Security Engineer (f/m/d)

1&1 IONOS SE

Berlin

Hybrid

EUR 90.000 - 130.000

Vollzeit

Vor 3 Tagen
Sei unter den ersten Bewerbenden
Bewerbungsgenerator

Mach aus dieser Rolle ein Bewerbungsgespräch — ein Lebenslauf und ein Anschreiben, die genau auf das zugeschnitten sind, was dieser Arbeitgeber sucht.

Schaffe es an den ATS-Filtern vorbei

Benefits dieser Stelle

Hybrid working model
Home office option
Subsidized canteen
Good transport connections
Employee discounts
Employee events
Training and development opportunities
Health offers

Zusammenfassung

1&1 IONOS SE in Berlin seeks a senior security professional to embed secure practices across design, development, and operations. You translate requirements into resilient concepts, verify effectiveness, and lead risk-based reviews with cross-functional teams in a multinational environment.

The role focuses on secure SDLC, IAM concepts, vulnerability management, and automated evidence collection within CI/CD pipelines, requiring fluent German and English communication.

Qualifikationen

  • Well-founded, multi-year practitioner’s experience with standardised management systems and certifications, attestations in the cyber security area.
  • Experience with two or more certified scopes according to ISO 27001, IT-Grundschutz, BSI C5.
  • Experience in a technical organisation delivering security products.
  • Ability to structure documentation efficiently while maintaining quality.
  • Fluent in English and German for international and internal interfaces.

Aufgaben

  • Drive the evolution of our Secure SDLC side-by-side with our dev teams.
  • Lead Threat Modeling and architecture reviews – catching risks early in the design phase.
  • Design robust IAM concepts and define clear cryptographic standards and baselines.
  • Take charge of vulnerability and pentest management: scanning, CVSS scoring, prioritizing, and tracking remediations.
  • Specify requirements for logging, monitoring, and error handling, and review their implementation across the board.
  • Design and evaluate technical Business Continuity and disaster recovery tests.
  • Automate compliance and evidence collection directly within the teams' CI/CD pipelines.

Kenntnisse

ISO 27001
IT-Grundschutz
BSI C5
Threat modeling
Security architecture
CI/CD security
Documentation
English (C1)

Jobbeschreibung

Tasks

For us, security isn't an afterthought or a checkbox exercise – it's built right into our DNA. We integrate security exactly where it matters most: into our architectures, pipelines, and operational concepts. Compliance evidence is generated naturally from our day-to-day operations, not from stressful last-minute audit prep. We are looking for someone who can translate security requirements into resilient technical concepts and actively verify their effectiveness.

Tasks
  • Drive the evolution of our Secure SDLC side-by-side with our dev teams.
  • Lead Threat Modeling and architecture reviews – catching risks early in the design phase, not right before a release.
  • Design robust IAM concepts (role models, permission logic, recertification) and define clear cryptographic standards and baselines.
  • Take charge of vulnerability and pentest management: scanning, CVSS scoring, prioritizing, and tracking remediations.
  • Specify requirements for logging, monitoring, and error handling, and review their implementation across the board.
  • Design and evaluate technical Business Continuity (BC) and disaster recovery tests.
  • Automate compliance and evidence collection directly within the teams' CI/CD pipelines.
Qualifications
  • Well-founded, multi-year practitioner’s experience with standardised management systems and certifications, attestations in the cyber security area.
  • You have practical experience from two or more certified scopes according to ISO 27001, IT-Grundschutz, BSI C5. More ISO management system experience from privacy standards comes as a plus.
  • You have multi-year experience with above standards and certifications in a technical organisation, as in the company offers technical products.
  • You are burning for modern tool supported, efficient integration of management systems and certification activities into the daily routine of an organisation.
  • You love technology, you do not shy away from documentation but would like to structure it as efficiently as possible.
  • You convince through your confident and communicative character when achieving goal oriented results with your international and internal interfaces.
  • You proficiently lead discussions in English (CEFR C1 or higher). Completely fluent German (C1 CEFR level is a must).
Nice to Have
  • Deep conceptual knowledge of IAM (Role/Permission models, SSO, Federation, PAM, recertification logic).
  • Practical experience with applied cryptography (TLS, PKI, Key Management, HSM).
  • Familiarity with major frameworks (ISO/IEC 27001 Annex A, BSI IT-Grundschutz, OWASP ASVS & Top 10, CIS Benchmarks, NIST CSF).
  • Experience with Policy as Code and Continuous Compliance.
  • An understanding of audit logic and how to collaborate smoothly with external auditors.
Benefits
  • Hybrid working model with home office option.
  • Flexible working hours through trust-based working hours.
  • At some locations a subsidized canteen and various free drinks.
  • Modern office space with very good transport connections.
  • Various employee discounts for activities and products.
  • Employee events such as summer and winter parties, as well as workshops.
  • N+ numerous training and development opportunities.
  • Various health offers, such as sports and health courses.
Hol dir deinen kostenlosen, vertraulichen Lebenslauf-Check.

oder ziehe deine Datei hierhin.

Similar jobs

Ähnliche Jobs, die dir auch gefallen könnten

Security Engineer (f/m/d)
Security Engineer (f/m/d)

IONOS Group • Berlin

Hybrid
EUR 90.000 - 130.000
Hybrid working model
Flexible hours
Canteen subsidy
+3
Security Engineer (w/m/d)
Security Engineer (w/m/d)

1&1 IONOS SE • Berlin

Hybrid
EUR 90.000 - 130.000
Hybrides Arbeitsmodell
Flexible Arbeitszeiten
Bezug Kantine (Standortabhängig)
+4
Staff Cyber Security (f/m/d)
Staff Cyber Security (f/m/d)

IONOS Group • Berlin

Hybrid
EUR 70.000 - 110.000
Hybrid working model
Flexible working hours
Canteen subsidy
+4
Staff Cyber Security (f/m/d)
Staff Cyber Security (f/m/d)

IONOS Group • Karlsruhe

Hybrid
EUR 70.000 - 110.000
Hybrid working model
Flexible working hours
Canteen at some locations
+2
IT Security & Infrastructure Specialist (m/w/d)
IT Security & Infrastructure Specialist (m/w/d)

G&S IT Group GmbH • Osnabrück

Hybrid
Confidential
Unbefristeter Arbeitsvertrag
Private Unfallversicherung
Betriebliche Altersvorsorge
+1
Security Engineer (all genders)
Security Engineer (all genders)

XITASO • Bayern

Hybrid
EUR 58.000 - 68.000
JobRad
Betreuungskosten-Zuschuss (bis zu 250€
Kinderkrankentage Lohnfortzahlung
+1
Cyber Security Engineer (m/f/d)
Cyber Security Engineer (m/f/d)

Nexa Global • Frankfurt

Vor Ort
EUR 50.000 - 70.000
30 days of annual leave
Hybrid working
Training opportunities
+3
Information Security Officer (m/f/d)
Information Security Officer (m/f/d)

Idealworks • München

Vor Ort
EUR 70.000 - 110.000
Hybrid working model
30 vacation days
Bonus scheme
+4
Senior IT Security Consultant (m/f/d) new
Senior IT Security Consultant (m/f/d) new

beON consult GmbH • Kiel

Vor Ort
EUR 60.000 - 90.000
Attractive financial compensation
Comprehensive development opportunities
Healthy work-life balance
+2
IT Security Engineer (m/f/d)
IT Security Engineer (m/f/d)

Quantum Systems • München

Vor Ort
EUR 60.000 - 75.000
Company pension scheme
Flexible working hours
Mobile Work
+6