands‑on experience with security architecture reviews, threat modeling, vulnerability management, and risk‑based prioritization;
- Solid understanding of modern SaaS architectures, including APIs, microservices, containers, Kubernetes, identity providers, networking, and managed cloud services;
- Experience working closely with engineering, SRE, and product teams to translate security requirements into practical engineering solutions;
- Excellent written and spoken English;
- Nice to have: security automation or security controls in CI/CD and IaC workflows, Terraform or other IaC tools, Kubernetes‑based platforms and containerized workloads, detection engineering, cloud-native logging and monitoring, security operations workflows, scripting or programming in Python, Go, Kotlin, Java, or a similar language, SOC 2, ISO 27001, or other security and compliance frameworks for SaaS products, customer‑facing security conversations.
Условия
- Competitive base salary reflecting skills and experience;
- Work from home or from the office;
- Up to 30 days per year working remotely from abroad;
- Extra time off;
- Medical insurance allowance for the employee and family;
- Access to conferences, courses, and language classes;
- Relocation support is available;
- Language classes;
- Hot meals or a lunch allowance on workdays;
- Access to professional mental health services;
- On‑site gym or sports club stipend;
- Company‑wide celebrations and team gatherings;
- Some benefits may vary depending on location.