Sr Cybersecurity Engineer

Workday Workday · Enterprise · Dublin, Ireland

This role is for a Senior Cybersecurity Engineer at Workday, focusing on designing and implementing network security controls across cloud environments (AWS, GCP, private cloud). The role involves automating security posture enforcement, mentoring team members, consulting on security requirements, and providing operational support for critical security infrastructure. The team is exploring the use of AI and agents to enhance solution delivery.

What you'd actually do

  1. Design and implement next-generation network security controls, patterns, and templates across AWS, GCP, and private cloud environments.
  2. Enhance the security of the enterprise by building scalable systems for effective continuous monitoring and enforcement of expected security posture using tools such as Terraform, GoLang, and Python.
  3. Serve as a technical lead by driving initiatives forward and guiding team members in their development.
  4. Evaluate production infrastructure designs to determine security requirements and conduct rigorous network security assessments.
  5. Partner with Cybersecurity and Trust teams to develop policies, standards, and guidelines aligned with industry best practices (CIS, NIST, FedRAMP) and implement control enforcement against those standards.
  6. Provide operational support for critical security infrastructure, including DDoS detection, WAF, and firewall controls (appliances and cloud-native) in a production environment.

Skills

Required

  • network security architecture and design
  • deploying network security controls across AWS and/or GCP
  • cloud-native security controls (e.g., AWS Network Firewall, WAF, GCP Cloud Armor)
  • scripting language (Python, Go)
  • automation tooling (Terraform, Ansible, or Consul)
  • public cloud environments (AWS, GCP)
  • secure network architectures
  • multi-cloud and hybrid infrastructure
  • security platforms
  • firewalls
  • web application firewall (WAF) controls
  • information security
  • application, system, and network security threats
  • attack techniques
  • mitigating controls
  • effective security policies
  • data protection regulations
  • security engineering
  • secure network architectures
  • encryption
  • authentication
  • intrusion detection
  • firewall technologies
  • incident response plans
  • security by design
  • risk assessment methodologies

What the JD emphasized

  • 7+ years of progressively responsible experience in network security architecture and design
  • Hands-on experience deploying network security controls across AWS and/or GCP, including cloud-native security controls (e.g., AWS Network Firewall, WAF, GCP Cloud Armor)
  • Proficient in at least one scripting language (Python, Go) and automation tooling (Terraform, Ansible, or Consul)
  • Deep understanding of public cloud environments (AWS, GCP) with the ability to design, deploy, and manage secure network architectures across multi-cloud and hybrid infrastructure, ensuring consistent security posture at scale
  • Extensive experience with security platforms, including industry-leading firewalls and web application firewall (WAF) controls, with the ability to evaluate, implement, and operate these platforms to protect customer data environments effectively
  • Strong foundation in information security, including understanding of application, system, and network security threats, attack techniques, and mitigating controls, with the ability to implement effective security policies and ensure compliance with data protection regulations
  • Skilled in security engineering, with experience designing and implementing secure network architectures, managing encryption, authentication, intrusion detection, and firewall technologies, and developing incident response plans to address security breaches
  • Demonstrated commitment to security by design, with the ability to integrate security measures into the architecture of systems from the outset, including risk assessment methodologies and the des