Search...

Security Engineer

Vivid logo
Vivid

Vivid is a European financial-services company offering digital business and personal accounts, cards, transfers, payment acceptance, and investment products. It serves freelancers, small and medium-sized businesses, enterprises, and individual customers.

Luxembourg, LU
About Vivid

Vivid provides an all-in-one digital financial platform for companies, freelancers, and personal users. Its services include business accounts with multiple IBANs and sub-accounts, Visa cards and cashback, SEPA Instant and international payments, invoicing, bookkeeping integrations, payment links, POS terminals, and business travel tools. It also offers investment products such as interest accounts, model portfolios, and business brokerage for money market funds, ETFs, stocks, bonds, and crypto assets. Payment services are provided by Vivid Money S.A. in Luxembourg, while investment and crypto services are provided by Vivid Money B.V. in Amsterdam.

View jobs by Vivid

Skills

About the Role

You will own and improve the security of the internal environment covering identities, SaaS apps, endpoints, AI tooling, and networks used every day. This is a hands-on senior role where you design controls, find gaps, and drive the changes that close them while building automation that scales. You'll lead technical initiatives independently, influence security architecture, challenge outdated approaches, and clearly explain security topics to engineers and leadership.

Requirements

  • 5+ years in security operations, corporate/IT security, or endpoint engineering
  • Strong with a SIEM (Splunk, Elastic, Panther, Sumo Logic) including detection engineering and incident response
  • Experience with an identity provider (Okta, Entra ID, Google Workspace), access recertification, and least-privilege / PAM
  • Working knowledge of endpoint security (MDM, XDR/EDR/AV) and email / phishing defense
  • Practical experience securing how a company uses AI internally including shadow AI discovery, DLP for AI tools, and controls for AI assistants and agents
  • Strong scripting and automation skills building tooling against APIs
  • Track record of driving improvements end-to-end and leading initiatives with little oversight
  • Clear written and spoken English for engineers and leadership

Responsibilities

  • Own SIEM alerting end-to-end: ship logs from endpoints, IdP, VPN, SaaS, and cloud
  • Write and tune detection rules and cut false positives
  • Act as first responder for security incidents and investigate, contain, and drive to closure with clear runbooks
  • Feed recurring issues back into preventive controls
  • Administer the IdP (SSO via SAML/OIDC, MFA, conditional access)
  • Run access recertification end-to-end across IdP, SaaS, AWS, and internal tools
  • Hunt down over-permissive and stale access, enforce least privilege and PAM
  • Catch SoD gaps and make JML and third-party access work in practice
  • Improve SaaS security posture for Google/Microsoft, Slack, GitHub, and others
  • Apply DLP controls to limit data leakage
  • Keep the endpoint stack healthy and well-tuned including MDM, XDR/AV, device-compliance checks for VPN/ZTNA
  • Define posture requirements such as disk encryption, EDR presence, and OS version with automated remediation
  • Defend against phishing and spoofing with secure email gateway rules and DMARC/SPF/DKIM
  • Run phishing simulations and security awareness training and act on results
  • Build internal tooling and automate repetitive operations
  • Own the roadmap for security areas and lead initiatives independently

Benefits

  • Hybrid model in Limassol office or fully remote outside office locations
  • Relocation support to Cyprus (visa, package) when needed
  • Learning & development budget
  • Fully paid vacation and sick leave
  • Sports compensation