Senior II Security Engineer - Platform
Listed on 2026-05-30
-
IT/Tech
Cybersecurity, Security Manager, Systems Engineer
Meet the team!
The Security team partners across the company to help Preply grow safely and sustainably. We are responsible for platform security, application and product security, security operations, and incident response. We work closely with SRE, Data teams, Engineering teams, and our GRC function to make security practical, measurable, and scalable.
We work in small teams, which means you’ll have high ownership, real influence on technical decisions, and the opportunity to drive meaningful improvements across the company. We promote self‑direction, strong collaboration, and a culture where trust and clear communication matter.
What you’ll be doing:Own platform security across AWS, Kubernetes, and GCP, with a strong focus on detection, alerting, and incident response readiness
Lead key platform security initiatives end‑to‑end, from problem definition through rollout and iteration
Act as a strong technical voice in defining how platform security is designed, implemented, and operated at Preply
Evolve our monitoring from “we have a SIEM” to a detection and response capability that is effective, trusted, and actionable
Work hands‑on with our current tooling, including Datadog as our SIEM, Okta as our primary IdP, and a range of SaaS platforms
Drive cross‑functional platform security initiatives from problem definition to production rollout, partnering with SRE, Data, Engineering, and GRC
Strengthen cloud and platform security across AWS and Kubernetes, with expanding scope in GCP, through practical guardrails, secure patterns, and automation
Improve the robustness of access to internal infrastructure, including identity, privileged access, and auditability
Improve security of Kubernetes deployments, including cluster and workload security, policy enforcement, and secure workload identity patterns
Mature detection and response capability using Datadog
Improve log coverage and data quality (cloud, Kubernetes, CI/CD, identity, and key SaaS)
Build and tune actionable detections with clear severity, ownership, and expected frequency
Reduce noise through correlation, deduplication, enrichment, and continuous tuning
Establish repeatable triage workflows and clear escalation paths, being part of the Security on‑call rotations
Create investigation playbooks and runbooks so alerts can be handled consistently and quickly
Partner with Data teams to improve monitoring for suspicious activity and sensitive access patterns, with an emphasis on practical, high‑signal alerting
Improve secrets management and reduce exposure risk across CI/CD and runtime
Build security automation that makes the secure path the easy path for engineers
Strong experience securing cloud and platform environments, especially AWS and Kubernetes, and the ability to extend that security approach into GCP
Hands‑on experience driving and delivering technical security initiatives end‑to‑end in production environments
Strong understanding of the software development lifecycle, and comfort working with CI/CD and infrastructure as code
Practical experience improving identity and access security, with strong familiarity with Okta event monitoring and identity‑focused detection patterns
Experience building or maturing security operations capability, especially turning SIEM inputs into reliable operational outcomes (triage, runbooks, tuning, and measurable improvement)
Experience improving logging coverage and signal quality, and building detections that are actionable rather than noisy (experience with Datadog SIEM is a plus)
Strong collaboration skills and the ability to influence decisions across SRE, Data, Engineering, and GRC
Business‑oriented mindset and comfort making cost‑benefit tradeoffs
Strong communication skills. Minimum C1 English level.
Willingness to participate in on‑call rotations and partner effectively with SRE during incidents.
Terraform and infrastructure as code at scale
Jenkins hardening and CI/CD supply chain security controls
Cloudflare security controls (WAF, bot mitigation, edge protections)
Scripting or programming for automation and tooling
Incident response experience in cloud‑native environments (AWS and…
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search: