Senior IT Security Engineer | f/m/d

Warsaw

About Us

ERGO Technology & Services S.A. (ET&S S.A.) was established in January 2021 following the integration of ERGO Digital IT and Atena into one entity, leveraging both companies’ strengths and best practices. As a part of ERGO Technology & Services Management AG, the technology holding of ERGO Group AG, we support millions of internal and external customers with state-of-the-art IT solutions to everyday problems.

In October 2022, ET&S S.A. expanded its scope of operations by creating a Business Services unit to contribute in a new way to the growth of ERGO’s business. Acting as a co-partner and internal consultant, it adds non-IT value and supports the development of the entire ERGO Group, currently offering skills in reporting, analysis, actuarial, and input management. We are committed to fostering innovation and meeting the evolving needs of our clients worldwide.

Discover how we implement AI, IoT, Voice Recognition, Big Data science, advanced mobile solutions, and business-related services to anticipate and address our customers’ future needs.

About the role

Senior IT Security Engineer is responsible for designing, implementing, and maintaining security controls and governance mechanisms across cloud environments, with a primary focus on Microsoft Azure and a secondary awareness of AWS.

The role supports secure cloud adoption, ensures alignment to enterprise controls, and contributes to the continuous improvement of Cloud Security Operations, Policy-as-Code governance, and compliance automation.

How you will get the job done

  • implementing, enhancing, and maintaining Azure security controls across IaaS, PaaS, and cloud-native services
  • supporting AWS security control implementation as a secondary platform
  • developing security configurations, baselines, and patterns aligned with CIS Benchmarks, vendor best practices and Group Controls
  • collaborating with the Security Architecture, and Engineering teams to align and implement security controls that maintain a consistent and compliant cloud security posture
  • creating, maintaining, and enhancing Policy-as-Code solutions (including KQL Recommendations / Standards, Azure Policy / Azure Policy Initiative, Terraform policy sets, ARM templates, Bicep modules)
  • developing and maintaining Infrastructure-as-Code (IaC) templates using ARM, Bicep, Terraform, or equivalent languages
  • embedding security guardrails, governance policies, and preventive controls into IaC modules throughout CI/CD pipelines
  • ensuring alignment with internal principles, policies, standards, and controls
  • supporting automated compliance monitoring for Azure and AWS
  • reviewing cloud security configurations and hardening standards as part of assurance activities
  • partnering with Cyber Security Operations, Incident Response, and SOC analysts to strengthen detection, response, and logging configurations
  • supporting reviews of cloud alerts, identity configurations (e.g., PIM, RBAC), and network security
  • working with application teams to ensure secure deployment practices
  • delivering IaC modules and security control implementations with minimal supervision
  • mentoring staff and support architecture discussions

Skills and experience you will need

  • fluency in English is a must
  • strong communication and interpersonal skills
  • deep hands-on expertise in Microsoft Azure security capabilities
  • working knowledge of AWS cloud security
  • hands-on IaC experience using Bicep, ARM, terraform
  • experience implementing Policy-as-Code at scale
  • solid understanding of cloud identity and access management
  • familiarity with cloud-native security tooling (e.g., Defender for Cloud)
  • knowledge of secure cloud networking, encryption, logging, monitoring, and key management
  • strong problem-solving capability; able to independently engineer complex security solutions
  • effective communication with engineering, architecture, and application teams.
  • ability to manage competing priorities and work within a global, distributed environment
  • demonstrable experience implementing: Azure governance controls, Azure Policy and role-based access governance, IaC-based deployment pipelines
  • experience working with multi-disciplinary cloud teams (Architecture, Ops, Developers)
  • strong scripting skills e.g., PowerShell, Python, or similar
  • understanding of cloud security best practices, CIS Benchmarks, MITRE, and zero-trust patterns
  • knowledge of Azure landing zone architectures, management groups, and governance frameworks
  • certifications (AZ-900: Microsoft Azure Fundamentals, AZ-500: Microsoft Azure Security Engineer Associate)

Nice to have

  • Terraform Associate
  • additional Microsoft security or cloud specialisms considered beneficial
  • CCSP – Certified Cloud Security Professional
  • AWS security-related certifications

Interested in this position?

Apply now!

Perks & Benefits

Let's be healthy

Medical package, sports card, and numerous sports sections – these are some of the benefits that help our employees stay in good shape.

Let's be balanced

Work-life balance is a key aspect of a healthy workplace. We offer our employees flexible working hours, a confidential employee assistant program, as well as the possibility of remote working. However, staying at home with our in-office gaming room and dog-friendly office in Warsaw won’t be easy.

Let's be smart

We organize numerous workshops and training courses. Thanks to hackathons and meetups, our specialists share their expertise with others. Additionally, we have a wide range of digital learning platforms and language courses.

Let's be responsible

Each year, we participate in several CSR activities, during which, together with our colleagues, we do our best to create a better future.

Let's be fun

Company-wide bike races and soccer matches, film marathons in our cinema room or other engaging team-building activities – we got it covered!

Let's be diverse

Every team member is valued, regardless of gender, nationality, religious beliefs, disability, age, and sexual orientation or identity. Your qualifications, experience, and mindset are our greatest benefit!

Get to know us better

Follow our social media to stay up-to-date with the latest news from our company.