All positions
Site Reliability Engineer - Access Team
Department:Tech - Runtime Platform
Location:Barcelona
About the Opportunity
We are seeking a Site Reliability Engineer to join the Platform Engineering Domain in the Access Team.
The mission of Platform Engineering is to provide trusted, performant, self-service platforms that empower product teams to build “the bank the world loves to use.” Access Team’s mission is to ensure secure, seamless, and compliant access to that infrastructure. We build the gateway between our engineers and our cloud resources.
As one of the first banks completely hosted in the cloud, our security and compliance standards are industry-leading. We don’t just use a modern stack; we build sophisticated access solutions like JIT (Just-In-Time) provisioning and Privileged Access Management (PAM) to protect our customers and our data.
In this role, you will:
Be responsible for designing and maintaining the systems that govern how humans and services access our AWS environment. You will ensure that access is "least-privilege" by default, automated, and audit-ready.More specifically, you will:
- Manage and scale our Teleport infrastructure for secure access to servers, databases, and Kubernetes clusters.
- Develop and maintain automated Identity and Access Management (IAM) workflows within AWS.
- Implement and improve Just-In-Time (JIT) access solutions to reduce our permanent attack surface.
- Collaborate closely with the Cloud Control team to integrate security policies into the core infrastructure provisioning process.
- Automate authorization flows to ensure regulatory compliance without slowing down engineering velocity.
- Maintain and improve our Infrastructure-as-Code (Terraform) for all access-related components.
- Support internal and external audits by providing technical evidence and ensuring our access protocols meet strict regulatory standards; proactively identify gaps in our current access landscape and drive initiatives to remediate them.
- Create monitors and alerts for access patterns, diagnosing and resolving issues related to authentication and authorization services.
What you need to be successful:
Background and skills:
- Production expertise in Amazon Web Services (AWS), specifically with IAM, Organizations, and Multi-account security.
- Hands-on experience with Access Management tools, preferably Teleport, or similar PAM/JIT solutions.
- Strong experience with Terraform for managing cloud resources and security policies.
- Solid understanding of Linux systems and networking fundamentals (OIDC, SAML, SSH, TLS, TCP/IP).
- Experience programming in Go and/or Python to automate security workflows.
- Familiarity with compliance frameworks and a proven ability to translate audit requirements into technical solutions.
- Experience with container orchestration (Docker, Kubernetes) from an access and RBAC perspective.
- A "Security-first" mindset with a proactive approach to solving complex permission issues.
- Good communication skills and the ability to work autonomously within a fast-paced environment.
Traits:
- Actively help yourself (and others) be successful
- Continuously learn and challenge the status quo
- Think globally, act locally
- Strong bias for action
- Give and receive open, direct and timely feedback
What’s in it for you:
- Accelerate your career growth by joining one of Europe’s most talked about disruptors.
- Employee benefits that range from a competitive personal development budget, work from home budget, discounts to fitness & wellness memberships, language apps and public transportation.
- Come together with your team in the office for a dedicated day of teamwork each week, plus another day of your choice, and enjoy the flexibility of remote work the rest of the time. Some roles may require additional in-office presence.
- As an N26 employee you will have access to a Premium subscription on your personal N26 bank account. As well as subscriptions for friends and family members.
- Additional day of annual leave for each year of service.
- A high degree of autonomy and access to cutting edge technologies - all while working with a friendly team of peers of diverse nationalities, life experiences and backgrounds.
- A relocation package with visa support for those who need it.