À propos de ce poste Cloud & Infrastructure Security Engineer (Ghent) chez D-ploy
D-ploy is a dynamic IT and Engineering Solutions company operating across the EMEA region, including Switzerland, Germany, the Czech Republic, Austria, the UK and the USA. We work with international organizations to deliver reliable, secure and efficient technology services through strong partnerships and a people-focused approach.
We are looking for an experienced Security Engineer – Infrastructure and Cloud to strengthen the security of enterprise infrastructure, cloud platforms and supporting systems.
This is a hands-on, operationally focused position with particular emphasis on Vulnerability Management and Secure Configuration Management. You will help ensure that infrastructure and cloud environments are securely designed, configured, monitored and continuously improved in line with internal security policies, regulatory requirements and recognized security practices.
The role requires close collaboration with infrastructure, cloud, networking, architecture, security operations, incident response, application teams, business stakeholders and external technology partners. You will be expected to interpret technical findings, challenge weak security assumptions, drive remediation activities and translate security requirements into practical and sustainable operational controls.
Key responsibilities:
- Maintain continuous visibility of infrastructure and cloud assets covered by applicable security controls and identify any gaps in coverage.
- Support and, where appropriate, lead initiatives to strengthen the deployment and effectiveness of infrastructure and cloud security controls.
- Own the end-to-end Vulnerability Management lifecycle for infrastructure and cloud assets, including scope definition, asset discovery, scanning coverage, validation, prioritization, remediation tracking, verification, exception management and reporting.
- Work with business and IT stakeholders to ensure that systems remain securely maintained throughout their lifecycle.
- Define, implement and continuously improve secure configuration baselines for infrastructure, cloud services and network environments, with particular focus on Microsoft Azure and AWS.
- Contribute to the accurate and complete documentation of assets within Asset Management and CMDB platforms.
- Develop and maintain practical hardening standards, configuration checks, evidence requirements and operational playbooks.
- Establish security requirements for Windows and Linux servers, cloud resources, network services, security appliances, externally exposed systems and privileged remote-access solutions.
- Review security-relevant technical changes and support infrastructure and cloud risk assessments.
- Translate identified risks into clear remediation actions, accountable owners and realistic target dates.
- Collaborate regularly with Enterprise and Security Architects to align operational controls with wider security architecture principles.
- Support internal and external security reviews, assessments and audits.
- Coordinate with Security Operations and Incident Response teams to ensure that infrastructure and cloud platforms generate appropriate telemetry for monitoring, detection and investigation.
- Support investigations involving infrastructure, cloud or configuration-related security issues.
- Work with internal technical teams, suppliers and service providers to drive corrective actions and improve security maturity.
Requirements
- At least 5 years of relevant experience within enterprise IT environments.
- Hands-on experience in infrastructure security, cloud security engineering or a closely related security role.
- Practical experience securing Microsoft Azure and AWS environments.
- Familiarity with hybrid infrastructure, Windows and Linux servers, networking and security appliances.
- Strong knowledge of Vulnerability Management, including:
- Asset and scanning coverage
- Authenticated vulnerability assessments
- Finding validation
- Risk-based prioritisation
- Asset and remediation owner identification
- Remediation tracking
- Exception management
- Verification and reporting
- Demonstrable experience identifying and remediating cloud vulnerabilities and configuration weaknesses in collaboration with infrastructure, cloud and operational teams.
- Strong understanding of Secure Configuration Management, hardening principles and security baselines.
- Experience developing or applying secure configurations for:
- Windows and Linux servers
- Azure and AWS services
- Network and security infrastructure
- Privileged remote-access tools
- Internet-facing systems
- Exposure to security and IT service management tools such as Qualys, Microsoft Defender, Microsoft Sentinel, Defender XDR, ServiceNow or comparable platforms.
- Good understanding of security frameworks and standards such as ISO 27001, NIS2, CyFun, CIS Benchmarks and secure-by-design principles.
- Ability to interpret technical security findings and clearly communicate the related business risk, required actions, ownership and remediation timelines.
- Confidence working with infrastructure teams, cloud engineers, network specialists, architects, security teams, suppliers and external partners.
- Strong analytical and problem-solving skills, with the ability to challenge assumptions and drive issues through to resolution.
- Ability to work independently in a remote-first environment while maintaining effective collaboration across technical and business teams.
- Experience supporting security assessments, audits, technical risk reviews or evidence-gathering activities.
- Knowledge of scripting, querying or infrastructure automation is highly desirable, particularly PowerShell, Python, KQL, Terraform or other Infrastructure-as-Code technologies.
- Knowledge of AI or large language model platforms, including their implementation or practical use, is considered a strong advantage.
- Previous experience in regulated, risk-sensitive or audit-intensive environments is desirable, particularly within life sciences, pharmaceuticals, financial services or similar sectors.
- Relevant security, cloud or infrastructure certifications are welcome but are not mandatory.
- Valid criminal record extract, not older than three months, required.
Benefits
- Broad range of tasks and responsibilities
- Friendly and international working environment
- Professional development opportunities
- Referral program (“Fishing for Friends”)
- Company-sponsored events
Is IT in your DNA?