Job
- Level
- Experienced
- Location
- Freiburg im Breisgau
- Working Model
- Hybrid, Onsite
- Job Field
- IT, Security, Test/QA
- Employment Type
- Full Time
- Contract Type
- Permanent employment
Job Summary
In this role, you will develop security mechanisms for a web app, collaborate closely with teams on security issues, assess vulnerabilities, support threat model creation, and automate security tasks.
Job Technologies
Your role in the team
- Your ideas, decisions, and activities have a direct impact on improving the security of our application. You are creating a product that is used daily by over 450,000 small and micro-enterprises in Germany, making it safer day by day.
- You work closely with our feature teams to support them on security issues during the design, implementation, and operation of our application. In doing so, you delve deeply into the technical details. Additionally, you develop and oversee cross-team security mechanisms.
- In our Security Enablement Team, you have the opportunity to explore new areas, build, actively shape, and contribute ideas. You can look forward to hacking days and occasional after-work sessions.
- With us, you will find a modern, agile way of working: from DevOps to Scrum or Kanban.
This text has been machine translated. Show original
Our expectations of you
Qualifications
- You are capable of assessing vulnerabilities within the context of our application and developing a course of action. You can draw on your knowledge of Java web applications and Javascript (Typescript) web clients. You understand the functionality and configuration of well-known dependency management tools such as NPM and Gradle.
- Threat models are not an unfamiliar topic for you, and you are enthusiastic about designing such models together with colleagues, for example on a whiteboard. You can put yourself in the mindset of an adversary to identify threats.
- You can communicate vulnerabilities and security recommendations clearly and precisely to effectively support feature teams with security issues.
- Our team language is German, so very good German skills (at least C2) are a must. At the same time, you should also have very good English skills.
Experience
- You possess good knowledge and extensive experience in the field of web application and cloud security (preferably with AWS) and also know how to securely configure, build, and release modern web applications (IaC, CI/CD, SDLC).
- You have development experience and can quickly assess whether a task should be automated, and you can write Bash, Python scripts, or other necessary tools for it.
- Pluspunkt: You already have experience in the Incident Response field.
This text has been machine translated. Show original
What we offer
- At Haufe Group, we create pioneering working conditions where everyone can contribute and develop to their full potential. We offer you space and responsibility, as well as the opportunity to work hybrid - which means a combination of office presence and home office, depending on your needs and agreement within your team. Additionally, you benefit from flexible working hours and have a wide range of training and development opportunities.
This text has been machine translated. Show original
Benefits
Health, Fitness & Fun
Work-Life-Integration
Food & Drink
Higher Take-Home Pay
Topics You Will Work On
Job Locations
About Your Employer
Haufe-Lexware GmbH & Co. KG
As one of the leading providers of digital workplace solutions and services in Germany, as well as in the field of training and education, Haufe Group has consistently developed into a specialist for digital and web-based services. Our group of companies with headquarters in Freiburg employs around 2,000 employees in Germany and abroad.
Description
- Founding Year
- 2000
- Company Type
- Established Company
- Working Model
- Full Remote, Hybrid, Onsite
- Industry
- Media, Publishing
Employer reviews
by devworkplaces.com
Total
(1 Review)3.4
Engineering
3.1Career Growth
3.0Workingconditions
4.4Culture
3.3