About Wrike

Wrike is the most powerful work management platform. Built for teams and organizations looking to collaborate, create, and exceed every day, Wrike brings everyone and all work into a single place to remove complexity, increase productivity, and free people up to focus on their most purposeful work. Our vision is a world where everyone is free to focus on their most purposeful work, together.

About the Role

You'll work alongside diverse, cross-border teams and supportive colleagues who share knowledge and want to see you succeed. Wrike is looking for a Sr. Security Infrastructure Engineer to own and evolve security for our production and cloud environments, with a strong focus on network and infrastructure security. You'll design and harden the controls that keep our world secure — and you'll be the person who spots the gap before it becomes an incident.

Your Impact

  • Own and evolve security for Wrike's production and cloud environments, with a strong focus on network and infrastructure security.
  • Design, implement, and improve network security controls, including internal network segmentation and lateral-movement (east-west) restrictions, WAF operations and tuning, egress filtering, and risk- and exposure-based sequencing of remediation work.
  • Run structured first-pass security reviews of cloud environments, checking for publicly exposed storage, open management ports, gaps in logging/audit trail coverage, long-lived or stale credentials, and over-privileged principals and accounts.
  • Maintain visibility into our external attack surface, including DNS enumeration and certificate transparency log monitoring, external scanning of IP ranges, dedicated ASM tooling (e.g., Rapid7 Surface Command), and continuous configuration drift detection tied to an asset inventory with clear ownership assignment.
  • Partner with System & Data Engineering and other ops teams to embed security into architecture and change management (design reviews, sign-offs, "secure by default" patterns).
  • Educate and coach engineers and operations teams on security practices through reviews, consultations, and targeted training.
  • Identify, track, and determine mitigation strategies for security risks.

Benefits & Perks

  • 28 calendar days of paid vacation
  • Sick Leave Compensation (5 Paid Uncertified Sick Days)
  • Parental Leave: 18 Weeks Maternity / 4 Week Paternity
  • 2 Volunteer Days
  • Health Insurance (Employees + Dependents)
  • Life Insurance Plan
  • Utility Allowance (30 EUR/month, subject to taxation)
  • Fitness plan (800 EUR/year)
  • Full-remote & On-demand access to Co-working space

Your Qualifications

  • Proven track record as a security subject-matter expert, guiding engineering teams in end-to-end secure system design, with a focus on network architecture and cloud services.
  • Hands-on experience designing network segmentation/architecture and operating firewall / IDS-IPS platforms in production.
  • Experience running structured, read-only-first reviews of cloud environments, working through identity and permissions (Azure RBAC/Entra or GCP IAM), public exposure, logging and visibility, network rules, and secrets handling. Primary focus on Azure permissions and configuration, with working knowledge of GCP and on-prem components.
  • Experience maintaining attack surface visibility on the assumption that the known asset inventory is incomplete — discovering unregistered/shadow assets via DNS enumeration, certificate transparency logs, IP-range/cloud enumeration, external scanning, and ASM tooling.
  • Skilled at identifying gaps in existing network and cloud security architecture/configuration and recommending changes.
  • Able to lead the technical direction and architecture of our cyber security defense capabilities, including enterprise security posture management.
  • Strong communicator, able to explain complex security concepts and risks to both technical and non-technical audiences.

Standout Qualities

  • Ability to balance security principles with business needs.
  • Security certifications (e.g., CISSP, GIAC, a network security certification such as CCNP Security, etc.).
  • Strong understanding of Microsoft Azure; working knowledge of Google Cloud Platform is a plus.
  • Exposure to data security posture management (DSPM) or cloud-native data security controls.
  • Experience hardening and tuning WAF rules (Cloudflare WAF experience specifically is a strong plus).
  • Security isn't just a job for you — it's a hobby.