Skip to content
New Job?Nejo!

The AI Job Search Engine

COcommercetools

Principal Engineer, Product Security(m/w/x)

München, Berlin
Full-timeWith Home OfficeSenior
AI/ML

Formulating security strategy and architecture for commerce industry products, driving risk remediation. 5+ years Product Security experience with 2+ years leadership required. Personalized mental health support, hybrid work model.

Requirements

  • Technical background and 5+ years Product Security
  • 2+ years Product Security leadership experience
  • Customer-facing security and roadmap influence experience
  • Experience in scale-up environments
  • Expertise in formulating requirements and priorities
  • Secure Architecture design and Threat Modeling
  • Experience infusing security into the SDLC
  • Static Analysis and Secure Code Review
  • Knowledge of Linux, Kubernetes, and Terraform
  • DevSecOps experience and scripting proficiency
  • Project management experience for cross-team projects
  • Experience in Agile environments
  • Experience running trainings or onboardings
  • Fluent written and verbal English communication
  • Curiosity and aptitude for AI tools
  • Security Certifications like CISSP or CCSP
  • Eagerness to improve and learn

Tasks

  • Formulate and drive the product security strategy
  • Assess and improve the security maturity posture
  • Create standardized security architecture and operational practices
  • Track and drive remediation of technology risks
  • Educate teams on risk assessments and threat modeling
  • Build secure api-first applications with product teams
  • Review designs to address security shortcomings
  • Embed security tooling into the development process
  • Prioritize fixes from external penetration tests
  • Collaborate with product teams to resolve security issues
  • Lead customer conversations regarding product security
  • Triage and investigate new attack vectors
  • Drive security initiatives and support certification audits
  • Partner with Product Management and legal teams
  • Identify skills gaps and facilitate knowledge sharing

Work Experience

  • 5 years

Education

  • Bachelor's degreeOR
  • Master's degree

Languages

  • EnglishBusiness Fluent

Tools & Technologies

  • Linux
  • Kubernetes
  • Terraform
  • Vault
  • API
  • JavaScript
  • Go
  • CISSP
  • CCSP
  • Certified Kubernetes Security Specialist
  • GCP
  • AWS
  • Azure

Benefits

Flexible Working

  • Hybrid work model

Healthcare & Fitness

  • Comprehensive health benefits

Mental Health Support

  • Personalized mental health support

Learning & Development

  • Annual learning budget
  • Self-paced learning platforms
  • Language training

Mentorship & Coaching

  • Personalized coaching
  • Mentorship and leadership programs

Generous Parental Leave

  • Additional paid parental leave

Competitive Pay

  • Equity participation program
Find the original job posting in its most current version here. Nejo automatically captured this job from the website of commercetools and processed the information on Nejo with the help of AI for you. Despite careful analysis, some information may be incomplete or inaccurate. Please always verify all details in the original posting! Content and copyrights of the original posting belong to the advertising company.

  • SAP

    Senior Product Security Engineer(m/w/x)

    Full-timeWith HomeofficeSenior
    Bonn, Walldorf, Berlin, Dresden, München
  • NavVis

    Senior Cloud Security Engineer(m/w/x)

    Full-timeWith HomeofficeSenior
    München
  • EGYM

    Application Security Engineer(m/w/x)

    Full-timeWith HomeofficeExperienced
    München, Berlin
  • neoshare AG

    Head of Offensive & Defensive Security(m/w/x)

    Full-timeWith HomeofficeSenior
    München, Frankfurt am Main, Berlin
  • Celonis

    Senior Cloud Infrastructure Engineer(m/w/x)

    Full-timeWith HomeofficeSenior
    München
View all 100+ similar jobs

Nejo is an AI – results may be incomplete or contain mistakes