We are looking for a proactive and technically skilled Security & Compliance Engineer to join our Cloud Platform Development team in Budapest. This role is ideal for someone who thrives on solving complex problems through automation and is passionate about building scalable, efficient, and secure systems. You’ll play a key role in ensuring our platform meets regulatory and security standards—not by filling out templates, but by engineering solutions that streamline and strengthen our compliance posture.
- Design and implement automated solutions to support security and compliance activities (e.g., evidence collection, control validation, audit readiness). 
- Collaborate with development teams to embed security and compliance into CI/CD pipelines and infrastructure-as-code workflows. 
- Identify opportunities to optimize and reduce manual effort in recurring compliance tasks through scripting, tooling, and integration. 
- Conduct risk assessments, threat modeling, and vulnerability analysis with a focus on automation and repeatability. 
- Lead and support internal and external audits (e.g., SOC 2, ISO 27001, PCI DSS), ensuring timely and efficient evidence gathering. 
- Maintain and evolve security policies, procedures, and documentation with a focus on clarity and automation. 
- Stay current with emerging security threats, compliance frameworks, and automation technologies. 
- Bachelor's degree in Computer Science, Cybersecurity, or a related field. 
- 3+ years of experience in security engineering or compliance automation. 
- Strong programming/scripting skills (e.g., Python, Bash, Go) and experience building automation tools. 
- Familiarity with cloud platforms (IBM Cloud, AWS, Azure, or GCP) and cloud-native security practices. 
- Strong understanding of DevSecOps principles and integrating security into development workflows. 
- Experience with compliance frameworks such as SOC 2, ISO 27001, NIST, GDPR, HIPAA. 
- Experience with infrastructure-as-code tools (e.g., Terraform, Ansible) and CI/CD platforms (e.g., GitHub Actions, Jenkins). 
- Familiarity with emerging AI technologies and modern AI-assisted code generation to enhance productivity and streamline compliance workflow 
- Knowledge of container security (e.g., Kubernetes, Docker). 
- Experience developing internal tools or dashboards for compliance visibility and reporting.