Ähnliche Jobs

Security and Compliance Engineer (m/f/d) - Developer Platform

Security and Compliance Engineer (m/f/d) - Developer Platform

Security and Compliance Engineer (m/f/d) - Developer Platform

Security and Compliance Engineer (m/f/d) - Developer Platform

secunet Security Networks AG Jobportal

IT-Sicherheit

Hamburg

  • Art der Beschäftigung: Vollzeit
  • 73.500 € – 93.500 € (von XING geschätzt)
  • Hybrid
  • Zu den Ersten gehören

Security and Compliance Engineer (m/f/d) - Developer Platform

Über diesen Job

Security and Compliance Engineer (m/f/d) - Developer Platform

Your Mission

We're building a modern Internal Developer Platform (IDP) to enable secure, scalable, and efficient software delivery — and security & compliance is a first-class concern from day one.

As Security and Compliance Engineer in our Platform team, you'll be responsible for designing, implementing, and evolving the security architecture of our IDP. Your focus will be on embedding security into the entire Software Development Lifecycle (SSDLC), enabling secure-by-default development practices, and advancing our Zero Trust approach across infrastructure, tooling, and pipelines.

You’ll collaborate closely with platform, infrastructure, compliance and application teams to ensure that security and regulatory is not a bottleneck — but an enabler for safe, fast, and autonomous development.

Our Stack & Environment

We’re building a secure, reproducible, and developer-friendly platform based on:

Nix / NixOS – declarative, reproducible system configuration
Rust – used for backend tooling
Terraform – Infrastructure as Code
GitLab – CI/CD and code lifecycle management
OpenStack + Kubernetes + GitOps – our runtime and delivery foundation
OpenTelemetry + Grafana Stack (LGTM) – observability
Policy-as-code, Secrets Automation, and Security-as-Code everywhere

What You'll Do

  • Design and implement security architecture for our Internal Developer Platform
  • Drive adoption of Zero Trust principles across platform components, networks, identities, and services
  • Embed security and compliance into the SSDLC: from code scanning, SBOM generation, and policy-as-code, to runtime and product hardening
  • Develop and enforce security automation, compliance checks, and guardrails as part of CI/CD pipelines and infrastructure-as-code
  • Support the implementation of fine-grained IAM, secrets management, and secure service-to-service communication
  • Collaborate with developers and platform engineers to design secure golden paths and self-service tooling
  • Define, track, and report on key security metrics, risk levels, and compliance posture
  • Stay on top of emerging threats, vulnerabilities, and security best practices — and translate them into actionable improvements

What You Bring

  • Several years of experience in Security Engineering, Platform Security & Compliance, or DevSecOps
  • Strong understanding of cloud-native architectures, container security, and security automation as well as regulatory requirements
  • Hands-on experience with CI/CD pipelines, infrastructure-as-code, and Kubernetes security
  • Familiarity with Zero Trust Architecture, including identity-based access, service mesh, and network segmentation
  • Hands-on experience with tools such as Policy-as-code engines (e.g. OPA/Gatekeeper, Conftest)
  • Knowledge of modern software supply chain security — e.g., SBOMs, SLSA, Sigstore, SAST/DAST
  • Experience with secrets management (Vault, Sealed Secrets, External Secrets), policy engines (OPA/Gatekeeper), and observability tooling
  • Coding/scripting ability in Python, Go, or Rust is a plus
  • Clear communication skills and a collaborative mindset — you can work across teams and disciplines

What We Offer

  • A unique opportunity to shape platform security from the ground up
  • Full ownership and real impact in a technically ambitious environment
  • A strong focus on automation, reproducibility, and secure-by-default engineering
  • Collaboration with experienced platform and product engineers
  • Remote work options, flexible hours, and modern tools

Get in touch with us

secunet Security Networks AG

Phone: +49 201 5454-0

If you are keen to work for a leading company of cyber security in a fair and trusting environment you should immediately get in touch with us. We're looking forward to your application containing your notice period, your salary expectations as well as the job ID 3328/F.

Gehalts-Prognose

Unternehmens-Details

company logo

secunet Security Networks AG Jobportal

IT-Sicherheit

1.001-5.000 Mitarbeitende

Essen, Deutschland

Ähnliche Jobs

Information Security & Business Continuity Manager (m/w/d)

Amadeus Fire AG

Hamburg + 0 weitere

75.000 €85.000 €

Information Security & Business Continuity Manager (m/w/d)

Hamburg + 0 weitere

Amadeus Fire AG

75.000 €85.000 €

Cyber Security Engineer (m/w/d) | Hamburg

ADVERGY GmbH

Hamburg + 0 weitere

70.000 €100.000 €

Neu · 

Cyber Security Engineer (m/w/d) | Hamburg

Hamburg + 0 weitere

ADVERGY GmbH

70.000 €100.000 €

Neu · 

Cloud Security Engineer (m/w/d) | bis 95.000€ | Hamburg

Franklin Fitch Limited

Hamburg + 0 weitere

70.000 €95.000 €

Cloud Security Engineer (m/w/d) | bis 95.000€ | Hamburg

Hamburg + 0 weitere

Franklin Fitch Limited

70.000 €95.000 €

Cyber Security Consultant | ISMS, ISO 27001, BSI IT-Grundschutz, Datenschutz | 60% Home Office (mwd)

Vesterling AG

Hamburg + 0 weitere

Cyber Security Consultant | ISMS, ISO 27001, BSI IT-Grundschutz, Datenschutz | 60% Home Office (mwd)

Hamburg + 0 weitere

Vesterling AG

Cyber-Security-Entwickler (m/w/ d) - bis 6000 Euro

Tech Staff Solutions Heidelberg GmbH

Hamburg + 0 weitere

42.000 €70.980 €

Neu · 

Cyber-Security-Entwickler (m/w/ d) - bis 6000 Euro

Hamburg + 0 weitere

Tech Staff Solutions Heidelberg GmbH

42.000 €70.980 €

Neu · 

Consultant Informationssicherheit / Datenschutz | ISMS, ISO 27001, BSI IT-Grundschutz | 60% HO (mwd)

Vesterling AG

Hamburg + 0 weitere

64.500 €86.000 €

Consultant Informationssicherheit / Datenschutz | ISMS, ISO 27001, BSI IT-Grundschutz | 60% HO (mwd)

Hamburg + 0 weitere

Vesterling AG

64.500 €86.000 €

Koordinator ISMS / BCM | Weiterentwicklung | Inhouse, 40% Home Office, Teilzeit möglich (mwd)

Vesterling AG

Hamburg + 0 weitere

59.999 €65.000 €

Koordinator ISMS / BCM | Weiterentwicklung | Inhouse, 40% Home Office, Teilzeit möglich (mwd)

Hamburg + 0 weitere

Vesterling AG

59.999 €65.000 €

Incident Response Lead

Xcede

Hamburg + 0 weitere

73.500 €106.500 €

Incident Response Lead

Hamburg + 0 weitere

Xcede

73.500 €106.500 €

Management Business Information Security Expert (m/w/d)

Hays Professional Solutions GmbH

Hamburg + 0 weitere

69.500 €97.500 €

Management Business Information Security Expert (m/w/d)

Hamburg + 0 weitere

Hays Professional Solutions GmbH

69.500 €97.500 €