Security Engineer
Our client is seeking a highly skilled and proactive Security Operations Engineer with a strong DevSecOps mindset to join their expanding team. Reporting to the CISO/ISO, this individual will play a key role in strengthening the organisation’s security posture, with a strong focus on cloud security, operational monitoring, and compliance. Acting as a vital link between the security function and R&D teams, they will ensure that security best practices are seamlessly incorporated into the development lifecycle.
This position is ideal for a technically driven professional who enjoys hands-on implementation, solving complex problems, and continuously improving security capabilities in a fast-paced environment.
The Security Operations Engineer will report to the Information Security Specialist.
About Our Client
Our client is a diverse and rapidly growing online casino operator active in regulated markets, with offices in Malta, Estonia, and The Netherlands.
With ongoing success and expansion across their brands, our client is welcoming more top-tier talent to support their mission of becoming the next major player in the iGaming industry.
They are looking for individuals who are self-driven, detail-oriented, and excited by new challenges in a high-performing yet relaxed and friendly workplace.
Responsibilities
Cloud Security Operations (AWS Focus)
- Perform regular security audits and reviews of AWS resources (EC2, VPC, Security Groups, S3, IAM, etc.) to identify vulnerabilities and misconfigurations.
- Assist with maintaining network diagrams and security architecture documentation for penetration testing and compliance activities.
- Harden AWS cloud infrastructure using recognised security benchmarks (CIS, NIST).
- Support and enhance Cloud Security Posture Management (CSPM) tools to identify and remediate risks.
- Implement and manage controls for authentication, authorisation, and encryption within AWS.
- Ensure high availability and disaster recovery across cloud infrastructure.
Security Monitoring & Incident Response
- Implement, configure, and fine-tune security monitoring solutions (Google SecOps SIEM, ELK) to identify and respond to threats.
- Onboard new systems and services into SIEM solutions to strengthen organisational detection capabilities.
- Prepare documentation, reports, and remediation plans for vulnerability assessments.
- Develop incident reporting processes, documentation templates, and coordinate mitigation activities.
- Conduct security scans using tools such as Qualys and Nessus.
DevSecOps & SDLC Integration
- Collaborate with R&D teams to embed security best practices throughout the entire SDLC.
- Analyse SAST and DAST findings (SonarCloud, Snyk, Checkmarx) and support developers in implementing fixes.
- Enhance CI/CD pipelines (GitHub Actions, GitLab CI) with automated security checks and gates.
- Automate security processes using Python, Bash, and other scripting tools.
- Harden container platforms such as Kubernetes and Docker.
Endpoint & SaaS Security
- Manage and secure endpoint devices and ensure adherence to security policies.
- Monitor and audit security configurations, access controls, and data protection measures.
- Work with teams to secure essential SaaS applications.
Compliance & Audit
- Support compliance efforts aligned with GDPR, ISO 27001, NIST, and other industry standards.
- Conduct security audits and ensure appropriate control coverage across cloud environments.
Requirements
- 5+ years of experience in IT, with significant experience in DevSecOps, Security Operations, or Cybersecurity roles.
- Hands-on experience with AWS and Google Cloud services (EC2, VPC, Networking, EKS, IAM, SecurityHub, etc.).
- Strong understanding of CI/CD processes (GitHub Actions, GitLab CI).
- Proficiency in scripting languages such as Python and Bash.
- Experience with security scanning tools (Qualys, Nessus, SonarCloud, Snyk, Checkmarx).
- Familiarity with Infrastructure as Code—preferably Terraform.
- Experience working with Docker, Kubernetes, and container security.
- Strong knowledge of industry security standards (CIS, ISO 27001, NIST, GDPR).
- Experience with monitoring and logging tools (ELK, Google SecOps).
- Excellent communication and problem-solving skills, with the ability to collaborate across technical and non-technical teams.
What Our Client Offers
- Hybrid working model.
- Competitive salary based on experience and qualifications.
- Brand-new office facilities.
- Private parking.
- Private health insurance.
- Wellness allowance up to €600 per year.
- Employee Assistance Program through Richmond Foundation.
- Birthday surprises.
- Office lunches and daily snacks, including fresh fruit and healthy options.
- Meal allowance.
- A wide range of attractive company discounts.
- Department
- IT
- Locations
- Malta
- Remote status
- Hybrid
- Employment type
- Full-time
About iTalent PLUS
As iGaming recruitment specialists, at iTalent PLUS, we take pride in our role as matchmakers between exceptional talent and forward-thinking employers. From tackling personal decisions to reaching important milestones, our job is to guide you on the path of success. We are fueled by our commitment to excellence and go the extra mile to make sure our clients are fully satisfied with our work.
As a team of professional Recruitment Consultants, we create partnerships with a purpose, and always strive for significant outcomes. Contact us today for an initial consultation, and find out more about how we can tailor our services to your needs.