Senior IT Security Engineer

Finoa is a technology infrastructure provider helping companies and institutions migrate capital into the onchain economy.

Voltastraße 1, 14482 Potsdam, Germany
About Finoa

Finoa GmbH provides technology infrastructure for digital-asset and onchain operations. Its current website states that Finoa is not a MiCAR-authorized Crypto-Asset Service Provider, does not control client assets or provide custody, and does not facilitate order execution. Its privacy policy states that its former crypto-custody license was surrendered and formally revoked effective 31 December 2025, with no new regulated business relationships entered into.

View jobs by Finoa

Skills

Candidate Availability

Required and preferred rules are kept separate and reflect the wording in the original posting.

About the Role

Own day-to-day operational security across Finoa Group, including SIEM operations, detection monitoring, incident response, vulnerability management, threat intelligence, security tooling, vendor security reviews, and on-call coverage.

Requirements

  • 4+ years of hands-on IT or information security experience with depth in security operations
  • Experience owning or operating a SIEM, including design, tuning, and monitoring
  • Hands-on incident response experience
  • Knowledge of vulnerability management, endpoint and network security tooling, and cloud security fundamentals
  • Ability to work closely with engineering and own topics end to end
  • Understanding of security and compliance requirements in a regulated business
  • Right to work in Lithuania or the EU and ability to regularly attend the Vilnius office
  • Experience in a regulated environment, cloud or platform security, detection engineering or scripting, and relevant certifications are nice to have

Responsibilities

  • Own and operate the SIEM, including detection use cases, log onboarding, tuning, and alert triage
  • Run continuous security monitoring and escalation into incident response
  • Lead containment, eradication, and recovery during security incidents
  • Run vulnerability scanning, triage, remediation tracking, and verification
  • Support annual independent penetration testing
  • Track threat-intelligence feeds and maintain indicators of compromise
  • Configure and maintain endpoint and network security tooling, including EDR, firewalls, and network monitoring
  • Maintain baseline security-configuration and access-control standards
  • Contribute technical security due diligence for third parties and cloud providers
  • Provide on-call coverage for security incidents outside business hours

Benefits

  • End-to-end ownership of operational security across the Group
  • Hands-on technology-focused role with autonomy to shape the function
  • Opportunity to help shape the founding Vilnius team and security culture
  • Growth in scope with a path toward broader security leadership
  • Fast-paced environment with direct access to experienced security leaders