Senior Cyber Security Engineer (m/w/d) - IT-Security, Ingenieur
Datev eG
About the role
About
The DevOps Consulting division focuses on improving and automating development and operational processes to increase quality, efficiency, innovation, and customer satisfaction. Central to this is the provision of security-relevant components in CI/CD environments and Infrastructure-as-Code platforms. This includes the secure design of build and release pipelines, reusable workflows, and Infrastructure-as-Code modules. The goal is to create a secure and robust development and operational infrastructure that protects our entire software supply chain from security risks.
Responsibilities
- Ensuring the IT security of CI/CD systems, cloud infrastructures, and applications throughout the entire lifecycle
- Development, implementation, and continuous improvement of security strategies, policies, and processes in the build, test, and deployment context
- Design and automation of secure build/release pipelines, reusable workflows, and Terraform modules with a focus on Security-by-Design
- Management and hardening of the deployed security and DevOps tools (e.g., GitHub, Mend, SonarQube, Jenkins, Terraform, Vault)
- Analysis, assessment, and response to security incidents in development and operational environments
- Creation and maintenance of security concepts, standards, and documentation
- Collaboration with development, cloud, and DevOps teams to integrate automated security checks and compliance controls
- Organization or execution of security analyses such as threat analyses/data protection and information security checks, manual or automated penetration tests, as well as vulnerability analyses of used third-party components, evaluation of results, and planning of measures for implementation against discovered vulnerabilities; documentation of analyses, results, and measures
Requirements
- You have a successful university degree in computer science or vocational training as an application developer, each with many years of professional experience.
- You have several years of experience with CI/CD platforms (GitHub, GitLab, Azure DevOps, or Jenkins).
- You have very good knowledge of Infrastructure as Code (IaC) with technologies such as Terraform, Ansible, or CloudFormation.
- You bring sound knowledge and project experience in the areas of network security, endpoint hardening, and cloud security (Azure, AWS, or GCP).
- You have experience with security analyses, vulnerability management, and the integration of security tools into DevOps pipelines.
- You have an understanding of modern development methods and DevSecOps principles.
- You possess team spirit, initiative, and analytical thinking.
Learnable Skills
- Deepening of DevSecOps capabilities
Benefits
- Fair and transparent remuneration
- 13th month's salary
- Holiday bonus
- Numerous other financial incentives
- Support for work-life balance through childcare offers and subsidies
- Company restaurant with daily changing, balanced menus and fresh, regional products
- And much more...
About Us
DATEV is more than a green rectangle. We are one of the largest software and IT service providers in Europe, headquartered in Nuremberg. More than 9,000 employees give their all to drive the digitalization of the business processes of our over 900,000 customers. They rely on our PC and cloud solutions as well as mobile apps, using them to process around 14 million payrolls per month, for example. We are a strong and open community where people not only arrive quickly but also like to stay. Our culture of security and openness, combined with a technologically advanced working environment, ensures this. Diversity, Equity, and Inclusion are essential for us to ensure that everyone can participate equally in working life. DATEV stands for this every day. The best future is created in strong communities. #WirsindDATEV!
We look forward to your application via our career portal and to getting to know you. To ensure a secure and efficient application process, we ask you to create an application account on the next page.
Skills
Don't send a generic resume
Paste this job description into Mimi and get a resume tailored to exactly what the hiring team is looking for.
Get started free