Job
- Level
- Senior
- Job Field
- IT, Security, Back End
- Employment Type
- Full Time
- Contract Type
- Permanent employment
- Location
- Berlin
- Working Model
- Hybrid, Onsite
Job Summary
In this role, you will develop security solutions for our cloud-native infrastructure, including protecting AI/ML workflows and implementing robust security controls for containers and Kubernetes.
Job Technologies
Your role in the team
- We are seeking an experienced Senior Platform Security Engineer to design, implement, and maintain security solutions for our cloud-native infrastructure and AI systems.
- This role will be responsible for securing our platform across multiple cloud environments, ensuring container and Kubernetes security, protecting AI/ML workflows, and implementing robust security controls throughout our SDLC.
- Design and implement comprehensive security architectures for cloud platforms (AWS, Azure, GCP).
- Implement security best practices for container and Kubernetes deployments.
- Develop and maintain secure Infrastructure as Code (IaC) codebases.
- Design and deploy zero-trust network architecture and secure service mesh solutions.
- Build and maintain secure CI/CD pipelines following DevSecOps principles.
- Secure AI-powered product features end to end, covering context assembly, tool invocation, and output handling.
- Design and review security controls for RAG implementations.
- Secure agentic solutions and their extension points: tool integrations (MCP clients and servers), agent skills, and autonomous action boundaries such as scoped credentials, sandboxing, and human-in-the-loop gates.
- Build defenses against direct and indirect prompt injection and other adversarial inputs to LLM applications.
- Establish data security controls for sensitive data flowing through inference, retrieval, and fine-tuning.
- Leiten Sie die Incident-Response für Sicherheitsvorfälle in Cloud- und KI-Infrastruktur.
- Develop and implement security monitoring and detection strategies.
- Conduct threat modeling and risk assessments for cloud-native and AI systems.
- Perform regular security assessments of cloud infrastructure and container deployments.
- Create and maintain security documentation, including policies, procedures, and run-books.
- Zusammenarbeit mit den Teams für Entwicklung, Data Science und Betrieb, um Sicherheitsmaßnahmen zu integrieren.
- Communicate security requirements and recommendations to technical and non-technical stakeholders.
- Bleiben Sie auf dem Laufenden über aufkommende Bedrohungen und Sicherheitstrends in cloud-native und AI-Security.
- Participate in technology selections for security tooling and platforms.
This text has been machine translated. Show original
Our expectations of you
Qualifications
- Starke Erfahrung bei mindestens einem großen Cloud-Anbieter (AWS, Azure, GCP).
- Expert knowledge of container security, Kubernetes security, and cloud-native security patterns.
- Proficiency with Infrastructure as Code tools (Terraform, CloudFormation, etc.).
- Starkes Verständnis von Netzwerksicherheit, Identitätsmanagement und Zugriffskontrolle.
- Working knowledge of AI/ML and LLM security, including familiarity with frameworks like TensorFlow and PyTorch and their security implications.
- Proficiency in scripting and programming languages (Python, Go, Bash).
- Vertrautheit mit AI/LLM-Sicherheitsrahmenwerken (z. B. OWASP LLM Top 10) sowie AI-Governance- oder Compliance-Anforderungen.
- Contributions to open-source security projects or public security research.
Experience
- 5+ Jahre Erfahrung im Bereich Informationssicherheit, davon mindestens 3 Jahre Spezialisierung auf Cloud-Sicherheit.
- 3+ years of hands-on experience securing containerized environments (Docker, Kubernetes).
- Nachweisbare praktische Erfahrung in der Absicherung von AI/ML- oder LLM-basierten Systemen.
- Experience with security tooling for cloud environments (Cloud Security Posture Management, CSPM).
- Erfahrung mit Sicherheitsautomatisierung und Orchestrierung.
- Deep experience securing Large Language Models (LLMs) and generative AI systems.
- Erfahrung mit sicherer Multi-Tenant AI-Infrastruktur.
- Experience with privacy-enhancing technologies for AI/ML (differential privacy, federated learning).
- Experience building security tools or automation frameworks.
This text has been machine translated. Show original
What we offer
- A chance to do meaningful, people-centric work with an international team of passionate professionals.
- Holistic well-being with free mental health coaching sessions and yoga.
- A monthly allowance to spend on an extensive range of services that you can use and roll over as flexibly as you like.
- Employee stock options for all employees—because everyone deserves to benefit from the success they help to create.
- 30 days of annual vacation and flexible working hours.
- Work from abroad for up to six weeks every year. Just align with your team, and then enjoy your trip.
- Viel Gelegenheit, sich im Team zu vernetzen. Neben internen Tech-Meetings organisiert unser internationales Team regelmäßig Treffen – virtuell und, wenn möglich, persönlich.
- Free tax declaration filing, of course, through the Taxfix app—and internal support for all personal tax-related questions.
- Haben Sie einen vierbeinigen Freund in Ihrem Leben? Wir freuen uns, wenn Hunde bei uns im Büro dabei sind.
This text has been machine translated. Show original
Topics You Will Work On
Job Locations
About Your Employer
Taxfix GmbH
Taxfix is an innovative financial platform in Europe that specializes in digital tax solutions. It assists millions of users in Germany, the UK, and Spain in filing their tax returns easily and securely. With over 400 employees and locations in various cities, the company has processed over 8 million tax returns and refunded its clients more than 4.5 billion euros.
Description
- Company Type
- Startup
- Working Model
- Hybrid, Onsite
- Industry
- Banking, Finance, Insurance