Lead Product Security Engineer

vor 4 Wochen


Munich, Bayern, Deutschland commercetools Vollzeit

The Opportunity:

As we expand our engineering team beyond 100 professionals, we are establishing a tech leadership pathway to facilitate further growth. In the role of Principal Engineer for Product Security, you will have the unique opportunity to define the position and cultivate the tech leadership culture alongside the Director of Tech Leadership.

In this pivotal role, you will tackle complex technical challenges associated with our innovative product. Our commerce APIs manage sensitive information, including customer accounts and orders, while the Merchant Center, our administrative tool, features an intricate permission model built on our APIs. Your efforts will empower product teams to adopt security measures early in the development process, ensuring they can construct secure services within a multi-cloud environment.

Your Mission:

  • Develop a cohesive security framework and operational best practices, particularly for new services and teams.
  • Train product teams on conducting risk assessments, threat modeling, and designing secure applications, including API-first products.
  • Evaluate requirements and application designs, assisting product teams in addressing any identified deficiencies.
  • Facilitate the integration of SAST, DAST, and SCA tools into the development lifecycle.
  • Organize external penetration tests and guide teams in rectifying identified vulnerabilities.
  • Collaborate with development teams to resolve security challenges and enhance overall security posture.
  • Rapidly investigate new attack vectors to assist teams in implementing suitable security controls to mitigate risks.
  • Support teams during audits related to our certifications.
  • Identify training needs and skills gaps, promoting security knowledge sharing across the organization with the help of our internal knowledge management team.
  • Initiate improvements that impact multiple teams to enhance our Product Security and bring colleagues' ideas to fruition.
  • Lead organizational communication on long-term initiatives, ensuring successful adoption.
  • Work closely with Product Management, fellow Principal Engineers, the Head of Engineering, as well as legal and compliance teams.
  • Contribute to the evolution of our technical vision and advocate for it within the organization.

What you need to succeed:

  • A robust technical background with a proven history in a hands-on Product Security role (5+ years).
  • Experience enhancing Product Security in a leadership capacity (2+ years).
  • Proficiency in Secure Architecture design reviews and Threat Modeling.
  • Experience embedding Security at various stages of the Software Development Life Cycle (SDLC).
  • Familiarity with Static Analysis and Secure Code Review Implementations for early detection of security vulnerabilities in the SDLC.
  • Strong knowledge of Linux systems, Kubernetes, Terraform, Vault, API, and web application security.
  • Relevant Security Certifications such as CISSP, CCSP, Certified Kubernetes Security Specialist, or GCP/AWS/Azure security certification.
  • Practical experience in DevSecOps, including proficiency in at least one scripting language (e.g., JavaScript, Go).
  • Ability to analyze security issues alongside related organizational challenges.
  • Project management experience, particularly for initiatives involving multiple teams.
  • Experience in an Agile environment with a strong focus on customer needs.
  • Experience in setting up and conducting training sessions.
  • Excellent written and verbal communication skills.
  • Proficiency in English to operate effectively in an international context.
  • Strong self-assessment capabilities.
  • A commitment to sharing knowledge and a desire for continuous improvement and learning about leadership, new technologies, and concepts.

We care about your growth and well-being

Competitive Compensation Package: A generous compensation structure that includes salary, a competitive stock option package, and various benefits and perks.

Workation: The opportunity to work up to 60 days per year in a country different from your home country.

Learning & Development Budget

Academy: Regular training sessions, access to Coursera and Babbel training courses.

Our Benefits: Explore the benefits available at our offices.

Flexibility: Whether you are a morning person or a night owl, we believe in outcomes and motivated employees.

Mindset & Growth: A diverse workplace with an open, international culture and a commitment to learning.

Come grow with us

We celebrate diversity and are proud to be an equal opportunity employer. We value candidates from a wide variety of backgrounds, as it enriches our company.

At commercetools, we are committed to assessing competencies, future potential, learning approaches, and passion, rather than age, color, national origin, religion, gender, gender identity or expression, sexual orientation, familial status, genetics, or disability.


  • Principal Engineer

    vor 15 Stunden


    Munich, Bayern, Deutschland commercetools Vollzeit

    About the RoleWe are seeking a highly skilled Principal Engineer - Product Security Leader to join our team at commercetools. As a key member of our tech leadership team, you will play a critical role in shaping our security architecture and driving the adoption of secure practices across our organization.Key ResponsibilitiesCreate and maintain a...

  • Principal Engineer

    vor 16 Stunden


    Munich, Bayern, Deutschland commercetools Vollzeit

    About the RoleWe are seeking a highly skilled Principal Engineer - Product Security Leader to join our team at commercetools. As a key member of our tech leadership team, you will play a critical role in shaping our security architecture and driving the adoption of secure practices across our organization.Key ResponsibilitiesCreate and maintain a...


  • Munich, Bayern, Deutschland commercetools Vollzeit

    Opportunity Overview: As we expand our engineering team beyond 100 members, we are establishing a tech leadership pathway that will facilitate our growth. In the role of Principal Engineer for Product Security, you will have the unique opportunity to define the position and influence the tech leadership culture alongside the Director of Tech Leadership. Your...


  • Munich, Bayern, Deutschland commercetools Vollzeit

    Opportunity Overview: As we expand our engineering team beyond 100 members, we are establishing a tech leadership pathway that will facilitate our growth. In the role of Principal Engineer for Product Security, you will have the unique opportunity to define the position and influence the tech leadership culture alongside the Director of Tech Leadership. Your...


  • Munich, Bayern, Deutschland commercetools Vollzeit

    The Opportunity: As we expand our engineering team beyond 100 members, we are establishing a leadership pathway in technology to facilitate our growth. In the role of Principal Engineer for Product Security, you will have the unique opportunity to define this position and influence the technological leadership culture alongside the Director of Tech...


  • Munich, Bayern, Deutschland commercetools Vollzeit

    The Opportunity: As we expand our engineering team beyond 100 members, we are establishing a leadership pathway in technology to facilitate our growth. In the role of Principal Engineer for Product Security, you will have the unique opportunity to define this position and influence the technological leadership culture alongside the Director of Tech...

  • Lead Security Engineer

    vor 4 Wochen


    Munich, Bayern, Deutschland Mattermost Vollzeit

    Company OverviewMattermost is a leader in providing secure, workflow-centric collaboration solutions tailored for technical and operational teams. Our clientele spans various sectors, including technology, public services, national defense, and financial services, serving both major corporations and governmental entities globally.Position SummaryWe are in...

  • Product Line Engineer

    vor 1 Woche


    Munich, Bayern, Deutschland Plastic Omnium Vollzeit

    Product Line Engineer - Technical LeadWe are seeking a highly skilled Product Line Engineer to lead the technical aspects of our product acquisition and development phases. As a key member of our team, you will be responsible for:Managing Technical InterfacesDriving Innovation and ConceptionEnsuring Compliance and QualityGenerating Technical...


  • Munich, Bayern, Deutschland Core Tech Recruitment Vollzeit

    **About Core Tech Recruitment**We are proud to partner with a leading electronic software provider, a pioneer in security solutions for over 50 years. Their world-class products have made them a renowned name in the industry.**Job Summary**We are seeking a talented Senior Embedded Software Engineer to join their dynamic team. As a key member, you will be...

  • Team Leader

    Vor 4 Tagen


    Munich, Bayern, Deutschland Lufthansa Group Security Operations GmbH Vollzeit

    Job Title: Team Leader - Operational Security SpecialistAbout the Role:We are seeking a highly skilled and experienced Team Leader to join our Operational Security team at Lufthansa Group Security Operations GmbH. As a Team Leader, you will be responsible for leading a team of security professionals and ensuring the highest level of security and order across...

  • Team Leader

    vor 2 Wochen


    Munich, Bayern, Deutschland Lufthansa Group Security Operations GmbH Vollzeit

    Job Title: Team Leader - Operational Security SpecialistAbout the Role:We are seeking a highly skilled and experienced Team Leader to join our Operational Security team at Lufthansa Group Security Operations GmbH. As a Team Leader, you will be responsible for leading a team of security professionals and ensuring the highest level of security and order across...


  • Munich, Bayern, Deutschland commercetools Vollzeit

    The Opportunity: As we expand our engineering team beyond 100 professionals, we are establishing a tech leadership pathway to facilitate further growth. In the role of Principal Engineer for Product Security, you will have the unique opportunity to define this position and cultivate the tech leadership culture alongside the Director of Tech Leadership. ...


  • Munich, Bayern, Deutschland commercetools Vollzeit

    The Opportunity: As we expand our engineering team beyond 100 professionals, we are establishing a tech leadership pathway to facilitate further growth. In the role of Principal Engineer for Product Security, you will have the unique opportunity to define this position and cultivate the tech leadership culture alongside the Director of Tech Leadership. ...


  • Munich, Bayern, Deutschland commercetools Vollzeit

    The Opportunity: As we expand our engineering team beyond 100 members, we are establishing a tech leadership pathway that will facilitate our growth. In the role of Principal Engineer for Product Security, you will have the unique opportunity to define this position and cultivate the tech leadership culture alongside the Director of Tech Leadership. In...


  • Munich, Bayern, Deutschland commercetools Vollzeit

    The Opportunity: As we expand our engineering team beyond 100 members, we are establishing a tech leadership pathway that will facilitate our growth. In the role of Principal Engineer for Product Security, you will have the unique opportunity to define this position and cultivate the tech leadership culture alongside the Director of Tech Leadership. In...


  • Munich, Bayern, Deutschland European Tech Recruit Vollzeit

    Job Title: Senior/Principal Security ML Research EngineerAbout the Role:We are seeking a highly skilled Senior/Principal Security ML Research Engineer to join our team at European Tech Recruit. As a key member of our research team, you will be responsible for designing and developing cutting-edge AI algorithms for security products.Key Responsibilities:AI...


  • Munich, Bayern, Deutschland Ratbacher GmbH Vollzeit

    Join Our Team as an IT Security EngineerCompany: Ratbacher GmbHLocation: Stuttgart, München, Bonn, Frankfurt oder DresdenAre you prepared to take the next step in your career with a renowned industry leader? Our client is seeking a dedicated IT Security Engineer to enhance their team. This organization prioritizes collaborative efforts and mutual respect...


  • Munich, Bayern, Deutschland commercetools Vollzeit

    About the Role:We are seeking a highly skilled Principal Security Architect to join our team at commercetools. As a key member of our tech leadership team, you will play a critical role in shaping our security architecture and driving the adoption of secure practices across the organization.Key Responsibilities:Create and maintain a comprehensive security...


  • Munich, Bayern, Deutschland commercetools Vollzeit

    About the Role:We are seeking a highly skilled Principal Security Architect to join our team at commercetools. As a key member of our tech leadership team, you will play a critical role in shaping our security architecture and driving the adoption of secure practices across the organization.Key Responsibilities:Create and maintain a comprehensive security...


  • Munich, Bayern, Deutschland Myra Security GmbH Vollzeit

    Position OverviewMyra Security GmbH is seeking a Senior Network Engineer to enhance our network operations. This position focuses on the development, optimization, and upkeep of our extensive global network infrastructure.Key ResponsibilitiesEstablish and maintain monitoring systems to ensure network reliability.Participate in on-call rotations to address...