Senior Security Infrastructure Engineer
This remote position is open to residents of Estonia
About the Role:
Wrike’s Security team is the frontline defense ensuring the integrity and credibility of the data stored within our platform. In this senior position, you will own and evolve the security posture for Wrike’s production, Kubernetes, and GCP environments. You aren't just maintaining systems; you are architecting a "secure by default" infrastructure that allows our engineering and other teams to move fast without compromising safety.
About the Role:
Wrike’s Security team is the frontline defense ensuring the integrity and credibility of the data stored within our platform. In this senior position, you will own and evolve the security posture for Wrike’s production, Kubernetes, and GCP environments. You aren't just maintaining systems; you are architecting a "secure by default" infrastructure that allows our engineering and other teams to move fast without compromising safety.
Your Impact:
Own and evolve security for Wrike's production and cloud (Azure permissions & configurations and GCP) environments, with a strong focus on network and infrastructure security.
Design, implement, and improve security controls — network segmentation, WAF and IDS/IPS operations, hardening, IAM, SSO, and logging — across our fleet.
Partner with System & Data Engineering, and other ops teams to embed security into architecture and change management (design reviews, sign-offs, "secure by default" patterns).
Educate and coach engineers and operations teams on security practices through reviews, consultations, and targeted training.
Identify, follow up on, and determine mitigation strategies for security risks.
Your Qualifications:
Being a security subject-matter expert, guide engineering teams in end-to-end secure system design and implementation, with a focus on network architecture and cloud services and their associated components.
Hands-on experience designing network segmentation/architecture and operating firewall / IDS-IPS platforms in production.
Performing cloud infrastructure reviews from a security perspective; primary focus is on Azure permissions and configuration, with working knowledge of GCP and on-prem components.
Identifying gaps in existing network and cloud security architecture/configuration, and recommending changes or enhancements (authentication, authorization, network segmentation, bastion host setup, etc.).
Lead the technical direction and architecture of our cyber security defense capabilities, including enterprise security posture management.
Communicate complex security concepts and risks effectively to both technical and non-technical audiences.
Standout Qualities:
Ability to balance security principles with business needs.
Security certifications (e.g. CISSP, GIAC, a network security certification such as CCNP Security, etc.).
Strong understanding of Microsoft Azure; working knowledge of Google Cloud Platform is a plus.
Exposure to data security posture management (DSPM) or cloud-native data security controls — a strong plus.
Experience hardening and tuning WAF rules (Cloudflare WAF experience specifically is a strong plus).
You are a delight to work with and security runs through your blood. It is not just a job, it is a hobby, and you see that you get well paid for doing the things you love.
Team Dynamics:
Leadership: You will report to Swen Groeneveld, Head of Security Operations
The Squad: You will join a high-performing 14-member team consisting of AppSec and Compliance specialists.
Role Level: This is a Senior level role, requiring you to lead people you do not directly manage.
Our Work Style:
Tech Stack: GCP, Kubernetes (k8s), Terraform, Linux, Rapid7, Tenable, and SIEM platforms.
Methodology: Performance-driven environment utilizing Scrum-based processes, including biweekly and quarterly planning.
Benefits & Perks:
28 calendar days of paid vacation
Sick Leave Compensation (5 Paid Uncertified Sick Days)
Parental Leave: 18 Weeks Maternity / 4 Week Paternity
2 Volunteer Days
Health Insurance (Employees + Dependents)
Life Insurance Plan
Utility Allowance (30 EUR/month, subject to taxation)
Fitness plan (800 EUR/year)
Full-remote & On-demand access to Co-working space
What’s Next?
Intro call with a Recruiter
Technical interview
Cultural interview
Your recruitment buddy will be Aleksandar Chernev, Senior Technical Recruiter.
#LI-AC1