Purpose of the job / project
LNDS is seeking a technically skilled Senior Security Engineer II to strengthen its IT security capabilities. This role focuses on the implementation, operation, and continuous improvement of security technologies and processes. You will contribute directly to the organisation’s ISO 27001 and ISO 27701 certification efforts, support NIS2 compliance, and help protect infrastructure, data, and services. The position is ideal for a senior engineer who thrives in a hands-on environment and values autonomy, precision, and collaboration.
As a Senior Security Engineer II, you will be a senior technical contributor within a small, agile team.
You will work closely with LNDS’s software engineering team and NinjaOps team - a multidisciplinary group covering DevOps, infrastructure, systems, and IT support - to ensure security is embedded across systems and workflows. You will take ownership of key security operations and engineering tasks and contribute to the maturity of LNDS’s Information Security Management System (ISMS). The role requires initiative, technical depth, and a collaborative mindset.
What you will do
• Lead and coordinate the security architecture projects within LNDS.
• Deploy, configure, and maintain IT security tools and platforms (e.g., SIEM, XDR, firewalls,
endpoint protection).
• Operate and improve the ISMS in alignment with ISO 27001/27701 standards and NIS2.
• Monitor multi-cloud and SaaS environments for security incidents and anomalies.
• Investigate and respond to security incidents, coordinating with relevant stakeholders.
• Conduct vulnerability assessments and support remediation efforts across servers, endpoints,
and web assets.
• Maintain and improve IT security policies, procedures, and documentation.
• Collaborate with the software engineering and NinjaOps teams to integrate security into
systems and workflows.
• Support the development and tuning of Security Information and Event Management (SIEM)
rules, playbooks, and integration of observability sources.
• Participate or lead internal security awareness and training activities.
• Contribute to hardening efforts for Linux VMs, Office 365, user endpoints, and cloud services.
• Participate in internal and external penetration testing campaigns and follow-up remediation.
• Engage with external partners as requested.
• Mentor junior engineers
Who you are
• Master’s degree in IT security, computer science, information technology, or a related field.
• 10 to 15 years of hands-on experience in IT security operations, engineering, or governance.
• Strong technical expertise in areas such as firewalls, SIEM, intrusion detection/prevention,
identity and access management, and endpoint protection.
• Familiarity with risk management frameworks (e.g., MONARC, ISO 27005, OCTAVE, COBIT).
• Solid understanding of ISO 27001 and ISO 27701 standards and certification processes.
• Strong technical skills in scripting / automation (Python, Bash, PowerShell).
• Experience with Linux/RHEL and open-source security tools.
• Knowledge of FitSM or ITIL v3/v4 is a plus.
• Security certifications such as CISSP, CISM, CEH, or equivalent are desirable.
• Experience with vulnerability management tools (e.g., Tenable, Trivy), secure configuration
baselines (e.g., CIS), and cloud security controls.
• Experience in a SAFe / agile environment is a plus.
• Strong analytical and problem-solving skills with a quality-driven mindset.
• Excellent communication skills in English; working knowledge of French, German, or
Luxembourgish is a plus.
• Collaborative, adaptable, and culturally aware.
• Comfortable working in a small team with shared responsibilities and a high degree of
autonomy.