8 days ago
Berlin, GermanySenior
Responsibilities
- Design and implement security architectures across AWS, Azure, and GCP.
- Secure containerized and Kubernetes deployments and maintain secure Infrastructure as Code codebases.
- Design zero-trust network architectures and secure service mesh solutions.
- Build and maintain secure CI/CD pipelines using DevSecOps principles.
- Secure AI-powered features, RAG implementations, agentic solutions, MCP integrations, autonomous action boundaries, and LLM applications against prompt injection and adversarial inputs.
- Establish data-security controls for inference, retrieval, and fine-tuning workflows.
- Lead cloud and AI infrastructure security incident response and develop monitoring and detection strategies.
- Conduct threat modeling, risk assessments, and security assessments for cloud-native and AI systems.
- Create security policies, procedures, runbooks, and documentation.
- Collaborate with development, data science, and operations teams and communicate security requirements to technical and non-technical stakeholders.
- Participate in security-tooling and platform selections and stay current with emerging cloud-native and AI-security threats.
Requirements
- At least 5 years of information-security experience, including at least 3 years specializing in cloud security.
- At least 3 years of hands-on experience securing containerized environments using Docker and Kubernetes.
- Demonstrable hands-on experience securing AI/ML or LLM-based systems.
- Strong experience with at least one major cloud provider: AWS, Azure, or GCP.
- Expertise in container security, Kubernetes security, and cloud-native security patterns.
- Proficiency with Infrastructure as Code tools such as Terraform and CloudFormation.
- Strong understanding of network security, identity management, and access control.
- Experience with cloud-security tooling such as Cloud Security Posture Management.
- Working knowledge of AI/ML and LLM security, including TensorFlow and PyTorch security implications.
- Proficiency in Python, Go, and Bash.
- Experience with security automation and orchestration.
- Preferred: deep experience securing LLMs and generative AI systems; familiarity with OWASP LLM Top 10 and AI governance or compliance requirements; secure multi-tenant AI infrastructure experience; privacy-enhancing technologies such as differential privacy and federated learning; open-source security contributions or public security research; and experience building security tools or automation frameworks.
Benefits
- Meaningful work with an international team of professionals.
- Free mental health coaching sessions.
- Monthly flexible allowance for a broad range of services, with rollover.
- Employee stock options for all employees.
- 30 annual vacation days and flexible working hours.
- Work from abroad for up to six weeks each year with team alignment.
- Internal tech meetups and regular virtual and in-person team events.
- Free tax declaration filing through the Taxfix app and internal support for personal tax questions.
- Dogs are welcome in the office.