Job Opportunities API

The Public Ledger of Openings

← Back to the ledger

Security Engineer, SecOps

Hoxhunt
CompanyHoxhunt
CategoryEngineering
LocationHelsinki
RemoteHybrid
EmploymentNot stated
LevelNot stated
SalaryEUR 5k–6k
Posted2 Jul 2026
Last verified30 Jul 2026
SourceEmployer career page (ashby)
Applications are handled by the employer, not by us.Apply on the employer's site →
Description
OUR MISSION AND WHY IT MATTERS We are on a mission to make humans the strongest security layer. Human risk remains one of the biggest vulnerabilities and traditional awareness training is not enough. We take a different approach by combining AI-driven personalization, real threat detection, and behavioral science to actively protect people and organizations. We don't just simulate risks. We build the tools that detect and stop them. WHY THIS ROLE MATTERS We're looking for a Security Engineer, SecOps to join Hoxhunt's Product Security team. Your core mission is to help mature our security monitoring into a stronger, automation-based security operations capability. We already have the foundations in place, and we want you to build on them with detection, observability and response delivered through tools and automation rather than a staffed SOC. You'll also coordinate vulnerability management across our engineering teams and write the production code and automation that makes security scale. You'll also help keep our customer security answers accurate, working with the team on the security questionnaires and RFPs that unblock deals. This is a real and recurring part of the job, roughly 10–30% of your time depending on deal flow: reviewing and updating our existing security answers, and researching new ones where none exist yet, drawing on broad SOC 2, ISO and HIPAA knowledge, with the occasional customer call when a deal needs technical depth. Beyond supporting deals, you'll also help turn customers' security and compliance requirements into product features and policy proposals, helping close the loop between what customers ask for and what we build. You won't start from scratch or do it alone: there's an existing library of security answers and compliance tooling (Vanta) behind you, and the team shares the load. The team's job is simple to state: address any security concern a product team or customer raises, and you'll be part of that. This is an engineering role, not an analyst or shift-based one. You'll bring real, hands-on instinct for incident response and case management, and the job is to turn that instinct into systems: codifying it into automation, playbooks and tooling so detection and response scale without scaling headcount. Product Security is a small, high-leverage team: we work through discovery, planning and influence, and most implementation happens across the wider Technology organisation. You'll add the delivery muscle and the automation-first mindset to keep maturing our security roadmap (security observability, SIEM build-out, vulnerability management). We expect you to use modern AI tools throughout your work to expand and scale your reach. WHAT YOU'LL OWN AND DRIVE You’ll own security capabilities that help us detect, respond, and scale security through engineering. Primary Responsibilities - Build and improve our security monitoring: own detections and alerting end-to-end (build, tune, maintain) and contribute to maturing our wider automation-based capability and SIEM build-out, with detection and response running through tools and code, not a manned SOC. - Build and operate our security observability: audit logging, security telemetry, and the dashboards/signals the rest of engineering relies on. - Coordinate vulnerability management end-to-end: triage, prioritise (CVSS plus exploitability and context), and drive remediation in partnership with the teams that own the code. - Strengthen our cloud security architecture: implement and help shape network segmentation and egress controls, IAM and least-privilege, secrets management and infrastructure-as-code on GCP, partnering with SRE/Platform. - Help connect customer requirements to what we build: turn security and compliance requirements from customers and frameworks into concrete feature and policy proposals, surfacing gaps to the team and roadmap. - Strengthen the secure development lifecycle: SAST, DAST, SCA, a
HOUSE ADYour CV gets thirty seconds.CV writing and honest review. English & Greek.kaeros.app →
Security Engineer, SecOps — Hoxhunt · Job Opportunities API