Application Security Lead
vor 3 Wochen
About METRO
At METRO, we are a leading international food wholesaler, catering to the needs of hotels, restaurants, caterers, and independent merchants. With approximately 15 million customers worldwide, our unique multichannel mix offers flexibility in purchasing goods in-store or via our digitally connected Food Service Distribution (FSD) delivery. We continuously expand our international online marketplace, METRO MARKETS, to meet the needs of our professional customers. Our commitment to sustainability is reflected in our actions and listings in various sustainability indices and rankings.
Job Description
We are seeking a highly skilled Application Security Lead to define security requirements for our cloud platforms based on industry standards and regulations. This role will own knowledge of common security threats, security controls, and associated technologies and practices related to securing IaaS, PaaS, and SaaS cloud platforms, cloud services, and associated IT resources based on cloud technologies.
Your Responsibilities
- Contribute to develop relevant guidelines and standards related to application security, cryptography management, and software development.
- Ensure that each step of the software development lifecycle (SDLC) used by software engineers across METRO follows best practices in terms of information security and data privacy.
- Develop and maintain technologies and processes to be included in continuous software development processes (CI/CD pipelines) to secure security control validations during development and deployment phases.
- Support software engineer teams across METRO to address identified software vulnerabilities and weaknesses.
- Support cyberdefense and software engineer teams in case of identified risks or security alerts related to software or third-party library vulnerabilities.
Requirements
- Bachelor's degree in Cybersecurity, Information Technology, or a related field (or equivalent experience).
- Minimum of 5 years of experience in Application security engineering or DevSecOps.
- Proven experience in defining and implementing Secure-SDLC controls.
- Strong understanding of cloud security best practices and industry standards.
- In-depth knowledge of SAST, SCA, DAST security concepts.
- Experience with CI/CD tools.
- Experience with cloud security tools and technologies.
- Excellent communication, collaboration, and problem-solving skills.
- Experience with bug bounty programs.
- Ability to work independently and as part of a team.
What We Offer
- Part of a fast-growing international team with significant scaling ambitions across multiple markets.
- Work-Life Balance: Trusted working hours, 30 days of vacation, and home office options.
- Further training: A comprehensive further training offer and an own annual training budget.
- Well-being: Health programs, a free fitness studio, and regular employee events.
- Comfort: Very good public transport connections and free parking spaces with charging facilities for e-mobility.
Please note that all job opportunities at METRO AG require that you live in/move to Germany and can be in office in Düsseldorf at least 2 times per week. We don't offer 100% remote opportunities.
-
Application Security Lead
vor 4 Wochen
Düsseldorf, Nordrhein-Westfalen, Deutschland METROMAKRO VollzeitTransform Cybersecurity Capabilities at METROAs a leading international food wholesaler, METRO is committed to delivering exceptional customer experiences while ensuring the highest level of security and data protection. We are seeking a highly skilled Application Security Lead to join our team and drive the development of our cybersecurity...
-
Application Security Lead
vor 4 Wochen
Düsseldorf, Nordrhein-Westfalen, Deutschland METROMAKRO VollzeitTransform Cybersecurity Capabilities at METROAs a leading international food wholesaler, METRO is committed to delivering exceptional customer experiences while ensuring the highest level of security and data protection. We are seeking a highly skilled Application Security Lead to join our team and drive the development of our cybersecurity...
-
Application Security Lead
vor 3 Wochen
Düsseldorf, Nordrhein-Westfalen, Deutschland METROMAKRO VollzeitAbout METROMETRO is a leading international food wholesaler with a strong commitment to sustainability. We cater to the needs of hotels, restaurants, caterers, and independent merchants, with a unique multichannel mix that offers flexibility and convenience. Our goal is to become the cyber-resilient omni-channel wholesaler, and we're looking for a talented...
-
Application Security Lead
vor 4 Wochen
Düsseldorf, Nordrhein-Westfalen, Deutschland METROMAKRO VollzeitAbout METROMETRO is a leading international food wholesaler with a strong commitment to sustainability. We cater to the needs of hotels, restaurants, caterers, and independent merchants, with a unique multichannel mix that offers flexibility and convenience. Our goal is to become the cyber-resilient omni-channel wholesaler, and we're looking for a talented...
-
Cloud Security Lead
vor 4 Wochen
Düsseldorf, Nordrhein-Westfalen, Deutschland METROMAKRO VollzeitCloud Security LeadAt METRO, we are committed to delivering exceptional customer experiences while ensuring the security and integrity of our cloud-based systems. As a Cloud Security Lead, you will play a critical role in defining and implementing cloud security strategies that align with industry standards and regulations.Key Responsibilities:Develop and...
-
Cloud Security Lead
vor 4 Wochen
Düsseldorf, Nordrhein-Westfalen, Deutschland METROMAKRO VollzeitCloud Security LeadAt METRO, we are committed to delivering exceptional customer experiences while ensuring the security and integrity of our cloud-based systems. As a Cloud Security Lead, you will play a critical role in defining and implementing cloud security strategies that align with industry standards and regulations.Key Responsibilities:Develop and...
-
Cloud Security Lead
vor 3 Wochen
Düsseldorf, Nordrhein-Westfalen, Deutschland METROMAKRO VollzeitAbout METROMETRO is a leading international food wholesaler, catering to the needs of hotels, restaurants, caterers, and independent merchants. With a unique multichannel mix, we offer flexibility in purchasing goods in-store or via our digitally connected Food Service Distribution delivery. Our commitment to sustainability is reflected in our actions and...
-
Cloud Security Lead
vor 4 Wochen
Düsseldorf, Nordrhein-Westfalen, Deutschland METROMAKRO VollzeitAbout the RoleMETRO is seeking a highly skilled Cloud Security Lead to join our team. As a key member of our cybersecurity team, you will be responsible for defining and implementing security requirements for our cloud platforms.Key ResponsibilitiesDevelop and maintain a cloud security governance framework to ensure the secure use of cloud servicesConduct...
-
Cloud Security Lead
vor 3 Wochen
Düsseldorf, Nordrhein-Westfalen, Deutschland METROMAKRO VollzeitAbout METROMETRO is a leading international food wholesaler, catering to the needs of hotels, restaurants, caterers, and independent merchants. With a unique multichannel mix, we offer flexibility in purchasing goods in-store or via our digitally connected Food Service Distribution delivery. Our commitment to sustainability is reflected in our actions and...
-
Cloud Security Lead
vor 3 Wochen
Düsseldorf, Nordrhein-Westfalen, Deutschland METROMAKRO VollzeitAbout METROAs a leading international food wholesaler, METRO is specialized in catering to the needs of hotels, restaurants, caterers, independent merchants, and more. With approximately 15 million customers worldwide, our unique multichannel mix offers the flexibility of purchasing goods in-store or via our digitally connected Food Service Distribution...
-
Cyber Security Incident Response Process Lead
vor 3 Wochen
Düsseldorf, Nordrhein-Westfalen, Deutschland METRO AG VollzeitCyber Security Incident Response Process LeadTransforming cyber security capabilities on a global scale requires a strategic approach to incident response. As a Cyber Security Incident Response Process Lead at METRO AG, you will play a crucial role in developing and strengthening our entire department. Your expertise in incident response will enable us to...
-
Cloud Security Architect
vor 4 Wochen
Düsseldorf, Nordrhein-Westfalen, Deutschland METROMAKRO VollzeitAbout the RoleAt METRO, we are seeking a highly skilled Cloud Security Lead to join our team. As a Cloud Security Lead, you will be responsible for defining the security requirements for our cloud platforms, monitoring their fulfillment, and ensuring compliance with industry standards and regulations.Key ResponsibilitiesDefine a cloud security governance...
-
IT Security Auditor
vor 2 Monaten
Düsseldorf, Nordrhein-Westfalen, Deutschland TÜV TRUST IT Unternehmensgruppe TÜV AUSTRIA VollzeitAbout UsTÜV TRUST IT is part of the TÜV AUSTRIA Group, a global leader with over 2000 professionals across more than 20 countries. We specialize in delivering customized solutions in industrial services, testing, monitoring, cybersecurity, data protection, and insurance services, along with training for professional development.Your RoleWe are seeking a...
-
IT Security Auditor
vor 3 Monaten
Düsseldorf, Nordrhein-Westfalen, Deutschland TÜV TRUST IT Unternehmensgruppe TÜV AUSTRIA VollzeitAbout UsTÜV TRUST IT is part of the TÜV AUSTRIA Group, a global leader with over 2000 professionals across more than 20 countries. We specialize in delivering customized solutions in industrial services, testing, monitoring, cybersecurity, data protection, and insurance services, along with training for professional development.Your RoleWe are seeking a...
-
Network Security Architect
vor 4 Wochen
Düsseldorf, Nordrhein-Westfalen, Deutschland METROMAKRO VollzeitJob DescriptionAt METRO, we are seeking a highly skilled Network & Infrastructure Security Lead to join our team. As a key member of our cybersecurity team, you will be responsible for designing, implementing, and maintaining our IT and Network infrastructure with a focus on security.Your Responsibilities:Plan, architect, and formulate designs for Network &...
-
Network Security Architect
vor 4 Wochen
Düsseldorf, Nordrhein-Westfalen, Deutschland METROMAKRO VollzeitJob DescriptionAt METRO, we are seeking a highly skilled Network & Infrastructure Security Lead to join our team. As a key member of our cybersecurity team, you will be responsible for designing, implementing, and maintaining our IT and Network infrastructure with a focus on security.Your Responsibilities:Plan, architect, and formulate designs for Network &...
-
Senior Security Operations Center Engineer
vor 2 Monaten
Düsseldorf, Nordrhein-Westfalen, Deutschland Stepstone GmbH VollzeitAbout the RoleWe are seeking a highly skilled Senior SOC Engineer to join our team at The Stepstone Group. As a key member of our security operations team, you will be responsible for monitoring, analyzing, and responding to security threats in real-time.Key ResponsibilitiesMonitor and analyze security data from diverse sources, including logs, EDR...
-
Senior Security Operations Center Engineer
vor 2 Monaten
Düsseldorf, Nordrhein-Westfalen, Deutschland Stepstone GmbH VollzeitAbout the RoleWe are seeking a highly skilled Senior SOC Engineer to join our team at The Stepstone Group. As a key member of our security operations team, you will be responsible for monitoring, analyzing, and responding to security threats in real-time.Key ResponsibilitiesMonitor and analyze security data from diverse sources, including logs, EDR...
-
IT Operations Lead
vor 4 Wochen
Düsseldorf, Nordrhein-Westfalen, Deutschland Uniper VollzeitAt Uniper, we are proactively transforming the world of energy while ensuring security of energy supply. Our corporate culture is characterized by equal opportunities, mutual appreciation, and respect. We are looking for a skilled IT Operations Lead to join our diverse, international team of DevOps engineers, architects, and product owners/project...
-
IT Operations Lead
vor 4 Wochen
Düsseldorf, Nordrhein-Westfalen, Deutschland Uniper VollzeitAt Uniper, we are proactively transforming the world of energy while ensuring security of energy supply. Our corporate culture is characterized by equal opportunities, mutual appreciation, and respect. We are looking for a skilled IT Operations Lead to join our diverse, international team of DevOps engineers, architects, and product owners/project...