Your personal AI career agent
Senior Security Engineer(m/w/x)
Evolving Zalando's ZPS Security Controls Framework with a GRC engineering mindset. 5+ years in information security, risk, or GRC required. 27 days holiday plus additional days and employee shares.
Requirements
- 5+ years experience in Information Security, Risk, or GRC
- Experience in regulated environments (fintech or payments)
- Understanding of DORA, PCI DSS, ISO 27001, or GDPR
- Experience designing or assessing security controls
- Defining evidence and evaluating effectiveness of controls
- GRC engineering mindset
- Interest in automation
- Interest in scalable evidence collection
- Interest in continuous monitoring
- Constructive challenging as second line of defense
- Effective collaboration with engineering and security teams
- Clear communication with technical stakeholders
- Clear communication with non-technical stakeholders
- Clear communication with senior management
Tasks
- Define and maintain security policies and standards
- Evolve the ZPS Security Controls Framework
- Verify control design and effectiveness
- Ensure traceability between risks, controls, and evidence
- Apply GRC engineering mindset
- Enable automated evidence collection
- Implement continuous control monitoring
- Collaborate with Engineering and Operational Security teams
- Support internal and external audits
- Ensure regulatory readiness
- Manage control effectiveness reporting
- Align with DORA, PCI DSS, ISO 27001, and internal policies
Work Experience
- 5 years
Education
- Bachelor's degreeOR
- Master's degree
Languages
- English – Business Fluent
Tools & Technologies
- DORA
- PCI DSS
- ISO 27001
- GDPR
Benefits
More Vacation Days
- 27 days of holiday a year
- 1 additional holiday day per year
Purpose-Driven Work
- 2 paid volunteering days a year
Competitive Pay
- Employee shares program
Corporate Discounts
- 40% off fashion and beauty products
- 30% off Lounge by Zalando
- Discounts from external partners
Other Benefits
- Relocation assistance
- Bianual peer-to-peer review
Family Support
- Family services
Healthcare & Fitness
- Health and wellbeing options
Mental Health Support
- Mental health support and coaching
Learning & Development
- Training platform access
Like this job?
BetaYour Career Agent finds similar jobs for you every day.
Not a perfect match?
- Zalando Payments GmbHFull-timeWith HomeofficeSeniorBerlin
- Unzer
Senior IT Security Engineer(m/w/x)
Full-timeWith HomeofficeSeniorBerlin - Urban Sports Club
Senior Security Engineer(m/w/x)
Full-timeWith HomeofficeSeniorBerlin, Köln - Moss
Information Security GRC Lead(m/w/x)
Full-timeWith HomeofficeExperiencedBerlin - HelloFresh
Senior GRC Analyst(m/w/x)
Full-timeWith HomeofficeSeniorBerlin
Senior Security Engineer(m/w/x)
Evolving Zalando's ZPS Security Controls Framework with a GRC engineering mindset. 5+ years in information security, risk, or GRC required. 27 days holiday plus additional days and employee shares.
Requirements
- 5+ years experience in Information Security, Risk, or GRC
- Experience in regulated environments (fintech or payments)
- Understanding of DORA, PCI DSS, ISO 27001, or GDPR
- Experience designing or assessing security controls
- Defining evidence and evaluating effectiveness of controls
- GRC engineering mindset
- Interest in automation
- Interest in scalable evidence collection
- Interest in continuous monitoring
- Constructive challenging as second line of defense
- Effective collaboration with engineering and security teams
- Clear communication with technical stakeholders
- Clear communication with non-technical stakeholders
- Clear communication with senior management
Tasks
- Define and maintain security policies and standards
- Evolve the ZPS Security Controls Framework
- Verify control design and effectiveness
- Ensure traceability between risks, controls, and evidence
- Apply GRC engineering mindset
- Enable automated evidence collection
- Implement continuous control monitoring
- Collaborate with Engineering and Operational Security teams
- Support internal and external audits
- Ensure regulatory readiness
- Manage control effectiveness reporting
- Align with DORA, PCI DSS, ISO 27001, and internal policies
Work Experience
- 5 years
Education
- Bachelor's degreeOR
- Master's degree
Languages
- English – Business Fluent
Tools & Technologies
- DORA
- PCI DSS
- ISO 27001
- GDPR
Benefits
More Vacation Days
- 27 days of holiday a year
- 1 additional holiday day per year
Purpose-Driven Work
- 2 paid volunteering days a year
Competitive Pay
- Employee shares program
Corporate Discounts
- 40% off fashion and beauty products
- 30% off Lounge by Zalando
- Discounts from external partners
Other Benefits
- Relocation assistance
- Bianual peer-to-peer review
Family Support
- Family services
Healthcare & Fitness
- Health and wellbeing options
Mental Health Support
- Mental health support and coaching
Learning & Development
- Training platform access
Like this job?
BetaYour Career Agent finds similar jobs for you every day.
About the Company
Zalando Payments GmbH
Industry
Retail
Description
The company is committed to being a leading pan-European ecosystem for fashion and lifestyle e-commerce, thriving on diversity and inclusion.
Not a perfect match?
- Zalando Payments GmbH
Senior Risk Manager(m/w/x)
Full-timeWith HomeofficeSeniorBerlin - Unzer
Senior IT Security Engineer(m/w/x)
Full-timeWith HomeofficeSeniorBerlin - Urban Sports Club
Senior Security Engineer(m/w/x)
Full-timeWith HomeofficeSeniorBerlin, Köln - Moss
Information Security GRC Lead(m/w/x)
Full-timeWith HomeofficeExperiencedBerlin - HelloFresh
Senior GRC Analyst(m/w/x)
Full-timeWith HomeofficeSeniorBerlin