Lead Product Security Engineer

Vor 6 Tagen


Munich, Bayern, Deutschland commercetools Vollzeit

The Opportunity:

As we expand our engineering team beyond 100 members, we are establishing a leadership pathway in technology to facilitate our growth. In the role of Principal Engineer for Product Security, you will have the unique opportunity to define this position and influence the technological leadership culture alongside the Director of Tech Leadership.

In this capacity, you will tackle complex technical challenges associated with our innovative product offerings. Our commerce APIs manage sensitive information, including customer accounts and transactions. The Merchant Center, our administrative tool, features a complex permission framework built upon our APIs. Your role will empower product teams to adopt security measures early in the development process, ensuring they can create secure services within a multi-cloud environment.

Your Mission:

  • Develop a unified security framework and operational best practices, particularly for new services and teams.
  • Train product teams on conducting risk evaluations, modeling potential threats, and designing secure applications, including API-first products.
  • Assess requirements and application designs, assisting product teams in addressing any identified weaknesses.
  • Facilitate the integration of SAST, DAST, and SCA tools into the development workflow.
  • Organize external penetration testing and guide teams in remediating identified vulnerabilities.
  • Collaborate with development teams to resolve security challenges and enhance overall security measures.
  • Rapidly investigate new attack vectors to help teams implement effective security controls.
  • Support teams during audits of our compliance certifications.
  • Identify skill gaps and learning needs, promoting security knowledge sharing across the organization with the assistance of our internal knowledge management team.
  • Initiate improvements that impact multiple teams to enhance our Product Security and bring innovative ideas to fruition.
  • Lead organizational communication on long-term initiatives, ensuring successful adoption.
  • Work closely with Product Management, fellow Principal Engineers, the Head of Engineering, and legal and compliance teams.
  • Contribute to the evolution of our technical vision and advocate for it within the organization.

What you need to succeed:

  • A robust technical foundation and a successful history in a hands-on Product Security role (5+ years).
  • Proven experience enhancing Product Security in a leadership capacity (2+ years).
  • Expertise in Secure Architecture design evaluations and Threat Modeling.
  • Proficiency in integrating Security at various stages of the Software Development Life Cycle (SDLC).
  • Experience with Static Analysis and Secure Code Review implementations for early detection of security vulnerabilities in the SDLC.
  • Comprehensive knowledge of Linux systems, Kubernetes, Terraform, Vault, API, and web application security.
  • Relevant Security Certifications such as CISSP, CCSP, Certified Kubernetes Security Specialist, or cloud security certifications (GCP/AWS/Azure).
  • Practical experience in DevSecOps, with proficiency in at least one scripting language (e.g., JavaScript, Go).
  • Ability to analyze security challenges and associated organizational issues.
  • Project management experience, particularly for initiatives involving multiple teams.
  • Familiarity with Agile methodologies and a strong customer-centric approach.
  • Experience in developing and conducting training sessions.
  • Excellent written and verbal communication skills.
  • Proficiency in English for effective collaboration in an international setting.
  • Strong self-assessment capabilities.
  • A commitment to sharing knowledge and a desire for continuous self-improvement and learning about leadership and new technologies.

We care about your growth and well-being

Competitive Compensation Package: A generous compensation structure that includes salary, a competitive stock option package, and various benefits and perks.

Workation: Opportunity to work up to 60 days per year in a different country.

Learning & Development Budget

Academy: Access to regular training sessions, Coursera, and Babbel courses.

Our Benefits: Explore our benefits by office.

Flexibility: We support a results-oriented work environment that accommodates different working styles.

Mindset & Growth: We foster a diverse workplace with an open, international culture and a commitment to learning.

Come grow with us

We celebrate diversity and are proud to be an equal opportunity employer. We value individuals from a wide range of backgrounds, as it strengthens our company.

commercetools is dedicated to maintaining a diverse environment and is an equal opportunity employer. We assess candidates based on their competencies, potential, learning approach, and passion, without regard to age, color, national origin, religion, gender, gender identity or expression, sexual orientation, familial status, genetics, or disability.


  • Principal Engineer

    Vor 2 Tagen


    Munich, Bayern, Deutschland commercetools Vollzeit

    About the RoleWe are seeking a highly skilled Principal Engineer - Product Security Leader to join our team at commercetools. As a key member of our tech leadership team, you will play a critical role in shaping our security architecture and driving the adoption of secure practices across our organization.Key ResponsibilitiesCreate and maintain a...

  • Principal Engineer

    Vor 2 Tagen


    Munich, Bayern, Deutschland commercetools Vollzeit

    About the RoleWe are seeking a highly skilled Principal Engineer - Product Security Leader to join our team at commercetools. As a key member of our tech leadership team, you will play a critical role in shaping our security architecture and driving the adoption of secure practices across our organization.Key ResponsibilitiesCreate and maintain a...


  • Munich, Bayern, Deutschland commercetools Vollzeit

    Opportunity Overview: As we expand our engineering team beyond 100 members, we are establishing a tech leadership pathway that will facilitate our growth. In the role of Principal Engineer for Product Security, you will have the unique opportunity to define the position and influence the tech leadership culture alongside the Director of Tech Leadership. Your...


  • Munich, Bayern, Deutschland commercetools Vollzeit

    Opportunity Overview: As we expand our engineering team beyond 100 members, we are establishing a tech leadership pathway that will facilitate our growth. In the role of Principal Engineer for Product Security, you will have the unique opportunity to define the position and influence the tech leadership culture alongside the Director of Tech Leadership. Your...


  • Munich, Bayern, Deutschland commercetools Vollzeit

    The Opportunity: As we expand our engineering team beyond 100 professionals, we are establishing a tech leadership pathway to facilitate further growth. In the role of Principal Engineer for Product Security, you will have the unique opportunity to define the position and cultivate the tech leadership culture alongside the Director of Tech Leadership. ...


  • Munich, Bayern, Deutschland commercetools Vollzeit

    The Opportunity: As we expand our engineering team beyond 100 professionals, we are establishing a tech leadership pathway to facilitate further growth. In the role of Principal Engineer for Product Security, you will have the unique opportunity to define the position and cultivate the tech leadership culture alongside the Director of Tech Leadership. ...

  • Lead Security Engineer

    vor 4 Wochen


    Munich, Bayern, Deutschland Mattermost Vollzeit

    Company OverviewMattermost is a leader in providing secure, workflow-centric collaboration solutions tailored for technical and operational teams. Our clientele spans various sectors, including technology, public services, national defense, and financial services, serving both major corporations and governmental entities globally.Position SummaryWe are in...

  • Product Line Engineer

    vor 1 Woche


    Munich, Bayern, Deutschland Plastic Omnium Vollzeit

    Product Line Engineer - Technical LeadWe are seeking a highly skilled Product Line Engineer to lead the technical aspects of our product acquisition and development phases. As a key member of our team, you will be responsible for:Managing Technical InterfacesDriving Innovation and ConceptionEnsuring Compliance and QualityGenerating Technical...


  • Munich, Bayern, Deutschland Core Tech Recruitment Vollzeit

    **About Core Tech Recruitment**We are proud to partner with a leading electronic software provider, a pioneer in security solutions for over 50 years. Their world-class products have made them a renowned name in the industry.**Job Summary**We are seeking a talented Senior Embedded Software Engineer to join their dynamic team. As a key member, you will be...

  • Team Leader

    Vor 6 Tagen


    Munich, Bayern, Deutschland Lufthansa Group Security Operations GmbH Vollzeit

    Job Title: Team Leader - Operational Security SpecialistAbout the Role:We are seeking a highly skilled and experienced Team Leader to join our Operational Security team at Lufthansa Group Security Operations GmbH. As a Team Leader, you will be responsible for leading a team of security professionals and ensuring the highest level of security and order across...

  • Team Leader

    vor 2 Wochen


    Munich, Bayern, Deutschland Lufthansa Group Security Operations GmbH Vollzeit

    Job Title: Team Leader - Operational Security SpecialistAbout the Role:We are seeking a highly skilled and experienced Team Leader to join our Operational Security team at Lufthansa Group Security Operations GmbH. As a Team Leader, you will be responsible for leading a team of security professionals and ensuring the highest level of security and order across...


  • Munich, Bayern, Deutschland commercetools Vollzeit

    The Opportunity: As we expand our engineering team beyond 100 professionals, we are establishing a tech leadership pathway to facilitate further growth. In the role of Principal Engineer for Product Security, you will have the unique opportunity to define this position and cultivate the tech leadership culture alongside the Director of Tech Leadership. ...


  • Munich, Bayern, Deutschland commercetools Vollzeit

    The Opportunity: As we expand our engineering team beyond 100 professionals, we are establishing a tech leadership pathway to facilitate further growth. In the role of Principal Engineer for Product Security, you will have the unique opportunity to define this position and cultivate the tech leadership culture alongside the Director of Tech Leadership. ...


  • Munich, Bayern, Deutschland commercetools Vollzeit

    The Opportunity: As we expand our engineering team beyond 100 members, we are establishing a tech leadership pathway that will facilitate our growth. In the role of Principal Engineer for Product Security, you will have the unique opportunity to define this position and cultivate the tech leadership culture alongside the Director of Tech Leadership. In...


  • Munich, Bayern, Deutschland commercetools Vollzeit

    The Opportunity: As we expand our engineering team beyond 100 members, we are establishing a tech leadership pathway that will facilitate our growth. In the role of Principal Engineer for Product Security, you will have the unique opportunity to define this position and cultivate the tech leadership culture alongside the Director of Tech Leadership. In...


  • Munich, Bayern, Deutschland European Tech Recruit Vollzeit

    Job Title: Senior/Principal Security ML Research EngineerAbout the Role:We are seeking a highly skilled Senior/Principal Security ML Research Engineer to join our team at European Tech Recruit. As a key member of our research team, you will be responsible for designing and developing cutting-edge AI algorithms for security products.Key Responsibilities:AI...


  • Munich, Bayern, Deutschland Ratbacher GmbH Vollzeit

    Join Our Team as an IT Security EngineerCompany: Ratbacher GmbHLocation: Stuttgart, München, Bonn, Frankfurt oder DresdenAre you prepared to take the next step in your career with a renowned industry leader? Our client is seeking a dedicated IT Security Engineer to enhance their team. This organization prioritizes collaborative efforts and mutual respect...


  • Munich, Bayern, Deutschland commercetools Vollzeit

    About the Role:We are seeking a highly skilled Principal Security Architect to join our team at commercetools. As a key member of our tech leadership team, you will play a critical role in shaping our security architecture and driving the adoption of secure practices across the organization.Key Responsibilities:Create and maintain a comprehensive security...


  • Munich, Bayern, Deutschland commercetools Vollzeit

    About the Role:We are seeking a highly skilled Principal Security Architect to join our team at commercetools. As a key member of our tech leadership team, you will play a critical role in shaping our security architecture and driving the adoption of secure practices across the organization.Key Responsibilities:Create and maintain a comprehensive security...


  • Munich, Bayern, Deutschland Myra Security GmbH Vollzeit

    Position OverviewMyra Security GmbH is seeking a Senior Network Engineer to enhance our network operations. This position focuses on the development, optimization, and upkeep of our extensive global network infrastructure.Key ResponsibilitiesEstablish and maintain monitoring systems to ensure network reliability.Participate in on-call rotations to address...