Security Specialist - EMEA (location flexible)
Owns security, privacy, compliance, and data-residency conversations for EMEA enterprise opportunities. The role designs secure cloud and BYOC architectures, leads threat modeling and readiness work, and enables field teams while engaging CISOs and security architects.
About the job
Responsibilities
- Act as the security overlay on EMEA opportunities, supporting security, privacy, and compliance conversations alongside Solutions Architects and Account Executives.
- Lead security discussions with CISOs, security architects, and GRC teams, translating ClickHouse architecture into recognized control frameworks.
- Design and validate secure ClickHouse Cloud and BYOC deployment patterns, including network isolation, private connectivity, encryption, customer-managed keys, identity federation, and granular access control.
- Run threat modeling and architecture reviews with customer security teams.
- Own the security workstream through proof of concept and production readiness.
- Advise on the company’s compliance posture, including SOC 2 Type II, ISO 27001, GDPR, EU data residency, HIPAA, PCI DSS, DORA, and NIS2.
- Improve security questionnaires, RFP security sections, DPIAs, and third-party risk reviews.
- Build a reusable security answer library and security playbook for EMEA Solutions Architecture.
- Enable Solutions Architects and Account Executives to handle routine security questions.
Requirements
- Significant customer-facing technical experience at a data platform, analytics, streaming, or database company.
- Deep cloud and data security expertise, including IAM, key management, cryptography, network isolation, secure multi-tenancy, threat modeling, and audit.
- Working knowledge of SOC 2, ISO 27001, GDPR, HIPAA, PCI DSS, and European regulations.
- Experience presenting to security buyers, including CISOs.
- Strong overlay collaboration and written communication skills.
Nice-to-haves
- CISSP, CCSP, or CISM certification.
- Security architecture experience across AWS, Google Cloud, and Azure.
- Experience in financial services, healthcare, telecommunications, or the public sector.
Compensation and Benefits
- Flexible work environment at a globally distributed, remote-friendly company operating in more than 20 countries.
- Employer healthcare contributions.
- Company stock options for new team members.
- Flexible time off in the United States and generous entitlement in other countries.
- $500 home office setup benefit for remote employees.
- Opportunities to participate in company-wide offsites.
Skills
IAM, Cryptography, Key Management, Network Isolation, Secure Multi-Tenancy, Threat Modeling, SOC 2, ISO 27001, GDPR, HIPAA, Pci Dss, AWS, GCP, Azure, Byoc
Similar jobs
Security Engineering jobsThe Security Engineer will track advanced adversaries targeting frontier AI infrastructure, build intelligence pipelines, conduct threat hunts, and create production detections. The role requires hands-on malware and infrastructure analysis, production programming, and close collaboration with detection and incident response teams.
Conduct cloud-focused red team operations, adversary simulations, and offensive security assessments while validating detection coverage and driving remediation. Requires at least five years of offensive security experience and familiarity with attacker techniques, cloud environments, and MITRE ATT&CK.
Security Scientist analyzing attacker and user behavior, building data-driven detections, and leading security investigations and design reviews. Requires strong security and anti-abuse knowledge, SQL fluency, scripting proficiency, and experience with distributed data systems and statistical methods.
Own and build the company’s security program as its first full-time security hire, covering product, cloud, infrastructure, incident response, compliance, and customer trust. The role requires hands-on security engineering and incident leadership, with experience operating SOC 2 or comparable frameworks.
Conduct proactive threat hunting and adversary simulation to uncover financial fraud tactics, enrich threat intelligence, and improve platform controls. The role requires at least five years of relevant cybersecurity, abuse, or trust experience plus strong Python, SQL, investigative, and data-analysis skills.