← Zurück zur Liste
Stelle

Security Engineer *EU/UK remote* (m/f/d)

Security Engineer • Remote • Vollzeit Deutschland Deutschland

Pliant is hiring a hands-on Security Engineer with deep expertise in DevSecOps, AWS cloud security and automation to build secure foundations across its platform and developer workflows.

Responsibilities

  • Integrate security best practices throughout the SDLC to protect products, infrastructure and customer data
  • Design, implement and maintain security automation tooling (patch management, vulnerability management, compliance evidence collection)
  • Embed security controls and guardrails into the developer platform
  • Define and promote "Paved Roads" - reusable, secure development standards and Terraform/Docker modules
  • Harden containerized workloads (ECS and EKS): cluster security, secure base images, image signing and provenance, admission control, least-privilege IAM, runtime anomaly detection
  • Deploy and manage cloud security platforms (e.g. Wiz) and drive remediation workflows
  • Automate audit-ready evidence collection for frameworks like PCI DSS, ISO 27001, SOC 2 and DORA
  • Support vulnerability management (triage, SLAs, RCA) and lead incident response and post-mortems
  • Conduct threat modeling, architecture reviews and provide secure design and cryptography guidance
  • Build and maintain security documentation, internal tooling and feedback loops
  • Act as a security SME across application, cloud and compliance domains

Requirements

  • 5+ years in a technical security role, preferably in a cloud-native or fintech/SaaS environment
  • Strong proficiency with AWS security services (IAM, KMS, CloudTrail, S3, GuardDuty, SCPs, etc.)
  • Solid understanding of DevSecOps practices and CI/CD integration
  • Proficiency in Terraform and other IaC tooling
  • Proficiency in Python, Bash or TypeScript for scripting and automation
  • Experience securing containers (Docker, ECS, EKS or Kubernetes) and hardening images
  • Expert-level understanding of the OWASP Top 10, secure coding and software supply chain risks
  • Experience managing cloud security platforms (e.g. Wiz, Orca, Lacework, Prisma Cloud)
  • Understanding of vulnerability management and remediation workflows at scale
  • Experience with application security practices: code review, threat modeling, SAST/DAST, attack surface analysis
  • Experience performing application penetration testing or vulnerability research/bug bounty hunting
  • Excellent communication skills, able to explain security to varied audiences

Nice to have

  • Exposure to compliance frameworks (PCI DSS, ISO 27001, SOC 2)
  • Familiarity with detection engineering or lightweight SIEM tooling
  • Contributions to open-source security tools or internal security automation frameworks

Soft skills

Builder's mindset for solving security problems with automationPragmatic approach balancing risk reduction with delivery speedWillingness to dive into unknowns and collaborate across teamsPassion for clean, maintainable and reusable code

What we offer

  • Growing team with a strong knowledge-sharing culture
  • Attractive remuneration
  • Choice of preferred OS (Windows or Mac)
  • Flat hierarchy and transparent communication
  • Opportunity to develop talent in a dynamic, ambitious team
  • Flexibility and possibility to work remotely
  • Company card with a monthly allowance for lunches, coffee etc.

About the company

Pliant is a European fintech specializing in B2B payment solutions. Its modular, API-first platform helps businesses streamline spending, improve cash flow and integrate payments into financial workflows. Founded in 2020 and headquartered in Berlin, Pliant is a licensed e-money institution supporting over 4,000 businesses and 20+ partners, issuing credit cards in 11 currencies across 30+ countries.

Ähnliche Stellen