The AI Job Search Engine
Security Engineer - DevSecOps & SDLC Security(m/w/x)
Description
In this role, you will integrate security throughout the software development lifecycle, ensuring robust controls and compliance while collaborating with various teams. Your day-to-day responsibilities will involve evaluating security tools, advising on best practices, and automating workflows to enhance the developer experience.
Let AI find the perfect jobs for you!
Upload your CV and Nejo AI will find matching job offers for you.
Requirements
- •5+ years of experience in SDLC security, application security, or DevSecOps
- •Hands-on experience with CI/CD pipelines, GitHub, and JFrog
- •Strong knowledge of Terraform Cloud, Bicep, Ansible, and cloud security principles
- •Familiarity with Open Policy Agent (OPA), Microsoft’s Well-Architected Framework, and CIS Benchmarks
- •Experience with security testing tools and vulnerability management
- •Proven ability to operate effectively in regulated environments (DORA, KAIT, BAIT)
- •Excellent communication skills across technical and business stakeholders
- •Fluency in English; additional languages are a plus
- •Degree in Information Technology or a related field
- •Certifications such as CSSLP, GCSA, AZ-500, CISSP, CISM, or CISA
- •Experience with internal developer platforms (IDPs) and platform engineering
- •Exposure to Agile environments and enterprise transformation programs
- •Familiarity with AI-enhanced developer workflows and their security implications
Education
Work Experience
5 years
Tasks
- •Implement and oversee security controls across SDLC and infrastructure layers
- •Test-drive and evaluate security tools for integration into CI/CD pipelines
- •Advise development teams and security champions on secure tool usage
- •Define and enforce secure SDLC practices aligned with DORA, KAIT, and BAIT
- •Apply security best practices to cloud-native infrastructure using Microsoft's Well-Architected Framework
- •Secure and govern Infrastructure as Code (IaC) with Terraform Cloud, Bicep, and Ansible
- •Implement policy-as-code using Open Policy Agent (OPA) across infrastructure and pipelines
- •Automate security controls, evidence generation, and release promotion workflows
- •Champion security-by-design principles across architecture, development, and operations
- •Collaborate with governance, application, and infrastructure teams to ensure compliance
- •Contribute to the Security Champion Community of Practice (CoP)
- •Apply CIS Benchmarks to harden systems and validate configurations
- •Support compliance dashboards and DORA metrics implementation in IDP
- •Optionally contribute to Kubernetes, Azure role assignments, VM usage, and private endpoint architecture
- •Serve as a sparring partner for auditors, ensuring alignment of technical controls with compliance expectations
Tools & Technologies
Languages
English – Business Fluent
Benefits
Flexible Working
- •Flexible work arrangements
Retirement Plans
- •Company pension/savings plans
Competitive Pay
- •Company share purchasing plan
Mental Health Support
- •Mental health and wellbeing programs
Career Advancement
- •Career opportunities within Allianz Group
Learning & Development
- •Comprehensive learning and development offerings
- Allianz Global InvestorsFull-timeWith HomeofficeExperiencedFrankfurt am Main, München
- Zühlke Engineering AG
Senior Azure Cloud Engineer(m/w/x)
Full-timeWith HomeofficeSeniorEschborn - Deloitte
DevSecOps Engineer Softwareentwicklung / öffentlicher Sektor(m/w/x)
Full-timeWith HomeofficeExperiencedFrankfurt am Main, Berlin, Leipzig - SAP
Senior DevOps Engineer - Azure(m/w/x)
Full-time/Part-timeWith HomeofficeSeniorWalldorf, München, Berlin, Eschborn, St. Leon-Rot - Deloitte GmbH Wirtschaftsprüfungsgesellschaft
Senior DevOps Engineer(m/w/x)
Full-timeWith HomeofficeSeniorBerlin, Düsseldorf, Frankfurt am Main, Hamburg, Hannover, Köln, München, Stuttgart
Security Engineer - DevSecOps & SDLC Security(m/w/x)
The AI Job Search Engine
Description
In this role, you will integrate security throughout the software development lifecycle, ensuring robust controls and compliance while collaborating with various teams. Your day-to-day responsibilities will involve evaluating security tools, advising on best practices, and automating workflows to enhance the developer experience.
Let AI find the perfect jobs for you!
Upload your CV and Nejo AI will find matching job offers for you.
Requirements
- •5+ years of experience in SDLC security, application security, or DevSecOps
- •Hands-on experience with CI/CD pipelines, GitHub, and JFrog
- •Strong knowledge of Terraform Cloud, Bicep, Ansible, and cloud security principles
- •Familiarity with Open Policy Agent (OPA), Microsoft’s Well-Architected Framework, and CIS Benchmarks
- •Experience with security testing tools and vulnerability management
- •Proven ability to operate effectively in regulated environments (DORA, KAIT, BAIT)
- •Excellent communication skills across technical and business stakeholders
- •Fluency in English; additional languages are a plus
- •Degree in Information Technology or a related field
- •Certifications such as CSSLP, GCSA, AZ-500, CISSP, CISM, or CISA
- •Experience with internal developer platforms (IDPs) and platform engineering
- •Exposure to Agile environments and enterprise transformation programs
- •Familiarity with AI-enhanced developer workflows and their security implications
Education
Work Experience
5 years
Tasks
- •Implement and oversee security controls across SDLC and infrastructure layers
- •Test-drive and evaluate security tools for integration into CI/CD pipelines
- •Advise development teams and security champions on secure tool usage
- •Define and enforce secure SDLC practices aligned with DORA, KAIT, and BAIT
- •Apply security best practices to cloud-native infrastructure using Microsoft's Well-Architected Framework
- •Secure and govern Infrastructure as Code (IaC) with Terraform Cloud, Bicep, and Ansible
- •Implement policy-as-code using Open Policy Agent (OPA) across infrastructure and pipelines
- •Automate security controls, evidence generation, and release promotion workflows
- •Champion security-by-design principles across architecture, development, and operations
- •Collaborate with governance, application, and infrastructure teams to ensure compliance
- •Contribute to the Security Champion Community of Practice (CoP)
- •Apply CIS Benchmarks to harden systems and validate configurations
- •Support compliance dashboards and DORA metrics implementation in IDP
- •Optionally contribute to Kubernetes, Azure role assignments, VM usage, and private endpoint architecture
- •Serve as a sparring partner for auditors, ensuring alignment of technical controls with compliance expectations
Tools & Technologies
Languages
English – Business Fluent
Benefits
Flexible Working
- •Flexible work arrangements
Retirement Plans
- •Company pension/savings plans
Competitive Pay
- •Company share purchasing plan
Mental Health Support
- •Mental health and wellbeing programs
Career Advancement
- •Career opportunities within Allianz Group
Learning & Development
- •Comprehensive learning and development offerings
About the Company
Allianz Global Investors
Industry
FinancialServices
Description
Allianz Global Investors is a leading global active asset manager focused on long-term value creation and sustainability.
- Allianz Global Investors
AI Security Governance Specialist(m/w/x)
Full-timeWith HomeofficeExperiencedFrankfurt am Main, München - Zühlke Engineering AG
Senior Azure Cloud Engineer(m/w/x)
Full-timeWith HomeofficeSeniorEschborn - Deloitte
DevSecOps Engineer Softwareentwicklung / öffentlicher Sektor(m/w/x)
Full-timeWith HomeofficeExperiencedFrankfurt am Main, Berlin, Leipzig - SAP
Senior DevOps Engineer - Azure(m/w/x)
Full-time/Part-timeWith HomeofficeSeniorWalldorf, München, Berlin, Eschborn, St. Leon-Rot - Deloitte GmbH Wirtschaftsprüfungsgesellschaft
Senior DevOps Engineer(m/w/x)
Full-timeWith HomeofficeSeniorBerlin, Düsseldorf, Frankfurt am Main, Hamburg, Hannover, Köln, München, Stuttgart