Bloomreach
Senior Security Engineer
Slovakia
Get past the screening software and onto a recruiter's desk
hirly rewrites your resume for this job — matching the keywords and skills in the posting, moving your most relevant experience to the top, and writing a cover letter to fit. About 30 seconds.
- Keywords matched to this posting
- Fit score before you apply
- Cover letter included
Matched against 2.3M live jobs from 200,000+ employers in 200+ countries.
Tailor my resume for this job →hirly's read of this role
- Role family
- Engineering
- Seniority
- Senior
- Stated salary
- €38,095 – €47,619 per year
- Country
- SK
- Work mode
- On-site / unstated
- First seen by hirly
- 1 Oct 2026
Derived automatically from the posting. Upload your resume above to see how the role scores against it.
the posting
Bloomreach is building the world’s premier agentic platform for personalization .We’re revolutionizing how businesses connect with their customers, building and deploying AI agents to personalize the entire customer journey.
We're taking autonomous search mainstream, making product discovery more intuitive and conversational for customers, and more profitable for businesses.
We’re making conversational shopping a reality, connecting every shopper with tailored guidance and product expertise — available on demand, at every touchpoint in their journey.
We're designing the future of autonomous marketing , taking the work out of workflows, and reclaiming the creative, strategic, and customer-first work marketers were always meant to do.
And we're building all of that on the intelligence of a single AI engine — Loomi — so that personalization isn't only autonomous…it's also consistent.From retail to financial services, hospitality to gaming, businesses use Bloomreach to drive higher growth and lasting loyalty. We power personalization for more than 1,400 global brands, including American Eagle, Sonepar, and Pandora.
About the Role
You will serve as a trusted security partner to Engineering, DevOps, and IT, designing and hardening secure AWS environments, securing our containerized and Linux-based workloads, and protecting our corporate infrastructure and identity/access tooling — while partnering closely with our dedicated SOC team on detection and response.
You will act as a key member of the Cloud Security team, owning cloud and corporate infrastructure security architecture, vulnerability remediation, and Splunk administration and data integration, in close partnership with the SOC team, which owns detection content, alerting, playbooks, and incident triage/response.
Your Job Will Be (but not limited to)
Design, implement, and monitor security controls across our AWS cloud infrastructure, applying platform-native services (e.g., IAM, GuardDuty, Security Hub, KMS, VPC/Security Groups, Config ) and secure architecture patterns to protect production environments.
Maintain deep working knowledge of the AWS security service landscape , evaluating new and existing services to close coverage gaps and strengthen our security architecture.
Secure our Linux server fleet and containerized workloads (Docker, Kubernetes) , including host hardening, image and runtime security, and Kubernetes cluster and workload configuration.
Own the security of our corporate infrastructure , including security configuration and administration of identity and access tooling such as JumpCloud and zero-trust network access tooling such as Twingate .
Administer and integrate Splunk as a data platform — onboarding new log sources, maintaining data pipelines, and supporting platform health and licensing — in partnership with the SOC team, which owns detection content, alerting logic, and playbooks.
Identify, triage, and drive remediation of infrastructure and web application vulnerabilities, partnering with engineering teams to reduce MTTR and improve remediation rates.
Lead CVE lifecycle management and patching efforts, performing root cause analysis and tracking remediation metrics across cloud, corporate, and on-prem systems.
Build and maintain secure automation and tooling for vulnerability remediation and infrastructure hardening using Python, Go, or Bash or similar scripting languages.
Implement security guardrails and policy-as-code within Infrastructure as Code (IaC) and CI/CD pipelines , performing static IaC scanning and enforcing security baselines prior to deployment.
Define logging and telemetry requirements for cloud, container, and corporate infrastructure assets, ensuring the SOC team has the data coverage needed for effective detection.
Develop, document, and operationalize security architecture standards for cloud, container, and corporate infrastructure, partnering with engineering pillars and IT to drive adoption across the organization.
Partner with the SOC team on incident response as a technical subject-matter expert for cloud, container, and corporate infrastructure
Mentor junior security engineers and prioritize security initiatives based on risk and business impact, driving continuous improvement of the organization's cloud and corporate infrastructure security posture.
Professional Experience and Skills Requirements
6+ years of hands-on experience in cybersecurity engineering, with a focus on cloud security, infrastructure security, and system hardening.
Deep, hands-on experience securing AWS environments, including secure architecture design, IAM, and applying native AWS security services (e.g., GuardDuty, Security Hub, KMS, Config, Inspector ).
Strong working knowledge of Linux system administration and hardening, and hands-on experience securing containerized environments (Docker and Kubernetes) .
Experience securing corporate infrastructure and identity/access tooling, such as JumpCloud , Twingate , or comparable zero-trust/IAM platforms.
Experience administering and integrating Splunk (or comparable data/SIEM platforms) as a log and data pipeline, including onboarding data sources and maintaining platform health.
Demonstrated ownership of the vulnerability and CVE lifecycle , including triage, root cause analysis, patching, and MTTR/remediation-rate reporting.
Proficiency in scripting and automation ( Python, Go, or Bash ) to build or extend security tooling for hardening and remediation.
Experience implementing policy-as-code and security guardrails within CI/CD pipelines , including static IaC scanning and pre-deployment security baselines.
Working knowledge of common security frameworks ( CIS, NIST ) and typical weaknesses exploited in infrastructure, containers, and web applications.
Strong cross-functional communication skills, with experience partnering closely with SOC, engineering, and IT teams on shared security outcomes.
Experience mentoring junior engineers and prioritizing security work based on risk and business impact.
Relevant certifications preferred: AWS Certified Security – Specialty , Certified Kubernetes Security Specialist (CKS) , CISSP , CCSP , or CCSK .
Your Success Story Will Be
In the First 30 Days
Develop a foundational understanding of Bloomreach's AWS environment, corporate infrastructure, and existing security controls, including JumpCloud and Twingate configurations.
Become familiar with the Cloud Security team's tooling, current Splunk data integrations, and how the team partners with the SOC on detection coverage.
Review current CVE/vulnerability management processes, IaC pipelines, and security baselines for cloud, container, and Linux environments.
Establish working relationships with Engineering, DevOps, IT, and the SOC team.
Identify quick-win opportunities to strengthen existing hardening, IaC guardrails, or corporate infrastructure configurations.
In the First 60 Days
Independently triage and drive remediation of infrastructure, container, and web vulnerabilities identified through scanning and assessments.
Onboard at least one new data source into Splunk and contribute to maintaining existing data pipelines.
Contribute to IaC security scanning and policy-as-code enforcement within CI/CD pipelines.
Partner with Engineering and IT to close CVE and patching gaps, tracking MTTR and remediation-rate metrics.
Begin mentoring junior team members on cloud and infrastructure security fundamentals.
In the First 90 Days
Own end-to-end security architecture reviews for at least one major AWS workload or corporate infrastructure system, independently identifying risks and driving mitigations.
Demonstrate hands-on ownership of Linux, container, and Kubernetes security hardening for at least one environment.
Propose improvements to security architecture standards or automation based on observed gaps
Similar jobs
- AI Security Engineer (m/f/n)Eset · BratislavaFirst seen 4d ago
- Application Security Engineer (m/f/n)Eset · 2 LocationsFirst seen 4d ago
- Senior Information Security EngineerWf · 4 LocationsFirst seen today
- Senior IT Security EngineerUline · 5 LocationsFirst seen today
- SATCOM Cyber System Security Engineer, SeniorBah · 2 LocationsFirst seen today
Browse similar roles
Want this one?
Upload your resume and hirly rewrites it for this job and writes the cover letter — in about thirty seconds, before you sign up.
Tailor my resume for this job