Summary
✨ AI‑Generated
A senior security engineering opportunity focused on securing cloud infrastructure, Kubernetes environments, applications, and CI/CD pipelines. You will shape security strategy, establish secure-by-default architecture and guardrails, contribute to architecture governance, and build practical tooling that enables development teams to operate securely.
Highlights
Broad-impact security position with ownership of technical security strategy and secure-by-default architecture. Offers significant autonomy, collaboration with international cloud and software engineers, and the opportunity to secure numerous applications across a complex technology environment.
Description
As a Senior Security Engineer, you will ensure our cloud infrastructure and GovTech applications are secure by design and in operation.
This is a broad, impactful security role.
Collaborating with an international team of Cloud and Software Engineers, you will help secure 20+ applications.
You will operate with minimal bureaucracy while tackling the complex technical challenges of an integrating tech organization.
You will take broad ownership of our technical security strategy, consistently prioritizing pragmatic, long-term solutions and practical implementation over theory.
Your Responsibilities:
Cloud & Platform Security: Enhance and assess the security of our Cloud and Kubernetes environments.
Design secure-by-default architecture and actively represent Security on the Architecture Board.Application Security: Define secure-by-default guardrails within our CI/CD pipelines and core systems.
Partner with the Security team to deliver self-service tooling, empowering 20+ development teams to build securely and take ownership of their application security.Vulnerability Management: Configure and optimize centralized tooling to detect, report, and automatically remediate vulnerabilities across our core infrastructure.Infrastructure & Access: Design, manage, and mature our SIEM landscape.Defining and enforcing IAM frameworks and RBAC policies.Knowledge Sharing & Collaboration: Work pragmatically with developers, cloud engineers, and compliance teams to continuously elevate our security standards.
Participate in security risk assessments and help technical leadership interpret complex vulnerabilities.
About You
We are looking for an experienced, pro-active Security Engineer who enjoys working across multiple security domains.
You will have the autonomy to make a tangible impact across multiple security domains.
Taking ownership of technical security initiatives comes naturally to you.
Our engineering culture emphasizes hands-on, pragmatic execution.
Practice over theory, You pair a strong technical foundation with the ability to independently plan, prioritize, and deliver results aligned with business objectives.
You do not need to check every box to be successful, but solid experience in most of the following areas is preferred:
AWS and Kubernetes securityApplication and cloud securityVulnerability managementIdentity & Access Management (IAM)Workstation & Endpoint securitySecurity event metrics, alerting, and SIEM configurationCI/CD pipeline security
Nice-to-Haves:
Software development or scripting experienceSecurity or cloud certifications (e.g., AWS Certified Security – Specialty, CKS, or equivalent)Proficiency in Dutch (spoken and written)
We strongly encourage applications from candidates who may not meet every single requirement but bring other valuable experience to the role.
What We Offer
A close-knit, enthusiastic team of professionals who actively support one another.High autonomy and ownership: flexibility in how you manage your work, backed by supportive leadership.Hybrid work model: freedom to work remotely, combined with set office days for collaboration and team events.Continuous growth opportunities through the xxllnc Academy for personal and professional development.A competitive compensation package including salary, mobility allowance, laptop, phone stipend, and home-office allowance.Engaging team events and social activities.
Submitting a Certificate of Good Conduct (VOG) is required as part of our onboarding process.
About Us
xxllnc develops scalable software for public sector organizations, powering solutions for case management, data integration, taxation, social services, and urban planning.
We also provide specialized consultancy and professional services.
To elevate GovTech across Europe, xxllnc is building an independent ecosystem where systems interoperate seamlessly, combining cloud applications with specialized domain expertise.
Our team of 380+ professionals develops more than 30 applications for European government agencies.
xxllnc serves approximately 1,200 public sector organizations across ten locations in Europe, including Dutch offices in Hengelo, Amsterdam, Veenendaal, Groningen, and Eindhoven.