Security Operations Senior Engineer - Endpoint Protection

     

 

 

Do you want to be part of a team providing one of the most successful engineering access control solutions in the market? Join us in Krakow and enjoy a collaborative culture that will empower you to build a career you can be proud of.

 

 

 

What you would do as our Senior Security Operations Engineer

You will join the global Security Operations team as a senior technical specialist responsible for the reliable and secure operation of our microsegmentation and endpoint detection and response platforms. Your primary focus will be protecting critical server-hosted applications through workload segmentation and ringfencing, while also supporting endpoint detection, investigation and response capabilities.

This is a third-line engineering position and the final point of technical escalation within the company for these services. You will take ownership of complex incidents and problems, drive root-cause analysis, and work closely with application owners, infrastructure teams, network teams, security operations and strategic technology partners.

You will help evolve the services by improving their architecture, policies, operational processes and documentation. You will balance strong security controls with business availability and ensure that solutions comply with relevant standards and policies.

 

You would also:

  • Own, operate and continuously improve the agent-based microsegmentation platform across the global server estate, managing the full service lifecycle from workload onboarding and policy testing to controlled deployment, exceptions, upgrades and service health.
  • Design and implement ringfencing and least-privilege segmentation for critical applications and workloads by analyzing communication flows, understanding application dependencies and translating business and security requirements into effective, maintainable policies.
  • Act as the third-line subject-matter expert and final internal escalation point for complex connectivity, policy-enforcement and agent issues; lead incident resolution and root-cause analysis, coordinate vendor escalations and support production implementations, including occasional on-call or out-of-hours work.
  • Provide backup operational coverage for EDR/XDR services when required, including alert investigation, advanced hunting, containment and remediation, while correlating network, workload and endpoint telemetry to identify malicious or abnormal activity.
  • Drive service maturity through operational metrics, health checks, reporting, documentation, runbooks and automation; plan changes with application, server, network and security teams, contribute to security projects and transfer knowledge to first- and second-line support teams.

 

 

 

Skills and experience you need

We are looking for someone with:

  • 5+ years of overall IT experience, including at least 3 years in security engineering, security operations or a comparable infrastructure security role.
  • Strong practical knowledge of network security, including TCP/IP, routing, DNS, firewalls, ports, protocols and traffic-flow analysis.
  • Hands-on experience designing, implementing or operating network or workload microsegmentation in enterprise environments.
  • Practical experience with EDR/XDR platforms, endpoint investigations, containment and incident-response processes.
  • Experience administering and troubleshooting Windows and/or Linux server environments and their security agents.
  • A structured approach to complex troubleshooting, root-cause analysis, production changes and technical documentation.

 

Key skills

  • Strong communication skills in English, both spoken and written
  • Ability to explain complex technical topics clearly to technical and non-technical stakeholders
  • Ability to remain effective under pressure and take ownership of critical issues
  • Comfort working in a fast-paced, changing and globally distributed environment
  • Well-organized, proactive and self-motivated approach

 

Highly appreciated

Hands-on experience with Illumio Core or a comparable agent-based microsegmentation platform, particularly for server and application ringfencing

Experience with Microsoft Defender for Endpoint and Microsoft Defender XDR, including advanced hunting and incident investigation

Relevant certifications such as CCNA, PCNSA/PCNSE, SC-200, CySA+ or equivalent practical experience 

 

 

 

What we offer

  • Stable employment in a friendly, international atmosphere
  • Private medical care
  • Multisport card
  • Internal and external trainings
  • Chill-out zone with PlayStation5 Pro and foosball
  • Snacks available in the office at all times
  • Master Benefit program
  • Referral bonus for your efforts in bringing the right people into our environment

 

 

 

We review applications regularly, so don’t wait

We are building diverse, inclusive teams, and encourage applications from everyone who can see themselves working with us. Make sure your personal data

is safe, we don’t look at any applications sent by email or post. If you have any questions about the role or the process, email Elżbieta Łątka-Likh Talent

Acquisition Business Partner, at elzbieta.latka-likh@assaabloy.com.

 

 

 

Let’s create a safer and more open world - together!

 

To find out more about us, visit www.assaabloy.com

 

We are the ASSA ABLOY Group
Our people have made us the global leader in access solutions. In return, we open doors for them wherever they go. With nearly 63,000 colleagues in more than 70 different countries, we help billions of people experience a more open world. Our innovations make all sorts of spaces – physical and virtual – safer, more secure, and easier to access. 

As an employer, we value results – not titles, or backgrounds. We empower our people to build their career around their aspirations and our ambitions – supporting them with regular feedback, training, and development opportunities. Our colleagues think broadly about where they can make the most impact, and we encourage them to grow their role locally, regionally, or even internationally.

As we welcome new people on board, it’s important to us to have diverse, inclusive teams, and we value different perspectives and experiences.

#LI-WGIE 

Kraków, PL, 30-552

IT, Telecom & Internet
Travel Required: 0%-10%
Mid-senior level
30-Jun-2026