SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.
Preply is a unicorn edtech platform (Series D, $150M) that connects 100,000+ tutors teaching 90+ languages to learners in 180 countries. The Security team is responsible for platform security, application security, security operations, and incident response across the organization.
In this Senior II Security Engineer role, you will own platform security across AWS, Kubernetes, and GCP with a focus on detection, alerting, and incident response readiness. You'll lead key platform security initiatives end-to-end, from problem definition through production rollout and iteration. You'll act as a strong technical voice in defining how platform security is designed, implemented, and operated at Preply.
Key responsibilities include: evolving monitoring from basic SIEM to effective detection and response capability; working hands-on with Datadog (SIEM), Okta (IdP), and SaaS platforms; driving cross-functional initiatives with SRE, Data, Engineering, and GRC teams; strengthening cloud and platform security through practical guardrails and automation; improving access control and auditability for internal infrastructure; maturing Kubernetes security including cluster, workload, and policy enforcement; building and tuning actionable detections with clear severity and ownership; establishing repeatable triage workflows and escalation paths; creating investigation playbooks and runbooks; improving secrets management across CI/CD and runtime; and building security automation that makes the secure path the easy path for engineers.
You'll need strong hands-on experience securing cloud and platform environments (AWS and Kubernetes), with ability to extend into GCP. You should have a track record of delivering technical security initiatives end-to-end in production. Deep understanding of SDLC, CI/CD, and infrastructure-as-code is essential. Practical experience improving identity and access security with Okta event monitoring and identity-focused detection patterns is required. You must have experience building or maturing security operations capability, turning SIEM inputs into reliable operational outcomes. Experience improving logging coverage and building actionable detections (Datadog SIEM experience is a plus) is important. Strong collaboration skills across technical teams, business-oriented mindset, and excellent communication (minimum C1 English) are critical. You'll participate in on-call rotations and partner with SRE during incidents.
Nice-to-have skills include Terraform and infrastructure-as-code at scale, Jenkins hardening, Cloudflare security controls, scripting/programming for automation, and incident response experience in cloud-native environments.