Jobs

Senior Cloud Security Engineer

Apply now for a career that puts wellbeing first!

GET TO KNOW US

Gympass is a corporate wellness platform that connects you to thousands of fitness & wellness partners, all with one simple monthly membership. Founded in 2012 and headquartered in NYC, we have a growing global team in 11 offices around the world. At Gympass, you not only have the opportunity to build a career in a fast-paced global environment - but you'll make wellbeing universal, so everyone can be happy and healthy. 

THE OPPORTUNITY

We are hiring a Senior Cloud Security Engineer  for the InfoSec teamin Portugal!We are looking for a team member to help us investigate and respond to hacking attempts and security incidents. This person will work closely with our engineering team and IT and advise on the next steps to be taken in the form of a mitigation plan, improving our cybersecurity observability and supporting us in delivering a fantastic product that our customers can trust. We are all in the cloud and use software engineering principles to solve large-scale production challenges.

This position is for the Cloud Security team. The Cloud Security Engineer is responsible for designing, implementing, and managing security measures in cloud computing environments to protect data, applications, infrastructure, and services against potential threats and vulnerabilities.

YOUR IMPACT

  • You will detect, analyze and clarify hacking attempts, security incidents, and alerts from our monitoring stack.
  • You will work with a SIEM and monitor alarms, indicators of compromise, and use cases.
  • You consult our IT and engineering team and advise on the mitigation plan.
  • You will proactively work on solving and preventing incidents, and you regularly present your findings to the leadership.
  • You will discuss with security engineers and colleagues security challenges and improvements.
  • You will help to keep our threat intelligence initiatives at a high level.
  • You will be responsible for the security of the cloud platform, ensuring security controls provided by cloud service providers.
  • You need to ensure controls are configured correctly and integrated into the security strategy.
  • You will be responsible for identifying, analyzing and reporting vulnerabilities found in the ecosystem.
  • You will also be responsible for configuring vulnerability management tools.

WHO YOU ARE

  • You are a professional experienced in cyber security, focused on cloud providers such as AWS, GCP or Azure (Security Hub);
  • You have experience in SIEM and other cybersecurity tools such as antivirus, cloud access security broker, vulnerability scanners, and firewalls.
  • You have knowledge in Vulnerability Management (Tenable, Rapid7, OpenVas, and Qualys Guard);
  • You have knowledge of CI/CD pipelines DevSecOps (SonarQube, Snyk, Codacy, and OWASP ZAP) and Infrastructure as code (IaC) security (Terraform and Helm). 
  • Background with orchestration and Kubernetes knowledge.
  • You have a broad knowledge of incident response procedures.
  • You have great communication skills, you are able to communicate with your teammates and stakeholders synchronously and asynchronously, and use English when needed.
  • You know and worked with  Identity Provider Platforms (IDPs) such as Azure AD, Keyclock, and Okta and with Cloud Security Posture Management (CSPM);
  • You have a wide understanding of cybersecurity frameworks such as OWASP and  Mitre’s ATT&CK.
  • You got the ability to create scripts for automating security tasks.
  • You have familiarity with IT service management processes such as incident management and change management. 
  • You help your team to collaborate within and with other teams;

WHAT WE OFFER YOU 

We're a wellness company that is committed to the health and well-being of our employees. Our benefits include:

GYMPASS: We believe in our mission and encourage our employees and their families to find their passion too. Access digital fitness programs and online wellness resources and online wellness resources for meditation, nutrition, mental health support, and more. You will receive the Gold plan at no cost, and other premium plans will be significantly discounted.

FITNESS: Additional fitness subsidy to access onsite gyms and fitness studios.

FLEXIBLE WORK: Choose when and where you work. For most, this will be a hybrid office/remote structure, but can vary depending on the needs of the role and employee preferences. We offer all employees a home office stipend and a monthly flexible work allowance to cover the costs of working from home. 

+ Our offices are in Germany, Italy, Netherlands, Portugal, Romania, Spain, and the UK. You can work from any office or remotely based in any of these countries.

FLEXIBLE SCHEDULE: We understand that together, Gympassers and their leaders can make the best decisions for their own individual scopes. This includes flexibility to adjust their working hours based on their personal schedule, time zone, and business needs.

PAID TIME OFF: We know how important it is to take time away from work to recharge. Employees receive a minimum of 25 days paid holiday per year with an additional day for each year of tenure (up to 5) in addition to annual holidays (including an extra holiday on your birthday!).

PARENTAL LEAVE: 100% paid parental leave of 12 weeks to all new parents (of both biological and adopted children, regardless of gender and parent's relationship with the co-parent) + 100% paid birth leave of 14 weeks.

CAREER GROWTH: Outstanding opportunities for personal and career growth. That means we maintain a growth mindset in everything we do and invest deeply in employee development.

CULTURE: An exciting and supportive environment filled with passionate individuals from all over the world! You’ll partner with global colleagues and share in the success of a high-growth technology company disrupting the health and wellness space. Our value-based culture of trust, flexibility, and integrity makes this possible every day. Find more info on our careers page! 

And to get a glimpse of Life at Gympass… Follow us on Instagram @gympasscareers and LinkedIn!

Diversity, Equity, and Belonging at Gympass

We aim to create a collaborative, supportive, and inclusive space where everyone knows they belong.

Gympass is committed to creating a diverse work environment and is proud to be an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, religion, color, sex, gender identity or expression, sexual orientation, age, non-disqualifying physical or mental disability, national origin, veteran status, or any other basis covered by appropriate law.

Questions on how we treat your personal data? See our Job Applicant Privacy Notice.

#LI-Remote 

Cyber Security Jobs by Category

Cyber Security Salaries