5 hours ago
Remote, Germany +3 moreSenior
Responsibilities
- Lead and continuously improve cloud security across JetBrains Air, including security posture, preventive controls, detection, and remediation.
- Define, maintain, and measure security baselines for AWS and GCP environments covering IAM, networking, data protection, and workload configuration.
- Operate and evolve cloud security and vulnerability-management platforms such as Wiz, Orca Security, Upwind, and Tenable.
- Triage, prioritize, assign, and drive remediation of cloud security findings and vulnerabilities.
- Partner with platform engineering, SRE, and product teams to implement practical security controls in developer workflows.
- Conduct security architecture reviews, threat modeling, risk assessments, and security reviews throughout the software development lifecycle.
- Improve security automation by integrating checks, guardrails, and evidence into engineering and delivery pipelines.
- Support incident response and root-cause analysis, and drive systemic improvements that reduce recurrence.
- Develop security metrics, communicate risks and trends, and contribute to standards, guidance, runbooks, and secure engineering patterns.
Requirements
- Established professional experience in security engineering or a closely related technical security domain securing SaaS products or cloud-native services.
- Strong experience assessing AWS and/or GCP architectures and configurations directly.
- Practical experience deploying, operating, or integrating cloud security and vulnerability-management platforms such as Wiz, Orca Security, Upwind, or Tenable.
- Hands-on experience with security architecture reviews, threat modeling, vulnerability management, and risk-based prioritization.
- Solid understanding of SaaS architectures, APIs, microservices, containers, Kubernetes, identity providers, networking, and managed cloud services.
- Experience translating security requirements into practical solutions with engineering, SRE, and product teams.
- Excellent written and spoken English.
- Experience with security automation, CI/CD and infrastructure-as-code workflows, Terraform, Kubernetes security, detection engineering, cloud-native logging and monitoring, or security operations is preferred.
- Scripting or programming experience in Python, Go, Kotlin, Java, or a similar language is preferred.
- Experience with SOC 2, ISO 27001, other SaaS security and compliance frameworks, or customer-facing security conversations is preferred.
Benefits
- Flexible work location with the option to work from home or from the office.
- Ability to work remotely from abroad for up to 30 days per year.
- Extra time off, medical insurance allowance, learning and development opportunities, and relocation support.
- Language classes, hot meals or a lunch allowance, mental health support, and sports benefits.
- Internal company events; benefits may vary by location.
Categories
About JetBrains
JetBrains builds software development tools, best known for the IntelliJ IDEA family of IDEs (including PyCharm, CLion, Rider) and team products like TeamCity, YouTrack, and Space. It also created the Kotlin programming language, widely used for Android development. Founded in 2000 and headquartered in Amsterdam, the privately held company sells commercial licenses and subscriptions to individual developers, teams, and enterprises.
