Harris DACH logo
Harris DACH

Die Harris-Gruppe ist einer der führenden Anbieter für deutsche und internationale Branchensoftware. Als Teil der kanadischen Constellation Software Inc. (TSX:CSU) weiten Harris Computer Germany GmbH und die zum Konzern gehörenden Unternehmen ihren Marktanteil in der Softwareindustrie konsequent durch organisches Wachstum und strategische Unternehmenszukäufe aus. Die SIV.AG ist Teil der Harris-Gruppe und als einer der führenden Lösungspartner für die deutsche und internationale Energie- und Wasserwirtschaft, gestalten wir die Energie- und Wasserwirtschaft von morgen mit.

Senior Security Engineer

Security EngineerSecurity EngineerFull TimeRemoteSeniorTeam 10,001

Location

DACH

Posted

18 days ago

Salary

0

Seniority

Senior

Job Description

Senior Security Engineer

Harris DACH

Role Description Zur Verstärkung unseres Teams suchen wir einen Senior Security Engineer (w/m/d), der unsere Sicherheitsarchitektur aktiv weiterentwickelt und dazu beiträgt, unsere Infrastruktur, Anwendungen und Cloud-Umgebungen nachhaltig zu schützen. In dieser Rolle arbeitest du eng mit Engineering-Teams zusammen und gestaltest moderne Security-Strategien und -Prozesse. - Entwicklung, Implementierung und kontinuierliche Weiterentwicklung unserer Security-Architektur für Infrastruktur, Anwendungen und Cloud-Umgebungen - Durchführung von Threat Modeling, Security Reviews und Architekturbewertungen für neue und bestehende Systeme - Planung und Durchführung von Penetrationstests sowie Ableitung und Begleitung geeigneter Maßnahmen - Weiterentwicklung unserer Endpoint-Protection- und Vulnerability-Management-Lösungen sowie Aufbau und Optimierung von Security Monitoring (z. B. SIEM) - Absicherung unserer Cloud-Infrastrukturen (Microsoft Azure, Entra ID und AWS) einschließlich Identity & Access Management und Netzwerksicherheit - Analyse, Bearbeitung und Nachbereitung von Security Incidents inklusive Root-Cause-Analysen - Automatisierung von Security-Prozessen sowie Integration von Security in CI/CD-Pipelines ("Security as Code") - Beratung und Unterstützung unserer Entwicklungs- und Infrastrukturteams sowie Mitwirkung bei Compliance- und Audit-Themen (z. B. ISO 27001, SOC 2, DSGVO) - Einsatz moderner KI-/LLM-Tools zur Optimierung von Security-Prozessen und Mitgestaltung eines sicheren KI-Einsatzes im Unternehmen Qualifications - Mehrjährige Berufserfahrung (idealerweise 5+ Jahre) im Bereich IT-Security, Information Security oder Security Engineering - Fundierte Kenntnisse in mindestens einem der Bereiche Cloud Security, Application Security, Network Security oder Security Operations - Erfahrung mit gängigen Security-Standards und Frameworks (z. B. OWASP, MITRE ATT&CK, NIST oder CIS Benchmarks) - Praxiserfahrung mit EDR-Lösungen sowie idealerweise mit Security Monitoring und Vulnerability Management - Gute Kenntnisse in mindestens einer Skript- oder Programmiersprache (z. B. Python, Go oder Bash) zur Automatisierung - Analytische, lösungsorientierte Arbeitsweise sowie die Fähigkeit, technische Risiken verständlich zu kommunizieren - Sehr gute Englischkenntnisse; Deutschkenntnisse sind von Vorteil - Idealerweise Erfahrung mit Cloud-Plattformen, Containern (Docker/Kubernetes), Infrastructure as Code oder DevSecOps sowie relevante Security-Zertifizierungen (z. B. CISSP, OSCP, CCSP oder Security+) Benefits - Flexible Arbeitszeiten und die Möglichkeit zum mobilen Arbeiten - 30 Urlaubstage pro Jahr sowie zusätzlich frei am 24. und 31. Dezember - Unterstützung bei der Gesundheit, unter anderem mit Bikeleasing und einem Programm zur Förderung der mentalen Gesundheit - Monatliche vermögenswirksame Leistungen nach der Probezeit - Förderung der fachlichen und persönlichen Entwicklung mit passenden Weiterbildungsangeboten - Zusätzlich zu attraktiven Mitarbeiterrabatten monatlich einen steuerfreien Sachbezugs-Gutschein in Höhe von 50€

Related Categories

Related Job Pages

More Security Engineer Jobs

Full TimeRemoteTeam 5,001-10,000H1B No Sponsor

• The Cybersecurity Manager – Third-Party Risk Management (TPRM) is responsible for the operational leadership, effectiveness, and continuous maturation of the organization's Third-Party Risk Management program. • Working closely with the Director of TPRM, this role leads a team responsible for vendor risk assessments, contract security reviews, continuous monitoring, remediation governance, and risk reporting activities. • Provide day-to-day leadership, guidance, and oversight for TPRM team members. • Coach, mentor, and develop team members through performance feedback, career development planning, training opportunities, and formal performance evaluations. • Manage team capacity, workload prioritization, resource allocation, and operational challenges to ensure timely delivery of assessments, contract reviews, strategic initiatives, and departmental objectives. • Accountable for team performance, service delivery metrics, quality standards, and achievement of operational goals. • Identify staffing, skillset, and resource needs to support current operations and future program growth. • Foster a culture of accountability, collaboration, innovation, and continuous improvement. • Provide operational oversight and quality assurance for third-party risk assessments, contract security reviews, continuous monitoring activities, and risk evaluations, ensuring consistent application of established methodologies and quality standards. • Own the operational health of the enterprise third-party portfolio by ensuring assessment service levels, continuous monitoring, remediation tracking, and executive visibility objectives are achieved. • Serve as the primary escalation point for complex vendor risk decisions, including risk acceptances, exceptions, compensating controls, remediation plans, and vendor approval recommendations. • Review and approve high-risk assessment findings, risk ratings, remediation recommendations, and exception requests to ensure consistency with enterprise risk standards. • Collaborate with business stakeholders on critical vendor engagements and initiatives.

United States
$118K - $167.7K / year
Job Closed
Highmark Health logo

Principal Information Security Architect – Data Security

Highmark Health

Creating remarkable health experiences, freeing people to be their best.

Full TimeRemoteTeam 10,001+Since 1852H1B Sponsor

• Develop systems and component architectures and APIs that meet the test of time. • Articulate and evangelize architectural principles reciprocally with engineering, architecture and product teams that ensure system components fit securely, are sustainable, and align with company’s business direction. • Analyze and recommend novel technologies, architectural solutions (and associated business cases) to the various technology executives across the company which simultaneously optimize value, risk, spend & design footprints. • Influence enterprise solutions architects and engineers to define, develop, maintain, and communicate the technology and platform strategy, guidelines, and re-usable design patterns to all levels including the Highmark Health executive team. • Work with external and internal engineering teams to provide continuous architecture and design mentorship/leadership and be a source of support that ensures successful product delivery and operational excellence in production, including leadership and support for application development and change management activities. • Establish relationships with key architects and executive technology leadership across the enterprise technology organization and collaborate on promoting architectural standard methodologies. • Collaborate with key internal and external partners such as security, developers, development managers, product and program management and senior technical and business executives to drive the Architecture strategy, reference enterprise architecture documents, functional specifications, designs, and architectural libraries. • Resolve approaches for new areas by quickly investigating and synthesizing the state of the art and available technologies including leading the development of enterprise solutions which meet current and future business requirements. • Take a consultative approach to develop, present and share the value and vision of proposed architectures and solutions to a wide audience. • Promote architecture standard methodologies and mentor key technical people within the Data Product organization. • Champion a culture of innovation in an environment that requires high levels of scalability, security and reliability for our most critical enterprise cloud and 'on premise' applications and infrastructure.

Louisiana + 4 moreAll locations: Louisiana | North Carolina | Maryland | Pennsylvania | Washington
$129.1K - $214.5K / year
Job Closed
HIKINEX logo

Security Consultant

HIKINEX

Design Your Dream Team

ContractRemoteTeam 201-500H1B No Sponsor

• Design and implement security best practices for application modernization and cloud migration initiatives. • Secure ASP.NET Core applications using modern authentication and authorization frameworks. • Configure and manage AWS security services, including IAM, Secrets Manager, Parameter Store, KMS, WAF, GuardDuty, and CloudTrail. • Implement security logging, monitoring, and observability using CloudWatch, OpenTelemetry, and structured logging. • Manage secrets, encryption, and least-privilege access controls across cloud environments. • Conduct security reviews for application and database modernization projects. • Ensure the protection of PHI/PII data through secure cloud architecture and security best practices. • Collaborate with development, infrastructure, and project teams to ensure compliance with security standards and regulatory requirements.

Maryland
Job Closed
Anomali logo

Senior Account Executive, SIEM, Security Analytics

Anomali

Intelligence-Driven Extended Detection and Response (XDR)

Full TimeRemoteTeam 201-500Since 2013H1B Sponsor

• This position will focus on full life cycle field sales and enterprise account development/expansion in the Ohio Valley region, based in Michigan.

Michigan