NGI Digital is looking for a Senior Security Engineer to shape and drive security and compliance across our digital products and operations. You will work closely with the CISO, platform team, operations engineers and product teams, with significant influence on technical decisions and how we balance risk in practice.
**About NGI Digital**
NGI Digital is our unit for digital innovation, IT operations, and development. Our goal is to enable NGI to take a leading role in the digitalization of the geotechnical industry. We develop and operate modern, cloud-based solutions that support NGI's global operations, ensuring stable, secure, and efficient IT services wherever we work. NGI is an internationally recognized research institute delivering expertise in geosciences and our mission is to ensure a sustainable future on safe ground.
**About The Role**
This is a hands-on senior role (approx. 70% technical / 30% strategy and compliance) where you will both set direction and actively contribute to implementation. You will work closely with the CISO to shape how we approach security, while also being directly involved in building and improving solutions.
**You Will**
- Define and drive security principles, standards, and roadmaps in collaboration with the CISO
- Evolve our cloud, identity and core IT security posture
- Strengthen security across core IT and operational environments, including endpoints, M365, and infrastructure, as part of an overall risk-based approach
- Drive improvements in detection and response capabilities, including monitoring, incident handling, and vulnerability management
- Implement and adapt security controls aligned with ISO 27001 and NIS2 in a pragmatic, scalable way
- Enable informed, risk-based decisions by making trade-offs between security, cost, and delivery visible
**How You Work**
- You work closely with engineering and leadership to ensure security is built into solutions through collaboration, not imposed afterwards
- You communicate clearly and pragmatically, enabling teams to make informed decisions together
- You take ownership and drive progress by aligning stakeholders and delivering practical improvements
- You bring clear perspectives on risk and trade-offs, contributing to well-informed decisions rather than acting in isolation
**Technology**
- Cloud platforms & infrastructure (Azure (primary) and AWS)
- Hosted infrastructure & storage (managed servers, virtual infrastructure, and NetApp storage solutions)
- Identity, security & compliance tools (Microsoft Entra ID (Azure AD), Microsoft Defender, Microsoft Purview)
- Platforms, containers & infrastructure as code (Kubernetes (AKS), Docker, Terraform)
- Operating systems & endpoints (Windows, Linux, macOS)
- Collaboration & productivity platforms (Microsoft 365 and Power Platform)
**Who We Are Looking For**
- Solid experience (typically 5+ years) working with information security
- Experience working closely with engineering and operations teams
- Track record of improving security posture in a pragmatic, risk-based way
- Experience making and defending security trade-offs in real-world scenarios
- Comfortable taking ownership and driving initiatives in collaboration with others
**Why NGI Digital?**
- Opportunity to shape and influence our security practices, with real impact on technology, architecture, and risk decisions
- Work with digital solutions that make a meaningful impact on society, in an internationally recognized research institute
- Be part of a modern, cloud-based technology environment, with room to make pragmatic technology choices
- A highly skilled and collaborative environment with strong opportunities for professional growth
- Competitive conditions, including strong pension and insurance schemes
**We will begin processing applications after the deadline August 2nd, 2026.**
We are committed to fostering a diverse, equitable, and inclusive work environment. As part of our recruitment process, please note that background checks and vulnerability assessment interviews may be conducted on relevant candidates. Those will only be done with the candidate’s consent.