Senior Security Engineer
vor 1 Tag
About GelatoGelato has created the world’s largest global network for on-demand production of custom products – from t-shirts and mugs to books and wall art. We empower a new generation of ecommerce entrepreneurs to share their creativity worldwide while embracing local, sustainable production. By producing locally and perfectly matching supply with demand, we eliminate waste and reduce carbon emissions. At Gelato, we don’t own production facilities – we build the software that connects them. With over 140 production partners in 32 countries, our network can deliver custom products to five billion people in just 72 hours. It’s smarter, faster, and greener. With GelatoConnect, our SaaS platform, we’re driving innovation in print production. GelatoConnect simplifies operations for print producers by automating procurement, workflows, and logistics into one seamless system. By boosting efficiency and cutting costs, it helps businesses scale to meet market demands. With GelatoConnect, we’re reshaping the print industry to be more efficient, sustainable, and profitable. The position Following our global expansion, we are looking for a passionate Senior Security Engineer to join our effort of protecting Gelato and, most importantly, our customer's data. We are looking for a person who wants to make the Gelato platform safer for millions of users around the world. We’d love to talk to you if you’re a talented individual who is passionate about finding security weaknesses and crafting scalable and usable solutions. We are enablers who make it easier for engineers to create secure-by-design services, not blockers. Reporting directly to the Head of Information Security, you will work closely with Product Managers and Tech Engineers. What you'll be doing Collaborate closely with Product Design and Software Engineering to align with security features, roadmaps and ensure timely delivery. Identify vulnerabilities and develop innovative, scalable solutions to enhance our defense-in-depth strategy. This involves conducting vulnerability scans and penetration testing. Promote a security-conscious culture by educating all Gelato employees on security best practices. Monitor and respond to security incidents, including the regular analysis of potential threats. Identify, document and measure security risk, effectively communicate these risks to senior leadership, and influence remediation plans. Participate in an on-call rotation to provide timely response and escalation for security incidents outside of business hours, ensuring continuous protection and monitoring coverage. Develop, tune, and maintain security monitoring and detection systems (IAM, SIEM, SOAR, WAF, EDR) to identify suspicious activity, anomalies, and potential threats. Manage the full vulnerability management lifecycle, including identification, prioritisation, remediation tracking, and verification of closure. Contribute to security architecture reviews and the design, deployment, and hardening of security controls across infrastructure, cloud, and applications. Introduce automation and orchestration to streamline detection, response, and compliance activities through scripting (Python, PowerShell, Bash). Support governance and compliance activities such as audit preparation, evidence collection, and control testing against frameworks like ISO27001, SOC 2, NIST CSF, and CIS Controls. Hands-on experience designing and implementing secure AWS cloud architectures. Integrate AI and LLM technologies into daily security workflows to automate repetitive analysis, improve threat detection, and support rapid incident response. Who you are A degree (Master’s is a plus) in Computer Science, a similar technical field of study, or equivalent practical experience Broader certification coverage, including CISSP, CISM, GIAC (GCIH, GCIA, GCFA), CCSP, or equivalent advanced credentials. 7+ years of experience in cybersecurity, with at least 3 years in hands-on incident response, detection, or vulnerability management roles. Proven experience with SIEM, WAF, IAM, SOAR, EDR, and vulnerability management tools. Cloud security specialisation, ideally with certifications such as AWS Security Specialty Demonstrated expertise in incident response, including investigation, containment, and coordination across cross-functional teams. Embraces an AI-first mindset, leveraging AI and LLM tools to drive efficiency and innovation in daily work. Strong crisis management and communication skills, able to remain composed under pressure and communicate clearly with both technical and non-technical stakeholders. Good understanding of implementation requirements for ISO27001 and/or SOC2. Strong practical automation and scripting capabilities using Python, PowerShell, or Bash to enhance detection and response efficiency. Experience designing and implementing production services, APIs, or security-specific libraries. Familiarity with cloud solutions, including AWS and GCP, and prior experience with tools like Cloudflare, ELK stack, and Burpsuite Professional, as well as scripting and programming skills, are required. Strong strategic thinking, planning, and organisational skills. Fluency in English with excellent verbal and written communication abilities is a mandatory requirement. What it’s like to work at Gelato We are a customer-obsessed team with the ambition to change the world by connecting technology to the printing industry and making it much more sustainable. Everyone who joins our team must feel genuinely intrigued and motivated by our mission. We expect a lot. We are a driven team with big goals, so we seek individuals who are genuinely passionate about their work and possess an entrepreneurial spirit. Our culture is unique and we live by our values, so it's worth learning more about our culture and how we work before presenting your application. At Gelato, we pride ourselves on our global presence with 14 offices worldwide, fostering a dynamic and diverse work environment. Rooted in a culture that values collaboration, creativity, and camaraderie, we actively cultivate a company culture that thrives on shared experiences. We encourage team members to embrace this culture by working from our inspiring office spaces at least three days a week, allowing for meaningful connections and collective growth. Lastly, we ask that you please upload your CV in English, regardless of which country you are applying from.
-
Senior Cloud Security Engineer
vor 1 Tag
State of Berlin, Deutschland N26 GmbH VollzeitAbout the opportunityAre you passionate about cybersecurity and eager to make a real impact in a dynamic environment? Look no further! We are on the lookout for a Senior Cloud Security Engineer with deep expertise in Data Loss Prevention and Data Security Posture Management within cloud environments, who is ready to take the lead in safeguarding our...
-
Senior Security Engineer
Vor 7 Tagen
Berlin; London, Deutschland Trade Republic Vollzeit 80.000 € - 120.000 € pro JahrPlease note that this position is based in Berlin or London. THE BEST WORK OF YOUR CAREER Trade Republic is the largest savings platform in Europe - we operate in 17 countries, serving +8 million customers who trusted us with over 100B in assets. But we're striving for more.We have a bold mission to empower everyone to build wealth with easy, safe, and...
-
Senior Product Security Engineer
vor 31 Minuten
Berlin, Berlin, Deutschland GLS NXT Vollzeit 80.000 € - 120.000 € pro JahrWe're building a new IoT platform from scratch - a connected parcel locker system that blends embedded devices, cloud services, and real-world interactions. Security is at the heart of this mission.As a Senior Product Security Engineer - Device & Cloud, you'll define and drive the security by design approach across both edge devices and cloud infrastructure....
-
Security Engineer
Vor 5 Tagen
Remote, Altenstadt, München, Berlin, Hamburg, Köln, Deutschland nscon network, security & consulting Vollzeit 60.000 € - 120.000 € pro JahrÜber nscon Bei nscon arbeiten wir in einer der modernsten und wichtigsten Branchen der Gegenwart und Zukunft. Wir lieben, was wir tun – als dynamisches IT-Consulting-Unternehmen mit Spezialisierung auf Netzwerke, Netzwerkautomatisierung und IT-Security. Unsere Beratung ist herstellerunabhängig, unsere Lösungen flexibel und technologisch immer auf...
-
Junior Security Engineer
Vor 6 Tagen
Berlin, Berlin, Deutschland e91e39e1-9418-4ca7-91dd-7a26c873dc8a Vollzeit 40.000 € - 60.000 € pro JahrJunior Security Engineer – Role Description & QualificationsAJunior Security Engineerplays a crucial role in helping organizations protect their IT systems, networks, and data from cyber threats. This entry-level role focuses on supporting the cybersecurity team in implementing security measures, monitoring security systems, and responding to potential...
-
Senior Security Engineer
vor 2 Stunden
Berlin, Berlin, Deutschland Forteil GmbH - bonify Vollzeit 90.000 € - 120.000 € pro JahrAbout usWerde Teil von bonify, Deutschlands führender Plattform für Bonitätsauskünfte und Finanzmanagement.Unsere Mission ist es, die FinTech-Branche zu revolutionieren und Bonität sowie Finanzdaten für unsere Nutzer:innen transparent und zugänglich zu machen. Dafür suchen wir dich als Senior Security Engineer (Corporate Security) in unserem...
-
Senior Cloud Security Engineer
Vor 5 Tagen
Berlin, Deutschland 1GLOBAL Vollzeit1GLOBAL is a technology-driven global mobile communications provider dedicated to empowering enterprises worldwide to unlock the full growth potential of mobile connectivity. With a best-in-class telecom technology platform, a comprehensive suite of globally viable regulatory licenses, and privileged access to the telecom wholesale market, 1GLOBAL is...
-
Junior Security Engineer
vor 1 Woche
Berlin, Berlin, Deutschland e55d3baf-762d-498e-9585-624a3eaffe0b Vollzeit 40.000 € - 60.000 € pro JahrJunior Security Engineer - Role OverviewTheJunior Security Engineeris an entry-level position within the cybersecurity field, responsible for assisting in protecting an organization's systems, networks, and data from security threats. This role offers an opportunity to gain hands-on experience in cybersecurity by working alongside more experienced security...
-
Cyber Security Engineer
vor 1 Stunde
Remote, Altenstadt, München, Berlin, Hamburg, Köln, Deutschland nscon network, security & consulting Vollzeit 80.000 € - 120.000 € pro JahrÜber nscon Bei nscon dreht sich alles um Netzwerke, IT-Security und Automatisierung – technologisch anspruchsvoll, aber immer lösungsorientiert und auf Augenhöhe. Wir sind ein dynamisches IT-Consulting-Unternehmen, das mit Erfahrung, Neugier und echter Teamstärke Projekte bei einigen der größten Unternehmen Deutschlands umsetzt....
-
Senior Product Security Engineer
Vor 5 Tagen
Berlin, Deutschland GLS NXT VollzeitWe’re building a new IoT platform from scratch - a connected parcel locker system that blends embedded devices, cloud services, and real-world interactions. Security is at the heart of this mission. As a Senior Product Security Engineer - Device & Cloud, you’ll define and drive the security by design approach across both edge devices and cloud...