Skip to content
New Job?Nejo!

The AI Job Search Engine

CO
commercetools
4h ago

Principal Engineer, Product Security(m/w/x)

München, Berlin
Full-timeWith Home OfficeSenior
AI/ML

Description

You will lead the company's product security strategy by embedding advanced security practices into the development lifecycle and empowering engineering teams to build resilient, cloud-native services.

Let AI find the perfect jobs for you!

Upload your CV and Nejo AI will find matching job offers for you.

Requirements

  • Technical background and 5+ years Product Security
  • 2+ years Product Security leadership experience
  • Customer-facing security and roadmap influence experience
  • Experience in scale-up environments
  • Expertise in formulating requirements and priorities
  • Secure Architecture design and Threat Modeling
  • Experience infusing security into the SDLC
  • Static Analysis and Secure Code Review
  • Knowledge of Linux, Kubernetes, and Terraform
  • DevSecOps experience and scripting proficiency
  • Project management experience for cross-team projects
  • Experience in Agile environments
  • Experience running trainings or onboardings
  • Fluent written and verbal English communication
  • Curiosity and aptitude for AI tools
  • Security Certifications like CISSP or CCSP
  • Eagerness to improve and learn

Work Experience

5 years

Tasks

  • Formulate and drive the product security strategy
  • Assess and improve the security maturity posture
  • Create standardized security architecture and operational practices
  • Track and drive remediation of technology risks
  • Educate teams on risk assessments and threat modeling
  • Build secure api-first applications with product teams
  • Review designs to address security shortcomings
  • Embed security tooling into the development process
  • Prioritize fixes from external penetration tests
  • Collaborate with product teams to resolve security issues
  • Lead customer conversations regarding product security
  • Triage and investigate new attack vectors
  • Drive security initiatives and support certification audits
  • Partner with Product Management and legal teams
  • Identify skills gaps and facilitate knowledge sharing

Tools & Technologies

LinuxKubernetesTerraformVaultAPIJavaScriptGoCISSPCCSPCertified Kubernetes Security SpecialistGCPAWSAzure

Languages

EnglishBusiness Fluent

Benefits

Flexible Working

  • Hybrid work model

Healthcare & Fitness

  • Comprehensive health benefits

Mental Health Support

  • Personalized mental health support

Learning & Development

  • Annual learning budget
  • Self-paced learning platforms
  • Language training

Mentorship & Coaching

  • Personalized coaching
  • Mentorship and leadership programs

Generous Parental Leave

  • Additional paid parental leave

Competitive Pay

  • Equity participation program
Find the original job posting in its most current version here. Nejo automatically captured this job from the website of commercetools and processed the information on Nejo with the help of AI for you. Despite careful analysis, some information may be incomplete or inaccurate. Please always verify all details in the original posting! Content and copyrights of the original posting belong to the advertising company.
Not a perfect match?
100+ Similar Jobs for you
  • SAP

    Senior Product Security Engineer(m/w/x)

    Full-timeWith HomeofficeSenior
    Bonn, Walldorf, Berlin, Dresden, München
  • NavVis

    Senior Cloud Security Engineer(m/w/x)

    Full-timeWith HomeofficeSenior
    München
  • EGYM

    Application Security Engineer(m/w/x)

    Full-timeWith HomeofficeExperienced
    München, Berlin
  • Allianz Global Investors

    Security Engineer - DevSecOps & SDLC Security(m/w/x)

    Full-timeWith HomeofficeSenior
    Frankfurt am Main, München
  • XIBIX Solutions GmbH

    DevSecOps Engineer(m/w/x)

    Full-timeWith HomeofficeSenior
    Konstanz, Hamburg, Unterschleißheim, Landshut, Berlin, München
100+ View all similar jobs