Dein persönlicher KI-Karriere-Agent
End-to-end product and cloud security for a B2B SaaS construction platform, including threat modeling and CI/CD tooling. 7+ years security engineering experience required. Employee stock option program, €1,000 annual development budget.
Deine Match-Analyse
Warum dieser Job zu dir passt
Mögliche Lücken
Tipps für deine Bewerbung
Anforderungen
- 7+ years security engineering experience
- Track record building security programs (SDLC, vulnerability management, detection/response)
- Expert understanding of vulnerability classes and attack techniques beyond OWASP Top 10
- Deep experience hardening cloud infrastructure (AWS ideally, GCP/Azure fine)
- Strong software engineering skills
- Proven incident response leadership
- Practical ownership of corporate IT security
- Judgment for risk-based calls under ambiguity
- Excellent English
- Willingness to be on-site 3 days per week
- Experience building security function in scale-up (nice to have)
- Detection engineering experience (nice to have)
- ISO 27001 / SOC 2 certification experience (nice to have)
- OSCP or CISSP certifications (valued, hands-on skills matter more)
Aufgaben
- Own product and cloud security end-to-end, including threat modeling, security reviews, and secure-by-default patterns
- Manage tooling in CI/CD pipelines for SAST, dependency and container scanning, and secret detection
- Harden AWS infrastructure, including IAM architecture, network segmentation, encryption, and logging
- Encode infrastructure baselines as policy-as-code
- Build detection and response capabilities from the ground up
- Lead technical response during security incidents, from detection through containment to post-incident review
- Own vulnerability disclosure and pentest programs
- Drive vulnerability remediation with product teams
- Manage security of the internal IT landscape, including endpoints (MDM/EDR) and identity stack (SSO, MFA, least privilege)
- Secure office networks in Munich and Berlin
- Support compliance work (ISO 27001, SOC 2, GDPR) with technical controls and evidence
- Support customer security reviews with Sales
- Shape the direction of security at Capmo as a hands-on senior individual contributor
- Build engineer-adopted guardrails
Berufserfahrung
Ausbildung
Sprachen
Tools & Technologien
Benefits
- Employee stock option program (VSOP)
- Annual development budget of €1,000
- Mobility budget
- Two Development Days
- EGYM Wellpass (gym/pool access)
- Lunch subsidy
- Company pension plan contribution
- Limitless growth opportunities
- Culture Day Off
Von Nejo automatisch aufbereitet
Nejo hat diesen Job automatisch von der Website des Unternehmens Capmo erfasst und die Informationen auf Nejo mit Hilfe von KI für dich aufbereitet. Trotz sorgfältiger Analyse können einzelne Informationen unvollständig oder ungenau sein. Bitte prüfe immer alle Angaben in der Originalanzeige! Inhalte und Urheberrechte der Originalanzeige liegen beim ausschreibenden Unternehmen.
Zur Originalanzeige bei CapmoÜber das Unternehmen
Das Unternehmen ist ein führender B2B SaaS Anbieter für Bauprojektmanagement und hilft Bau- und Immobilienunternehmen, Projekte digital abzuwickeln.
Nejo bewertet ihn, und bringt ihn danach gemeinsam mit dir in Bestform.
Noch nicht perfekt?
- FINNEngineering Manager - Cloud & Security (m/w/x)Vollzeitmit HomeofficeSeniorMünchen
- Checkmk GmbHDevSecOps Cloud Security (m/w/x)Vollzeit/Teilzeitmit HomeofficeSeniorMünchen
- VoiceLineInfrastructure & Security Engineer (m/w/x)Vollzeitmit HomeofficeBerufserfahrenMünchen
- NavVisSenior Security Analyst (m/w/x)Vollzeitmit HomeofficeSeniorMünchen
- commercetoolsPrincipal Engineer, Product Security (m/w/x)Vollzeitmit HomeofficeSeniorMünchen, Berlin