The AI Job Search Engine
Principal Engineer, Product Security(m/w/x)
Description
You will lead the company's product security strategy by embedding advanced security practices into the development lifecycle and empowering engineering teams to build resilient, cloud-native services.
Let AI find the perfect jobs for you!
Upload your CV and Nejo AI will find matching job offers for you.
Requirements
- •Technical background and 5+ years Product Security
- •2+ years Product Security leadership experience
- •Customer-facing security and roadmap influence experience
- •Experience in scale-up environments
- •Expertise in formulating requirements and priorities
- •Secure Architecture design and Threat Modeling
- •Experience infusing security into the SDLC
- •Static Analysis and Secure Code Review
- •Knowledge of Linux, Kubernetes, and Terraform
- •DevSecOps experience and scripting proficiency
- •Project management experience for cross-team projects
- •Experience in Agile environments
- •Experience running trainings or onboardings
- •Fluent written and verbal English communication
- •Curiosity and aptitude for AI tools
- •Security Certifications like CISSP or CCSP
- •Eagerness to improve and learn
Work Experience
5 years
Tasks
- •Formulate and drive the product security strategy
- •Assess and improve the security maturity posture
- •Create standardized security architecture and operational practices
- •Track and drive remediation of technology risks
- •Educate teams on risk assessments and threat modeling
- •Build secure api-first applications with product teams
- •Review designs to address security shortcomings
- •Embed security tooling into the development process
- •Prioritize fixes from external penetration tests
- •Collaborate with product teams to resolve security issues
- •Lead customer conversations regarding product security
- •Triage and investigate new attack vectors
- •Drive security initiatives and support certification audits
- •Partner with Product Management and legal teams
- •Identify skills gaps and facilitate knowledge sharing
Tools & Technologies
Languages
English – Business Fluent
Benefits
Flexible Working
- •Hybrid work model
Healthcare & Fitness
- •Comprehensive health benefits
Mental Health Support
- •Personalized mental health support
Learning & Development
- •Annual learning budget
- •Self-paced learning platforms
- •Language training
Mentorship & Coaching
- •Personalized coaching
- •Mentorship and leadership programs
Generous Parental Leave
- •Additional paid parental leave
Competitive Pay
- •Equity participation program
- SAPFull-timeWith HomeofficeSeniorBonn, Walldorf, Berlin, Dresden, München
- NavVis
Senior Cloud Security Engineer(m/w/x)
Full-timeWith HomeofficeSeniorMünchen - EGYM
Application Security Engineer(m/w/x)
Full-timeWith HomeofficeExperiencedMünchen, Berlin - Allianz Global Investors
Security Engineer - DevSecOps & SDLC Security(m/w/x)
Full-timeWith HomeofficeSeniorFrankfurt am Main, München - XIBIX Solutions GmbH
DevSecOps Engineer(m/w/x)
Full-timeWith HomeofficeSeniorKonstanz, Hamburg, Unterschleißheim, Landshut, Berlin, München
Principal Engineer, Product Security(m/w/x)
The AI Job Search Engine
Description
You will lead the company's product security strategy by embedding advanced security practices into the development lifecycle and empowering engineering teams to build resilient, cloud-native services.
Let AI find the perfect jobs for you!
Upload your CV and Nejo AI will find matching job offers for you.
Requirements
- •Technical background and 5+ years Product Security
- •2+ years Product Security leadership experience
- •Customer-facing security and roadmap influence experience
- •Experience in scale-up environments
- •Expertise in formulating requirements and priorities
- •Secure Architecture design and Threat Modeling
- •Experience infusing security into the SDLC
- •Static Analysis and Secure Code Review
- •Knowledge of Linux, Kubernetes, and Terraform
- •DevSecOps experience and scripting proficiency
- •Project management experience for cross-team projects
- •Experience in Agile environments
- •Experience running trainings or onboardings
- •Fluent written and verbal English communication
- •Curiosity and aptitude for AI tools
- •Security Certifications like CISSP or CCSP
- •Eagerness to improve and learn
Work Experience
5 years
Tasks
- •Formulate and drive the product security strategy
- •Assess and improve the security maturity posture
- •Create standardized security architecture and operational practices
- •Track and drive remediation of technology risks
- •Educate teams on risk assessments and threat modeling
- •Build secure api-first applications with product teams
- •Review designs to address security shortcomings
- •Embed security tooling into the development process
- •Prioritize fixes from external penetration tests
- •Collaborate with product teams to resolve security issues
- •Lead customer conversations regarding product security
- •Triage and investigate new attack vectors
- •Drive security initiatives and support certification audits
- •Partner with Product Management and legal teams
- •Identify skills gaps and facilitate knowledge sharing
Tools & Technologies
Languages
English – Business Fluent
Benefits
Flexible Working
- •Hybrid work model
Healthcare & Fitness
- •Comprehensive health benefits
Mental Health Support
- •Personalized mental health support
Learning & Development
- •Annual learning budget
- •Self-paced learning platforms
- •Language training
Mentorship & Coaching
- •Personalized coaching
- •Mentorship and leadership programs
Generous Parental Leave
- •Additional paid parental leave
Competitive Pay
- •Equity participation program
About the Company
commercetools
Industry
IT
Description
The company is committed to creating meaningful change in the commerce industry and the communities it engages with.
- SAP
Senior Product Security Engineer(m/w/x)
Full-timeWith HomeofficeSeniorBonn, Walldorf, Berlin, Dresden, München - NavVis
Senior Cloud Security Engineer(m/w/x)
Full-timeWith HomeofficeSeniorMünchen - EGYM
Application Security Engineer(m/w/x)
Full-timeWith HomeofficeExperiencedMünchen, Berlin - Allianz Global Investors
Security Engineer - DevSecOps & SDLC Security(m/w/x)
Full-timeWith HomeofficeSeniorFrankfurt am Main, München - XIBIX Solutions GmbH
DevSecOps Engineer(m/w/x)
Full-timeWith HomeofficeSeniorKonstanz, Hamburg, Unterschleißheim, Landshut, Berlin, München