Help strengthen ING’s security posture by guiding product teams in secure design, threat mitigation, vulnerability remediation, penetration test readiness, and regulatory compliance
Provide hands-on guidance to ensure teams design and build secure, resilient, and compliant systems by default
Conduct security assessments (infrastructure, application, data, ML/AI) and support teams in remediation
Translate security standards into practical, developer-friendly best practices
Partner with software engineers, SREs, data engineers, and platform teams to embed security into the full lifecycle of applications, systems, and platforms
Act as a subject matter expert in IT security, providing proactive guidance, coaching, and support to engineering teams
Assess emerging technologies, modern engineering patterns, and security threats, and communicate their impact in clear, actionable guidance
Contribute to security communities of practice, knowledge-sharing sessions, and initiatives that uplift the overall security maturity
Support risk assessments, threat modeling, blue/red teaming, security testing, and design reviews to ensure solutions are secure and compliant by default
Contribute to the automation and continuous improvement of security engineering processes (reducing toil)
Requirements
Strong IT experience using technologies such as Azure pipelines, Kubernetes, Virtual Machines (Linux/Windows), Database solutions (e.g Oracle/MSSQL/Cassandra), application / API development
Strong understanding of general IT security concepts (secure design, threat modelling, vulnerability management)
Track record in security assessments, reporting, and supporting remediation activities
Ability to explain complex security topics in a clear and pragmatic way
Strong problem-solving, analytical thinking, and stakeholder collaboration skills
Can-do mentality, entrepreneurial to help building a new team
Strong understanding of networking (TCP/IP, routing, segmentation, DNS, firewalls)
Experience with OS hardening (Linux/Windows) and secure infrastructure configuration
Knowledge of vulnerability scanning and remediation workflows (Qualys, Nessus, Rapid7)
Familiarity with cloud infrastructure and platform security (AWS/Azure/GCP foundations)
Preferred Certifications: Google Professional Machine Learning Engineer; AWS Machine Learning Specialty; Microsoft Azure AI Engineer Associate; ISACA CDPSE (Data Privacy); Exposure to MITRE ATLAS / adversarial ML tools