Senior Security Engineer
51.000 € - 55.000 €Docebo
Artificial Intelligence. Actual Impact.
At Docebo, we’re using AI to change how people learn at work—and we mean actually change it. We’re an AI‑powered learning platform that helps organizations create, deliver, and manage training all in one place. But our real mission goes deeper: we help teams move faster, work smarter, and focus on the work that truly matters. Our platform is built with intelligent, time‑saving tools that personalize learning, eliminate busywork, and turn training from a checkbox into a superpower. The result? Better experiences for learners and real results for businesses.
Role Overview
The Senior Security Engineer will play a central role in securing Docebo’s cloud infrastructure, with a primary focus on AWS environments. Working closely with Cloud Infrastructure & Operations, Engineering, and other security teams, this role is responsible for designing, implementing, and continuously improving cloud security controls across all layers of the stack — from infrastructure provisioning and container orchestration to runtime detection and compliance enforcement. This is a hands‑on, high‑ownership role for someone who thinks in terms of risk and moves quickly to reduce it. The role also includes participation in an on‑call rotation for security incidents affecting Docebo systems.
Responsibilities (including but not limited to)
- Cloud Security Architecture & Hardening: Own the security posture of Docebo’s AWS environments. Define and enforce secure account structures, service control policies (SCPs), guardrails, and baseline configurations across multi‑account setups. Evaluate and improve network segmentation, IAM boundaries, and data protection controls. Identify and remediate misconfigurations using CSPM tooling and manual review.
- Infrastructure as Code Security: Partner with Cloud Infrastructure to integrate security controls into IaC workflows. Define guardrails to catch insecure configurations before deployment. Own security scanning in CI/CD pipelines and promote a shift‑left approach to cloud security across engineering teams.
- Incident Response & On‑Call: Participate in the on‑call rotation for security incidents, including triage, containment, and escalation for after‑hours events. Lead investigation and root cause analysis for cloud security incidents with clear written post‑mortems. Leverage automation and AI tooling to reduce mean time to detect and respond.
- Cloud Detection & Threat Monitoring: Build and maintain detection coverage for cloud‑native threats (privilege escalation, unusual API activity, lateral movement, data exfiltration, and more). Leverage CloudTrail, GuardDuty, and SIEM integrations to maintain visibility across the AWS estate. Align detection logic with MITRE ATT&CK for Cloud.
- Vulnerability & Configuration Management: Own vulnerability management for cloud workloads — prioritizing findings from cloud configuration assessments, and runtime protection tools. Drive remediation with Engineering and Infrastructure teams, and build automated enforcement where manual review doesn’t scale.
- Identity & Access Management: Define and enforce least‑privilege principles across AWS IAM, service accounts, and federated identity. Review and improve IAM policies, permission boundaries, cross‑account roles, and access patterns. Reduce standing access and enforce JIT access where appropriate.
- Development of Security Best Practices: Develop and document best practices, policies, and procedures for cloud security. Provide guidance and training to engineering and infrastructure teams to promote a security‑aware culture.
- Vendor relationships: Maintain relationships with security vendors for technical issues, ensure smooth operations of security tools and services, and elevate problems or incidents to vendors when required.
What It Takes to Be Successful
You're a cloud security practitioner who operates with a builder’s mindset. You understand AWS deeply — not just its security services, but how misconfigurations and design decisions create real risk. You're comfortable reading IaC, reviewing IAM policies, and diving into CloudTrail logs to reconstruct what happened. You know how to work with engineering and infrastructure teams as a partner, not a gatekeeper — and you can communicate risk clearly to stakeholders who don’t live in the cloud console. You're comfortable being on‑call and making decisions under pressure.
Additionally, holding security‑related certifications such as those from ISC², ISACA, SANS, or CompTIA, and having Cloud Architecture certifications (AWS Security Specialty, AWS Solutions Architect, or equivalent) will significantly enhance your effectiveness in this role.
Requirements
- 5+ years of relevant work experience in cybersecurity, with a strong focus on cloud security in production AWS environments.
- Deep hands‑on experience with AWS security services: IAM, SCPs, CloudTrail, GuardDuty, Config, KMS, VPC security, and more.
- Good knowledge of Kubernetes security — including RBAC, pod security standards, network policies, admission controllers, and secrets management.
- Experience with cloud security posture management (CSPM) and cloud workload protection (CWPP/CNAPP) tools.
- Experience securing IaC pipelines (Terraform, CloudFormation) and integrating security scanning into CI/CD workflows.
- Good experience with container and image security — scanning, runtime protection, supply chain risk.
- Experience with SIEM and detection engineering — building and tuning cloud‑native detection rules, threat hunting across CloudTrail and application logs.
- Familiarity with automation platforms and AI‑driven security tools to streamline detection, enrichment, and response.
- Experience with Infrastructure as Code (IaC) and scripting (Python, Bash, or similar) to develop custom security tooling and automate workflows.
- Strong IAM fundamentals: least privilege, cross‑account roles, permission boundaries, federated identity, and privileged access management.
- Comfortable working across Azure/GCP in addition to AWS — multi‑cloud exposure is a plus.
- In‑depth knowledge of information security principles and cybersecurity frameworks relevant to cloud environments: MITRE ATT&CK for Cloud, CIS Benchmarks, AWS Well‑Architected Security Pillar, NIST CSF, SOC 2, ISO 27001.
- Willingness and ability to participate in an on‑call rotation, including after‑hours response.
- Ability to produce clear, comprehensive, and well‑structured documentation (e.g. incident reports, architecture reviews, runbooks, and security standards) and to communicate complex technical issues effectively to non‑technical stakeholders.
Our Hybrid Work Philosophy
Great work can happen anywhere but coming together helps us go further. Our team spends three days a week in the office (Tuesday‑Thursday) to collaborate, solve problems, and learn from each other. With flexibility the rest of the week, it’s a balance designed to help everyone do their best work and keep growing.
Our Total Rewards Philosophy
Our Total Rewards Philosophy centers around three core areas to reward and care for our People:
- Rewarding Impact: We lead with competitive pay to reward the impact, skills and traits that fuel our success.
- Fostering Holistic Wellbeing: We care deeply about and invest in the whole person with programs that support our people’s physical, mental, and financial well‑being.
- Empowering Our Talent Culture: We build a culture of trust and empowerment by designing our rewards and benefits with transparency, equity, and flexibility, enabling our people to do their best work and stay for the long haul.
Our Promise to You
- Financial Wellness: Own a piece of Docebo through our Employee Share Purchase Plan (ESPP) at a 15% discount, plus a competitive compensation package.
- Your Well‑Being, Covered: You’ll get access to health benefits, so you can get the care you need when you need it.
- Rest, Relax, Repeat: Rest and recharge with paid vacation days, two company‑wide Docebo Days, floating holidays for cultural celebrations, and your birthday off.
- Family First: We provide coverage offering you time with your little one(s) so you can soak up all those precious moments. Fun fact: we had 30 Docebian babies join the family in 2025!
- Connections That Count: Connect with global communities through our Employee Resource Groups (including PRIDE, DWA, BIDOC, and Green Ambassadors) and company‑wide events that keep the fun rolling all year long.
About Docebo
At Docebo, we create seamless, AI‑powered learning experiences for over 3,000 customers worldwide. We have successfully achieved two IPOs (TSX: DCBO & NASDAQ: DCBO), been recognized as a top SaaS e‑learning solution, and are growing exponentially in the process. We’re a global company, with offices across North America, EMEA, APAC, and beyond. Our team is guided by five core values—Grow Together Win Together, Build with Our Customer, Clear is Kind, Own Outcomes, Progress Over Perfection—which shape everything we do. If this resonates with you, now is the perfect time to join one of the fastest‑growing learning technology companies in the world.
Equal Employment Opportunity Statement
Docebo is an Equal Employment Opportunity employer. We are committed to diversity and inclusion in our workforce. All qualified applicants and employees will receive consideration for employment regardless of their race, colour, religion, sex (including pregnancy, gender identity, and sexual orientation), national origin, citizenship status, age, disability, genetic information, or any other category protected under applicable law.
As a federal contractor, Docebo is committed to the principles of affirmative action and equal employment opportunity for protected veterans and individuals with disabilities. Docebo does not discriminate because of protected veteran status or on the basis of disability, and Docebo takes affirmative action to employ and advance in employment qualified protected veterans and individuals with disabilities.
Any individuals requiring a reasonable accommodation or who would like to voluntarily disclose a disability or protected veteran status to assist with their employment application should send an e‑mail to Visualizzare la mail su click.jobroute.io. The email should also include the position you’re interested in.
Compensation Range: €51K - €55K
#J-18808-Ljbffr- ...KeyPartners Italy cerca un/una Senior Ethical Hacker / Offensive Engineer per guidare attività offensive avanzate su Windows, AD e post-exploitation, sviluppando tooling custom in C#, C++, PowerShell e .NET. La risorsa lavorerà nel team R&D in contesto regolamentato...SeniorRemoto
- pp7Layers S.r.l. è un'azienda dinamica e in forte crescita, operante nel settore Cyber Security. /ppSiamo alla ricerca di un Senior Network Security Engineer che voglia unirsi al nostro team per contribuire a progetti innovativi e strategici, in un ambiente di lavoro altamente...SeniorRemoto
- ...AWS-based platform, partnering with infrastructure, operations and engineering teams to implement strong security controls across the stack. You will drive automated defenses, threat detection, and secure configurations, influencing incident response and risk remediation...Senior
- ...Docebois seeking a Senior Security Engineer to secure our AWS cloud infrastructure and drive cloud security controls across multiple layers. You will work with Cloud Infrastructure, Engineering, and security teams, designing, implementing, and improving security measures...Senior
51.000 € - 55.000 €
...and real results for businesses. /ph3Role Overview /h3pThe Senior Security Engineer will play a central role in securing Docebo’s cloud infrastructure... ...posture of Docebo’s AWS environments. Define and enforce secure account structures, service control policies (SCPs),...SeniorLavoro ibridoRemotoTurniOrario flessibile- ...triage bug bounty submissions and external pentest findings, and propagate security insights across teams. You'll analyze issues across the codebase and infrastructure, build tooling, and mentor engineers and SOC colleagues. The position sits on the Offensive Security team...Senior
60.000 € - 70.000 €
...nostro cliente, azienda italiana leader nel mondo dell'intelligence e cybersecurity, siamo alla ricerca di un/una Senior Ethical Hacker / Offensive Engineer. La risorsa, verrà inserita nel team R&D e opererà in scenari offensivi avanzati su ambienti Windows,...SeniorImpiego permanenteRemoto- ...Overview In this role you will lead offensive security testing for Klarna's mobile apps, focusing on iOS and Android; you'll work with engineering teams to turn findings into fixes and improve app hardening. You'll apply MASVS/MASTG guidelines to drive concrete security...Senior
- ...KA Resources è alla ricerca di un Infrastructure Network & Security Engineer per il design, l’implementazione e la migrazione di soluzioni di cybersecurity presso la sede di Sesto San Giovanni. Si richiede almeno 5 anni di esperienza nel ruolo, conoscenza di FW/NGFW...SeniorSmart workingImpiego permanenteLavoro ibridoLavoro da casa
45.000 € - 52.000 €
...bCybersecurity, AI Data, Digital Engineering e soluzioni per la Smart... ...esperienza, a ogni livello di seniority. Cerchiamo persone curiose, responsabili... ...b /ppPer la Struttura bCyber Security Strategy and Organizations... ...di bIAM CyberArk Security Senior Engineer /b da inserire nel...Senior- ...gestione del rischio, collaborando con team cross‑functional e senior management. Contribuisci a compliance normative, continuità operativa... ...che plasmi pratiche aziendali e reportistica di advanced security. /ph3Retribuzione / Benefits /h3ulliModalità ibrida/Smart Working...SeniorSmart workingLavoro ibrido
- ...seleziona per azienda produttiva sita a Monza, un/una: Contabile Senior La risorsa sarà responsabile della gestione operativa delle principali attività contabili e amministrative, garantendo correttezza, puntualità e completezza degli adempimenti, in collaborazione...SeniorTempo pienoImpiego permanente
- ...componenti metallici di precisione e sistemi di fissaggio tramite processi di stampaggio a freddo, ricerca un/una: Attrezzista Meccanico Senior/Gestione magazzino (disegno meccanico + inglese / a giornata)| Stampaggio a freddo e Bulloneria industriale | (Cesano Maderno MB -...SeniorTempo pieno
- Overview In questa posizione lavori all'interno del cluster Strategy Governance per supportare CISO/CSO e top management con governance, compliance e risk management. Guiderai progetti di cybersecurity strategy e delivery, coordinando team e stakeholder, rispettando...SeniorRemotoOrario flessibile
- ...In this role you will support senior associates and partners in advising national and international clients on a broad range of employment... ..., and management of trade union relations, including social security law. Responsibilities include drafting and negotiating...Senior
- ...lead cybersecurity strategy and delivery for clients, shaping robust security architectures and roadmaps within large IT transformation programs. You work with cross-functional teams to ensure secure designs and successful implementations, driving certifications like ISO27001...Senior
- Siamo Culligan: ci impegniamo per un futuro ecologico, implementando soluzioni che riducono l’uso di plastica e detersivi dannosi per l’ambiente. Guidati dai nostri valori, mettiamo i clienti al centro, fornendo un’esperienza a tutto tondo, attraverso l’innovazione e l...SeniorContratto con partita IVAOrario flessibile
2.000 - 2.800 €/mese
...Cybersecurity solutions, we help organizations ensure business continuity, security and digital innovation every day. With offices across Italy,... ...Operations (SecOps) Team in the role of CYBERSECURITY ENGINEER , taking care of managing and fine-tuning advanced security...SeniorSmart workingImpiego permanenteLavoro ibridoWeekendOrario flessibile- Longwave cerca un SOC Analyst di livello 3 con esperienza consolidata in contesti MSSP enterprise per operare su incidenti e analisi avanzate. Ruolo chiave nell’automazione delle operations cyber e nello sviluppo delle capability SOC per clienti enterprise. L’esigenza...Senior
- Un'azienda di cyber security leader in Lombardia cerca un Cyber Security Engineer con esperienza in Netskope per la gestione operativa di architetture di sicurezza cloud. La posizione include supporto L2/L3, gestione di incidenti, e collaborazione nel team. È richiesta...
- ...Ambiente collaborativo e innovativo Policy AGILE per work-life integration Responsabilità Architettura e design di Network Security basate su principi moderni, con focus su visibilità, controllo e Zero Trust Progettazione e valutazione di soluzioni SASE/SSE (...Orario flessibile
- ...loro competenze e le loro aspettative. Per azienda cliente del settore alimentare selezioniamo un: MANUTENTORE MECCANICO SENIOR Di cosa ti occuperai? eseguire manutenzione preventiva, ordinaria e straordinaria su macchinari e impianti industriali;...SeniorTemporaneoImpiego permanenteDal lunedì al venerdì2 turni
38.000 €
...electromechanical equipment. The role involves troubleshooting, customer support, and collaboration with both European and Japanese engineering teams. A minimum of 5 years of experience and technical education are required, along with fluency in Italian and English. The...Senior- ...loro competenze e le loro aspettative. Per azienda cliente del settore alimentare selezioniamo un: MANUTENTORE ELETTRICO SENIOR Di cosa ti occuperai? eseguire manutenzione preventiva e correttiva su impianti elettrici, quadri e distribuzione;...SeniorTemporaneoImpiego permanenteDal lunedì al venerdì2 turni
- ...Overview As a Senior Enterprise Security Architect at Akamai, you'll drive adoption of our Enterprise Security portfolio (Akamai Workforce Protector... ...discovery, and cross-functional evangelism to enable secure, agile deployments. Retribuzione / Benefits FlexBase...SeniorRemotoOrario flessibile
- Overview In this role you support leading insurers by shaping strategic plans, designing and implementing new service models, and refining product portfolios. You will help redesign go-to-market strategies and translate client needs into clear, actionable results. You...Senior
- Overview In questa posizione lavori all'interno della divisione ENG DIGITAL per proteggere le risorse digitali aziendali. Ti inserisci in un team SOC per analizzare e rispondere a incidenti di sicurezza, coordinandoti con il livello I e con i clienti. Potrai guidare...Smart working
- ...As the Application Security Lead, you will guide security-by-design across development teams... ..., and respond to incidents, shaping secure software at scale. The role sits in the... ...NIS2, DORA, PCI-DSS) Security by Design Engineer monza-brianza, lombardia, it #J-18808-...Stage/TirocinioLavoro ibridoTurno di pomeridianoOrario flessibile
- ...Overview In this role you will perform security testing across networks, mobile and web applications, and embedded/IoT products to identify vulnerabilities and simulate attacks. You will join Spike Reply's Cyber Security Team, serving national and international clients...Orario flessibile
- p7Layers cerca un Cyber Security Analyst Junior/Middle da inserire nel SOC per monitorare eventi di sicurezza, analizzare log e supportare l’Incident Response. Sono richieste competenze su SIEM/EDR, firewall e strumenti di sicurezza, con disponibilità a turnazione. Il...Turni
