Cyber Security Engineer — Infrastructure & AI Platform Security (w/m/d) at IONOS DE | BE, DE | Rezi

Cyber Security Engineer — Infrastructure & AI Platform Security (w/m/d) at IONOS DE

Cyber Security Engineer — Infrastructure & AI Platform Security (w/m/d)

IONOS DE · BE, DE

2 days ago

Cyber Security Engineer — Infrastructure & AI Platform Security (w/m/d)

IONOS DE · BE, DE

3 days ago
Resume preview

Impress employers and recruiters.
Choose from hundreds of resume examples.

Target Resume Now
Resume preview

Tailor your resume to this Cyber Security Engineer — Infrastructure & AI Platform Security (w/m/d) role.

Rezi rewrites your resume against IONOS DE's job description. Free.

Resume score gauge reading 58 out of 100

Don't guess if your resume is good enough.

See how it scores against the Cyber Security Engineer — Infrastructure & AI Platform Security (w/m/d) posting at IONOS DE — free, in seconds.

About the Role

You will be responsible for the security architecture of our provider-side infrastructure layer and will be the subject matter expert for internally operated AI platforms and agents. You will ensure these run in a secure, managed, and auditable state, rather than accumulating as a new class of privileged access. This is a hands-on expert role where you will set standards, scrutinize designs, and collaborate directly with platform and engineering teams across all our brands to implement them.

Responsibilities

  • Define and maintain security architecture standards and hardening baselines for provider-side infrastructure: virtualization and container platforms, control planes and deployment systems, DNS, mail infrastructure, and backup and recovery systems.
  • Assess and strengthen tenant isolation across shared hosting, virtualization, and container layers, driving remediation with responsible platform teams.
  • Review infrastructure designs and significant changes for security implications and act as an escalation point for infrastructure security questions from platform, cloud, and brand engineering teams.
  • Reduce blast radius on critical paths: privileged access to customer-facing infrastructure, administrative segmentation, secrets management, and recovery integrity—translating into actionable, brand-specific implementation plans for our heterogeneous platforms.
  • Support Cyber Defense, Vulnerability Management, and IT Incident Management with infrastructure expertise during incidents and for post-incident remediation/hardening.
  • Take responsibility for the security architecture and baseline standards for internally operated AI platforms: model gateways and self-hosted models, agent frameworks, assistant integrations, connectors, and retrieval pipelines over internal data.
  • Define and enforce how agents are identified, authenticated, and authorized: handling non-human identities, credential and token management, least-privilege access to tools and systems, and determining where autonomous action requires a human-in-the-loop.
  • Establish which data internal AI systems may access and index, ensuring agent activities are logged, attributable, and auditable—in line with our regulatory obligations and certifications.
  • Conduct pre-deployment security reviews for new internal AI platforms and agent use cases in line with rapid adoption pace, and oversee unsanctioned AI usage (Shadow AI).
  • Advise security functions and internal engineering teams on the secure introduction of AI, including guardrails that enable responsible adoption.

Requirements

  • Several years of hands-on experience in infrastructure or platform security, ideally with a hosting provider, cloud provider, telecommunications company, or in a similarly large tenant environment.
  • Deep practical knowledge of Linux, virtualization and container platforms, networks, and the security properties of tenant infrastructures.
  • Strong background in Identity & Access: Privileged Access, machine and workload identities, secrets management, authorization models, and Infrastructure-as-Code security.
  • Experience in developing and enforcing security standards in a heterogeneous, partly legacy landscape, and gaining acceptance in teams outside your own reporting line.
  • Practical knowledge in building and operating LLM and agent systems and their specific risks: prompt injection via untrusted data, overly broad tool access, data exposure via retrieval, unlogged autonomous actions, model and provider dependencies.
  • Ability to make and defend risk-based decisions—including blocking deployments with clear justification—and to explain technical risk understandably to non-technical stakeholders.
  • Fluent English skills; German skills are a strong advantage due to our regulatory environment and public sector.

Skills

  • Linux
  • Virtualization platforms
  • Container platforms
  • Networking
  • Tenant infrastructure security
  • Privileged Access
  • Machine identities
  • Workload identities
  • Secrets Management
  • Authorization models
  • Infrastructure-as-Code security
  • LLM systems
  • Agent systems
  • Prompt Injection
  • Tool access
  • Data exposure
  • Autonomous actions
  • Model dependencies
  • Provider dependencies
  • NIS2
  • BSIG
  • ISO 27001
  • DNS
  • Email infrastructure
  • Abuse prevention
  • Security Engineering
  • Software development
  • Automation
  • Tooling
  • Scripting

Location

  • Germany

Work Type

  • Hybrid
  • Full-time

Experience Level

  • Multiple years of hands-on experience

Benefits

  • Hybrid work model
  • Flexible working hours with trust-based working time
  • Subsidized canteen and various free drinks at some locations
  • Modern office spaces with very good transport links
  • Various employee discounts for activities and products
  • Employee events such as summer and winter parties, as well as workshops
  • Numerous further training and development opportunities
  • Various health offers, such as sports and health courses

About the Company

  • At IONOS, we don't just manage servers; we shape the digital future for over 6.2 million customers worldwide with our solutions.
  • As Europe's leading hosting provider and pioneer for independent cloud solutions, we are building next-generation infrastructure: from sovereign cloud architectures and high-performance GPU clusters to integrated AI automation tools.
  • What drives us: Digital decision-making freedom for Europe and real impact for small and medium-sized enterprises (SMEs) and large corporations.
  • We work in agile teams, rely on transparent structures, and believe that excellence and innovation can only arise with true team spirit.
  • Ready for your next step? Become a part of IONOS and grow with us.

Equal Opportunity

  • We value diversity and welcome all applications – regardless of gender, nationality, ethnic and social origin, religion, disability, age, sexual orientation and identity, physical characteristics, marital status, or any other criterion irrelevant to the application under applicable law.