Impress employers and recruiters.
Choose from hundreds of resume examples.

Impress employers and recruiters.
Choose from hundreds of resume examples.
Tailor your resume to this Cyber Security Engineer — Infrastructure & AI Platform Security (w/m/d) role.
Rezi rewrites your resume against IONOS DE's job description. Free.

Tailor your resume to this Cyber Security Engineer — Infrastructure & AI Platform Security (w/m/d) role.
Rezi rewrites your resume against IONOS DE's job description. Free.
Don't guess if your resume is good enough.
See how it scores against the Cyber Security Engineer — Infrastructure & AI Platform Security (w/m/d) posting at IONOS DE — free, in seconds.

Don't guess if your resume is good enough.
See how it scores against the Cyber Security Engineer — Infrastructure & AI Platform Security (w/m/d) posting at IONOS DE — free, in seconds.
About the Role
You will be responsible for the security architecture of our provider-side infrastructure layer and will be the subject matter expert for internally operated AI platforms and agents. You will ensure these run in a secure, managed, and auditable state, rather than accumulating as a new class of privileged access. This is a hands-on expert role where you will set standards, scrutinize designs, and collaborate directly with platform and engineering teams across all our brands to implement them.
Responsibilities
- Define and maintain security architecture standards and hardening baselines for provider-side infrastructure: virtualization and container platforms, control planes and deployment systems, DNS, mail infrastructure, and backup and recovery systems.
- Assess and strengthen tenant isolation across shared hosting, virtualization, and container layers, driving remediation with responsible platform teams.
- Review infrastructure designs and significant changes for security implications and act as an escalation point for infrastructure security questions from platform, cloud, and brand engineering teams.
- Reduce blast radius on critical paths: privileged access to customer-facing infrastructure, administrative segmentation, secrets management, and recovery integrity—translating into actionable, brand-specific implementation plans for our heterogeneous platforms.
- Support Cyber Defense, Vulnerability Management, and IT Incident Management with infrastructure expertise during incidents and for post-incident remediation/hardening.
- Take responsibility for the security architecture and baseline standards for internally operated AI platforms: model gateways and self-hosted models, agent frameworks, assistant integrations, connectors, and retrieval pipelines over internal data.
- Define and enforce how agents are identified, authenticated, and authorized: handling non-human identities, credential and token management, least-privilege access to tools and systems, and determining where autonomous action requires a human-in-the-loop.
- Establish which data internal AI systems may access and index, ensuring agent activities are logged, attributable, and auditable—in line with our regulatory obligations and certifications.
- Conduct pre-deployment security reviews for new internal AI platforms and agent use cases in line with rapid adoption pace, and oversee unsanctioned AI usage (Shadow AI).
- Advise security functions and internal engineering teams on the secure introduction of AI, including guardrails that enable responsible adoption.
Requirements
- Several years of hands-on experience in infrastructure or platform security, ideally with a hosting provider, cloud provider, telecommunications company, or in a similarly large tenant environment.
- Deep practical knowledge of Linux, virtualization and container platforms, networks, and the security properties of tenant infrastructures.
- Strong background in Identity & Access: Privileged Access, machine and workload identities, secrets management, authorization models, and Infrastructure-as-Code security.
- Experience in developing and enforcing security standards in a heterogeneous, partly legacy landscape, and gaining acceptance in teams outside your own reporting line.
- Practical knowledge in building and operating LLM and agent systems and their specific risks: prompt injection via untrusted data, overly broad tool access, data exposure via retrieval, unlogged autonomous actions, model and provider dependencies.
- Ability to make and defend risk-based decisions—including blocking deployments with clear justification—and to explain technical risk understandably to non-technical stakeholders.
- Fluent English skills; German skills are a strong advantage due to our regulatory environment and public sector.
Skills
- Linux
- Virtualization platforms
- Container platforms
- Networking
- Tenant infrastructure security
- Privileged Access
- Machine identities
- Workload identities
- Secrets Management
- Authorization models
- Infrastructure-as-Code security
- LLM systems
- Agent systems
- Prompt Injection
- Tool access
- Data exposure
- Autonomous actions
- Model dependencies
- Provider dependencies
- NIS2
- BSIG
- ISO 27001
- DNS
- Email infrastructure
- Abuse prevention
- Security Engineering
- Software development
- Automation
- Tooling
- Scripting
Location
- Germany
Work Type
- Hybrid
- Full-time
Experience Level
- Multiple years of hands-on experience
Benefits
- Hybrid work model
- Flexible working hours with trust-based working time
- Subsidized canteen and various free drinks at some locations
- Modern office spaces with very good transport links
- Various employee discounts for activities and products
- Employee events such as summer and winter parties, as well as workshops
- Numerous further training and development opportunities
- Various health offers, such as sports and health courses
About the Company
- At IONOS, we don't just manage servers; we shape the digital future for over 6.2 million customers worldwide with our solutions.
- As Europe's leading hosting provider and pioneer for independent cloud solutions, we are building next-generation infrastructure: from sovereign cloud architectures and high-performance GPU clusters to integrated AI automation tools.
- What drives us: Digital decision-making freedom for Europe and real impact for small and medium-sized enterprises (SMEs) and large corporations.
- We work in agile teams, rely on transparent structures, and believe that excellence and innovation can only arise with true team spirit.
- Ready for your next step? Become a part of IONOS and grow with us.
Equal Opportunity
- We value diversity and welcome all applications – regardless of gender, nationality, ethnic and social origin, religion, disability, age, sexual orientation and identity, physical characteristics, marital status, or any other criterion irrelevant to the application under applicable law.