Product Security Expert
Vor 7 Tagen
Electrify your career
We believe the future of mobility is electric. With the backing of BMW Group, Mercedes-Benz Mobility AG & bp we are one of the leading global drivers of the change to e-mobility. DCS was founded on a simple idea: charging an EV should be as easy as it gets. Together, we are developing digital solutions that help connect the drivers with a broad network of charging stations and thereby enable our users a seamless charging experience.
Make an impact by
Reporting directly to our ISO, you will be our key player when it comes to fostering DCS' Information Security and helping us scale it to the next level. A strong focus of the role will be building security into the development lifecycle and decreasing the number of vulnerabilities deployed to production.
- Secure all steps in the software development life cycle holistically
- Define secure coding guidelines as part of security requirements and implement them in CI/CD
- Ensure fast feedback on security requirements to the software developers by running security checks in an automated cycle within the CI/CD pipeline
- Working in alignment with software engineering leadership to steer effort for security fixing and make it a positive experience for software engineers
- Monitor and report on potential vulnerabilities with automated ticket creation to provide fixing from within the teams
- Conduct secure coding awareness training and sharing of best practices
- Develop threat models and attack trees for the applications in DCS
- Conduct / setup of penetration tests across all applications including web and mobile (android/iOS) applications in DCS and track findings for remediation
- Assist ISO to ensure compliance to current standards e.g. ISO27001, TISAX and GDPR
- Attack modelling and red teaming
Your profile
- A degree in Computer Science or relevant experience
- 3-5 years of experience to secure the delivery and operations of SaaS offering on public clouds and Penetration Testing.
- Professional knowledge and practical experience to secure the software delivery process including the ability to test applications for security flaws
- Knowledge of OWASP Top 10 Security risks
- Practical knowledge of security tools for automated software testing within CI/CD pipeline
- Strong communication skills towards software engineers and ability to motivate teams to increase their capability to build security by design
- Strong understanding of one of the programming languages Java, swift
- Certifications OSCP, OSWE, CRTP, or similar
We offer
- A unique opportunity combining the energy of a scale up with the power of BMW, Mercedes Benz Mobility & bp
- Working on products & services with a high social impact
- An international team of talented people who love what they do and live a collaborative spirit
- An open minded culture with room for growth and the freedom to bring in own ideas
- Subsidized gym membership
- Subsidized office lunch benefit
- Personal development budget for your professional growth
- Monthly mobility budget
- Up to 2 days of home office in a week
- Offsite/ team events & much more and modern, sunny offices in Berlin & Munich
… and of course the classics: delicious coffee & tea, fresh fruits and an office dog friendly environment
At DCS we acknowledge the value of diversity, promote equality and challenge unfair discrimination. We strive to create an inclusive work environment, safe for anyone regardless of their gender identity, sexual orientation, abilities, ethnicity or race. We have the clear goal of driving diversity and inclusion across all dimensions and treat each applicant with the same respect and consideration.
-
Cyber Security Product Manager
vor 21 Stunden
Berlin, Berlin, Deutschland DCSO Deutsche Cyber-Sicherheitsorganisation GmbH VollzeitWer wir sind:Die DCSO Deutsche Cyber-Sicherheitsorganisation ist Kompetenzzentrum und Managed Security Service Provider für die europäische Wirtschaft. Wir schützen die Wirtschaft gegen kriminelle Hacker, Wirtschaftsspionage, staatliche Angriffe und Sabotage. Für dieses Ziel kommen unter unserem Dach führende deutsche Unternehmen, DCSO Experten,...
-
Senior Product Security Engineer
vor 2 Wochen
Berlin, Berlin, Deutschland GLS NXT Vollzeit 80.000 € - 120.000 € pro JahrWe're building a new IoT platform from scratch - a connected parcel locker system that blends embedded devices, cloud services, and real-world interactions. Security is at the heart of this mission.As a Senior Product Security Engineer - Device & Cloud, you'll define and drive the security by design approach across both edge devices and cloud infrastructure....
-
information security expert
vor 2 Wochen
Berlin, Berlin, Deutschland Zync Group Vollzeit 80.000 € - 120.000 € pro JahrI'm working with an upcoming bank who are looking to streamline processes to create the most user-friendly experience the world has ever seen Operating across several countries already, they aim to remove all of the stress and complications from people's everyday banking experiences.Looking for an Information Security Expert to look after their GRC and...
-
Berlin, Berlin, Deutschland Volkswagen AG VollzeitWe are CARIAD, the automotive software company of the Volkswagen Group. Our teams build automotive software platforms and digital customer functions for iconic brands like Audi, Volkswagen, and Porsche – supporting the Volkswagen Group in becoming the leading automotive technology company. With CARIDIANS in Germany, the USA, China, Estonia, and India, we...
-
Expert Security Engineer
vor 1 Tag
Berlin, Berlin, Deutschland Jimdo VollzeitAbout JimdoJoin us to help unleash the power of the self-employed and help them thrive Jimdo was founded by three school friends in 2007 in a farmhouse in Northern Germany. Fast forward to today, we're a growing, profitable business with a team of 250+ people from 50 nationalities based in over 15 countries. Our portfolio serves the unique needs of...
-
Senior Security Engineer
Vor 3 Tagen
Berlin, Berlin, Deutschland Clark Germany GmbH VollzeitYour tasksCLARK is one of the world's leading insurtechs. As the first unicorn company from Frankfurt, we're dedicated to building the insurance expert in our customer's pockets to keep for a lifetime. Leveraging cutting-edge technology and intuitive mobile apps, we empower private customers to effortlessly manage, compare, and optimize their insurance...
-
Product Security Engineer
vor 2 Wochen
Berlin, Berlin, Deutschland STARK Vollzeit 60.000 € - 120.000 € pro JahrAbout UsSTARK is a new kind of defence technology company revolutionizing the way autonomous systems are deployed across multiple domains. We design, develop and manufacture high performance unmanned systems that are software-defined, mass-scalable, and cost effective. This provides our operators with a decisive edge in highly contested environments.We're...
-
Senior Product Security Engineer
Vor 5 Tagen
Berlin, Berlin, Deutschland Finoa VollzeitYour missionWe are looking for a Senior Product Security Engineer to enhance our security posture by integrating advanced security tools, implementing Zero-Trust principles, and proactively identifying and mitigating vulnerabilities. This role will play a critical part in ensuring compliance with industry security standards while fostering a culture of...
-
SAP Security Expert
Vor 5 Tagen
Berlin, Berlin, Deutschland Merck VollzeitUnleash your talent in an exciting environment of brillianceBecome part of a visionary team that is redefining the chemical industry with fresh ideas and brilliant, innovative solutions.As part of a market-leading global corporation, we radiate the energy and enthusiasm of a start-up.With a clear focus on high-quality effect pigments for the cosmetics,...
-
Security Consultant
vor 2 Wochen
Berlin, Berlin, Deutschland Mondoo Vollzeit 60.000 € - 120.000 € pro JahrAbout Us:Mondoo is creating security experiences that companies leverage to keep their users and data safe from hackers around the world.As a Security Consultant, you will work in close collaboration with customers to understand their needs, objectives, and challenges. By building strong relationships, the Security Consultant ensures customers are...