Your personal AI career agent
Senior Corporate Security Engineer(m/w/x)
Designing and managing passwordless authentication and Zero Trust architecture for digital employee experience software. 5-8 years of corporate security experience in cloud-first environments required. Unlimited vacation, 100% remote work.
Requirements
- 5-8 years hands-on experience in Corporate Security, IT Security Engineering, or SOC role in cloud-first environment
- Endpoint mastery: macOS/Windows OS hardening and security management via MDM/UEM tools
- Vulnerability management: Proven experience assisting IT/business teams with patching systems/infrastructures
- Coding skills: Python and Terraform proficiency for automating APIs and security workflows
- Security Ops: Proven experience with EDR tools and SIEM log analysis
- Fluent English communication for explaining complex risks to non-technical stakeholders
- Ability to influence and drive security best practices across non-security teams
- Experience with security awareness training platforms and phishing simulation tools
- Identity expertise: Deep technical knowledge of Okta and Microsoft Entra ID
- Experience implementing FIDO2/WebAuthn (Passwordless)
- Proficient in PowerShell
- Familiarity with compliance standards (ISO 27001/27701, SOC 2, FedRAMP)
- Experience securing Cloud Infrastructure (Azure/AWS) for internal/corporate workloads
- English language proficiency
Tasks
- Contribute to passwordless authentication and Zero Trust design
- Manage secure provisioning and lifecycle with least-privilege access
- Partner with HR and IT for onboarding/offboarding workflows
- Define and enforce security baselines for endpoints and mobile devices
- Manage and tune EDR/XDR solutions for high-fidelity detection
- Secure corporate Azure footprint with proper configuration
- Identify and mitigate security risks through regular assessments
- Coordinate vulnerability and patch management
- Automate endpoint compliance checks and remediation
- Support Infrastructure-as-Code development and maintenance
- Ensure hardening and compliance of endpoints and servers
- Assess and secure third-party SaaS integrations
- Collaborate with Legal and Compliance for vendor vetting
- Configure and maintain CASB and DLP policies
- Lead incident response for corporate security events
- Develop automation scripts for security tasks
- Proactively hunt for threats in the corporate network
- Develop incident response playbooks and procedures
- Design and implement security controls for corporate resources
- Support and automate evidence collection for audits
- Act as primary security liaison to IT and business teams
- Design and deliver technical security training and awareness
Work Experience
- 5 - 8 years
Education
- Bachelor's degreeOR
- Master's degree
Languages
- English – Fluent
Tools & Technologies
- macOS
- Windows
- MDM
- UEM
- Python
- Terraform
- EDR
- SIEM
- Okta
- Microsoft Entra ID
- FIDO2
- WebAuthn
- PowerShell
- ISO 27001
- ISO 27701
- SOC 2
- FedRAMP
- Azure
- AWS
Benefits
Flexible Working
- Flexible hours
- 100% remote work
More Vacation Days
- Unlimited vacation
- 30 days of holidays
Social Impact
- 3 company-paid volunteer days
Learning & Development
- Free access to training platforms
Generous Parental Leave
- 16 weeks paid leave for primary caregivers
- 8 months unpaid leave extension
- 6 weeks paid leave for secondary caregivers
Other Benefits
- 24/7 accident insurance
Bonuses & Incentives
- Referral bonuses
Not a perfect match?
- KNIMEFull-timeWith HomeofficeSeniorBerlin, Konstanz
- Affinidi
Manager, Security Engineering(m/w/x)
Full-timeWith HomeofficeSeniorBerlin - Delivery Hero
Senior Manager, Identity and Access Management (IAM) Security(m/w/x)
Full-timeWith HomeofficeManagementBerlin - Databricks
Sr. Staff Security Engineer(m/w/x)
Full-timeWith HomeofficeSeniorBerlin - DWS International GmbH
Senior Security Engineer - Data Infrastructure(m/w/x)
Full-timeWith HomeofficeSeniorBerlin
Senior Corporate Security Engineer(m/w/x)
Designing and managing passwordless authentication and Zero Trust architecture for digital employee experience software. 5-8 years of corporate security experience in cloud-first environments required. Unlimited vacation, 100% remote work.
Requirements
- 5-8 years hands-on experience in Corporate Security, IT Security Engineering, or SOC role in cloud-first environment
- Endpoint mastery: macOS/Windows OS hardening and security management via MDM/UEM tools
- Vulnerability management: Proven experience assisting IT/business teams with patching systems/infrastructures
- Coding skills: Python and Terraform proficiency for automating APIs and security workflows
- Security Ops: Proven experience with EDR tools and SIEM log analysis
- Fluent English communication for explaining complex risks to non-technical stakeholders
- Ability to influence and drive security best practices across non-security teams
- Experience with security awareness training platforms and phishing simulation tools
- Identity expertise: Deep technical knowledge of Okta and Microsoft Entra ID
- Experience implementing FIDO2/WebAuthn (Passwordless)
- Proficient in PowerShell
- Familiarity with compliance standards (ISO 27001/27701, SOC 2, FedRAMP)
- Experience securing Cloud Infrastructure (Azure/AWS) for internal/corporate workloads
- English language proficiency
Tasks
- Contribute to passwordless authentication and Zero Trust design
- Manage secure provisioning and lifecycle with least-privilege access
- Partner with HR and IT for onboarding/offboarding workflows
- Define and enforce security baselines for endpoints and mobile devices
- Manage and tune EDR/XDR solutions for high-fidelity detection
- Secure corporate Azure footprint with proper configuration
- Identify and mitigate security risks through regular assessments
- Coordinate vulnerability and patch management
- Automate endpoint compliance checks and remediation
- Support Infrastructure-as-Code development and maintenance
- Ensure hardening and compliance of endpoints and servers
- Assess and secure third-party SaaS integrations
- Collaborate with Legal and Compliance for vendor vetting
- Configure and maintain CASB and DLP policies
- Lead incident response for corporate security events
- Develop automation scripts for security tasks
- Proactively hunt for threats in the corporate network
- Develop incident response playbooks and procedures
- Design and implement security controls for corporate resources
- Support and automate evidence collection for audits
- Act as primary security liaison to IT and business teams
- Design and deliver technical security training and awareness
Work Experience
- 5 - 8 years
Education
- Bachelor's degreeOR
- Master's degree
Languages
- English – Fluent
Tools & Technologies
- macOS
- Windows
- MDM
- UEM
- Python
- Terraform
- EDR
- SIEM
- Okta
- Microsoft Entra ID
- FIDO2
- WebAuthn
- PowerShell
- ISO 27001
- ISO 27701
- SOC 2
- FedRAMP
- Azure
- AWS
Benefits
Flexible Working
- Flexible hours
- 100% remote work
More Vacation Days
- Unlimited vacation
- 30 days of holidays
Social Impact
- 3 company-paid volunteer days
Learning & Development
- Free access to training platforms
Generous Parental Leave
- 16 weeks paid leave for primary caregivers
- 8 months unpaid leave extension
- 6 weeks paid leave for secondary caregivers
Other Benefits
- 24/7 accident insurance
Bonuses & Incentives
- Referral bonuses
About the Company
Nexthink
Industry
IT
Description
Nexthink is a leader in digital employee experience management software, providing IT leaders with insights to optimize employee experiences.
Not a perfect match?
- KNIME
Application Security Engineer(m/w/x)
Full-timeWith HomeofficeSeniorBerlin, Konstanz - Affinidi
Manager, Security Engineering(m/w/x)
Full-timeWith HomeofficeSeniorBerlin - Delivery Hero
Senior Manager, Identity and Access Management (IAM) Security(m/w/x)
Full-timeWith HomeofficeManagementBerlin - Databricks
Sr. Staff Security Engineer(m/w/x)
Full-timeWith HomeofficeSeniorBerlin - DWS International GmbH
Senior Security Engineer - Data Infrastructure(m/w/x)
Full-timeWith HomeofficeSeniorBerlin