Lead Security Engineer (m/w/d)

Recare

Deutschland

Hybrid

EUR 90.000 - 130.000

Vollzeit

vor 42 Stunden
Sei unter den ersten Bewerbenden
Bewerbungsgenerator

Hebe dich für diese Rolle von der Masse ab — erstelle in etwa einer Minute einen maßgeschneiderten Lebenslauf und ein Anschreiben.

Schaffe es an den ATS-Filtern vorbei

Zusammenfassung

Recare is seeking a Lead Security Engineer (m/w/d) in Germany to build and own our security program from the ground up. You’ll work with the Director of Technology to design controls, conduct audits, and drive a robust security posture across our AI-enabled healthtech platforms.

The role emphasizes hands-on security engineering, vulnerability management, and close collaboration with engineering and product teams. German language skills are a plus as we serve German hospitals and providers.

Qualifikationen

  • 6+ years of security engineering experience across software and security
  • Experience leading ISO 27001, C5, or SOC 2 certification cycles
  • Proven ability to implement vulnerability management in real environments
  • Strong English communication with engineers and auditors

Aufgaben

  • Vulnerability management: run scanners and dependency updates; close findings
  • Partner to Platform: review security-sensitive infra decisions and explore options like customer-managed keys or HSMs
  • Certifications: design controls and assessments for ISO 27001 and C5; prepare for audits
  • Customer security: provide reusable docs, evidence, and AI-assisted questionnaires for enterprise deals
  • Incident response: develop runbooks and on-call design; lead during incidents
  • Company-wide security: monitor threat landscape; translate findings into concrete actions for IT baselines

Kenntnisse

Security engineering
ISO 27001
C5
Vulnerability management
AI security
English communication

Tools

Vulnerability scanners

Jobbeschreibung

About Recare

As one of the leading German HealthTech companies, we are reshaping discharge management – technology-driven, patient-centered, and free from bureaucracy. In addition to our market-leading SaaS platform, we develop AI solutions that radically simplify processes in hospitals and for aftercare providers, relieve healthcare professionals, and refocus attention on patients. Today, we already connect two-thirds of all German hospitals with over 650 rehabilitation clinics and 25,000 nursing and homecare providers. With currently around 120 employees from a broad range of nations, we continue to grow – and we're now going far beyond our core business, aiming to eliminate bureaucracy and admin in hospitals with a whole portfolio of AI products.

About Recare

As one of the leading German HealthTech companies, we are reshaping discharge management – technology-driven, patient-centered, and free from bureaucracy. In addition to our market-leading SaaS platform, we develop AI solutions that radically simplify processes in hospitals and for aftercare providers, relieve healthcare professionals, and refocus attention on patients. Today, we already connect two-thirds of all German hospitals with over 650 rehabilitation clinics and 25,000 nursing and homecare providers. With currently around 120 employees from a broad range of nations, we continue to grow – and we're now going far beyond our core business, aiming to eliminate bureaucracy and admin in hospitals with a whole portfolio of AI products.

What to expect as our Lead Security Engineer (m/w/d)
  • Purposeful work – your role will have a positive impact on patients, their families, and healthcare professionals.
  • Company culture – we believe in flat hierarchies that promote high performance and strong team dynamics. We foster an environment characterized by mutual respect, loyalty, and recognition. Together, we strive for our goals – and expect the same from you.
  • Flexibility – want to pick up your child from daycare? Like to exercise during lunch? We'll support you. We are a remote-friendly company offering flexible working hours. Workations are also possible by arrangement.
  • Edenred card – which you can use according to your needs.
  • Extra vacation day – so you can celebrate your birthday with your loved ones, you'll have the day off.
In this role, you can make an impact and grow with us as Lead Security Engineer (m/w/d)

You’ll be our first dedicated security engineer: a senior IC with no team at the start. You join as Deputy CISO, report to our Director of Technology (currently acting CISO), and build security engineering from scratch. The baseline is already in place – ISO 27001, C5 Type II, regular penetration tests, and encryption in the product. AI is adding new surfaces: voice documentation, document generation, and agentic workflows. You build and own the security program, the tooling, and the security story we tell customers.

  • Vulnerability management – scanners and dependency updates across repos, plus the process that gets findings closed.
  • Partner to Platform – review security-sensitive infrastructure decisions and explore options like customer-managed keys or HSMs. Platform still owns architecture.
  • Certifications, technical side – control design and assessments for our ISO 27001 and C5 setup, the security case for a potential upcoming Class IIa medical device (MDR), and pentest scoping and follow-up, with regulation like the EU Cyber Resilience Act on the horizon. This is roughly a quarter to a third of the role, and we say it openly: for the right person in healthcare security, it's a draw, not a chore.
  • Customer security – reusable docs, evidence, and AI-assisted questionnaires, so the tenth enterprise deal costs a fraction of the first. You join the call when a hospital CISO asks something new about our AI architecture.
  • Incident response – process, runbooks, and escalation, and you lead when it's real. We're too small for a SOC, so you design on-call that fits a company our size. Product incidents and platform bugs have their own owners in engineering.
  • Company-wide security – watch the threat landscape, turn this week's supply-chain mess into concrete actions, and set the baselines IT applies to devices and accounts.
How we work
  • AI-native – our engineers use coding agents every day. Security should too: scanning, evidence, questionnaires.
  • AI is also our attack surface – agent sandboxing, prompt injection, voice data, computer-use automation inside hospitals. We deal with security questions most companies will only meet in a few years.
  • Human-in-the-loop by default – this is healthcare: AI proposes, people stay in control.
  • Ship and observe – we ship continuously and debug from telemetry, including in the open when that's the fastest path.
Here’s how we picture you as our Lead Security Engineer (m/w/d)
  • You’re a hands-on security engineer with 6+ years across software and security engineering, and you can point to a security program (or a big part of one) you’ve owned.
  • You’ve been the technical counterpart through at least one ISO 27001, C5, or SOC 2 certification cycle: you’ve designed controls, faced an auditor, and written the technical side of a Statement of Applicability. This is a hard requirement.
  • You’ve run vulnerability management somewhere real: scanners, dependency bots, triage, and the follow-through that gets things fixed.
  • You follow the security scene closely (podcasts, advisories, incident write-ups) and usually have an opinion on this week’s incident before it reaches the news.
  • You’re genuinely curious about AI security – both securing AI systems (agents, sandboxing, data flows) and using AI tooling to work at leverage.
  • You can talk to engineers, auditors, and hospital security teams in English without a slide deck translating for you.
Nice to have
  • German language skills, since our customers and the C5 world are German-speaking.
  • Experience in healthcare or another regulated domain.
  • Offensive security experience.
  • Security certifications such as OSCP, CISSP, or similar.
Hol dir deinen kostenlosen, vertraulichen Lebenslauf-Check.

oder ziehe deine Datei hierhin.

Similar jobs

Ähnliche Jobs, die dir auch gefallen könnten

Lead Security Engineer (m/w/d) arbeitnow Recare Deutschland GmbH Remote job · 9/25/2026
Lead Security Engineer (m/w/d) arbeitnow Recare Deutschland GmbH Remote job · 9/25/2026

Primetime • Deutschland

Hybrid
EUR 90.000 - 130.000
Edenred card
Extra vacation day
Lead Security Engineer (m/w/d)
Lead Security Engineer (m/w/d)

Recare Deutschland GmbH • Berlin

Hybrid
EUR 90.000 - 130.000
Remote-friendly
Flexible hours
Edenred card
+2
Lead Security Consultant (m/fd)
Lead Security Consultant (m/fd)

Security Research Labs • Berlin

Vor Ort
EUR 70.000 - 90.000
Annual company retreat
Professional development budget
30 days vacation
+2
Senior Security Engineer (m/f/d)
Senior Security Engineer (m/f/d)

Yoummday GmbH • München

Vor Ort
EUR 90.000 - 130.000
30 days vacation
Job lunch allowance (€69/mo)
Givve card (€50/mo)
+5
Information Security Lead (m/f/d)
Information Security Lead (m/f/d)

TeleClinic • München

Hybrid
EUR 90.000 - 130.000
Urban Sports Club
LinkedIn Learning / Reforge
Jobrad & Finn.auto mobility discounts
+5
IT Security Engineer (m/w/d)
IT Security Engineer (m/w/d)

NVision Quantum Technologies • Ulm

Vor Ort
EUR 60.000 - 80.000
Competitive base salary
Stock options
30 vacation days
+3
Cybersecurity (Senior) Software Engineer (m/w/d)
Cybersecurity (Senior) Software Engineer (m/w/d)

Cyber StrategiX • München

Hybrid
EUR 70.000 - 110.000
Team culture
Ownership from day one
Career development paths
+3
Tech Lead, Agent Frontend - AI-Driven Frontend Architect
Tech Lead, Agent Frontend - AI-Driven Frontend Architect

Recare • Deutschland

Vor Ort
USD 110.000 - 140.000
Flexible working hours
Extra vacation days
Edenred card
+1
Head of IT and InfoSec
Head of IT and InfoSec

Clutch Canada • München

Vor Ort
EUR 90.000 - 130.000
Competitive compensation
Security Engineer (m/f/d)
Security Engineer (m/f/d)

Security Research Labs • Berlin

Hybrid
EUR 55.000 - 90.000
Gym discounts
Public transport pass
German lessons
+5