Logo Berufliche Schulen Potsdam der ASG - Anerkannten Schulgesellschaft mbH

Linux System Administrator Defense Products

New

Job

  • Level
    Experienced
  • Location
    Berlin, Karlsruhe
  • Working Model
    Hybrid, Onsite
  • Job Field
    IT, Network, Security
  • Employment Type
    Full Time
  • Contract Type
    Permanent employment

Job Summary

In this role, you will manage Linux-based defense systems against DDoS attacks, operate complex proxy infrastructures, and develop automation solutions to neutralize cyber threats in real-time.

Job Technologies

Your role in the team

  • Join our highly motivated team of experts dedicated to combating cybersecurity threats.
  • As a System Administrator, you will plan and operate our cutting-edge defense platforms alongside site reliability engineers and network engineers.
  • These platforms are crucial for protecting our hosting products and infrastructure, encompassing classic DDoS mitigation, modern Web Application Firewalls (WAF), Zero Trust strategies, and our Content Delivery Network (CDN).
  • As a Specialist in our Defense squad, you act as a vital shield against daily DDoS and sophisticated cyber attacks.
  • You are the first line of defense, dedicated to neutralizing threats through technical mastery and proactive mitigation.
  • The day-to-day operations of the Defense Platform Services team directly correlate to the financial stability of the United Internet Group.
  • When our defenders succeed, the group's digital economy remains fluid; your success is measured by the silence of a neutralized threat.
  • Active Defense & DDoS Mitigation: Administration and troubleshooting of scrubbing platforms and a complex, large-scale proxy infrastructure.
  • You will engage in the "cat and mouse game" of fighting attacks in real-time—identifying, washing, and neutralizing malicious traffic to protect core cloud and fiber services.
  • Architectural Density & Operational Excellence: You will manage the lifecycle of 800+ Linux-based components within a highly available infrastructure.
  • To maintain 24/7 group-wide protection, this role requires a mandatory on-call service rotation of one week per month, ensuring immediate response to high-priority network threats.
  • Innovation & Data-Driven Defense: We leverage modern AI tools for log analysis and pattern detection.
  • You will bring creative ideas to the table, utilizing the ELK Stack and ClickHouse to manage high-volume telemetry, identify attack signatures, and devise advanced mitigation strategies.
  • Lifecycle & Pipeline Management: Develop and optimize CI/CD pipelines in an agile DevOps environment.
  • You will evaluate and integrate new technologies—including Docker and Kubernetes—to ensure our defense architecture remains lean, efficient, and ahead of evolving industry threats.

This text has been machine translated. Show original

Our expectations of you

Education

  • Because this role manages critical national and corporate infrastructure, the barrier to entry involves both technical mastery and a high degree of professional trust.

Qualifications

  • We are looking for an administrator with a "security gene"—a specialized, proactive interest in DDoS mitigation and cyber defense that goes beyond standard system maintenance.
  • Expert-level proficiency in managing complex, distributed Linux environments.
  • Practical knowledge of BGP, Flowspec, and Anycast routing.
  • A passion for eliminating repetitive tasks through Ansible, Puppet, and Python.
  • Strong passion for automation using tools like Ansible, Puppet, and Python to eliminate repetitive manual tasks.
  • Strong analytical skills to evaluate DDoS attacks, implement effective countermeasures, and continuously develop our defense platforms.
  • Like us, you are a strong advocate for Open Source, especially Linux.

Experience

  • Therefore, we require 3 to 5 years of platform operating experience at scale.
  • Nachweisliche Erfahrung in der Konfiguration von Nginx als Reverse Proxy oder Web Application Firewall (WAF).
  • Several years of experience in the administration of complex, distributed Linux systems.
  • Proven experience in configuring and operating Nginx as a reverse proxy or web application firewall.
  • Hands-on experience with the deployment of BGP, Flowspec, and Anycast routing on Linux systems and network routers.
  • Initial experience with technologies such as Docker, Kubernetes, ClickHouse, or the ELK Stack is beneficial.

This text has been machine translated. Show original

What we offer

  • Hybrid working model.
  • Flexible working hours through trust-based working hours.
  • Subsidized canteen and various free drinks at select locations.
  • Modern office space with excellent public transport connections.
  • Various employee discounts for activities and products.
  • Employee events such as summer and winter parties, as well as workshops.
  • Numerous training and development opportunities.
  • Various health offerings, such as sports and wellness courses.

This text has been machine translated. Show original

Topics You Will Work On

Job Locations

  • Location Karlsruhe

    Baden-Württemberg

    Germany

  • Location Berlin

    Germany

About Your Employer

Berufliche Schulen Potsdam der ASG - Anerkannten Schulgesellschaft mbH

Berufliche Schulen Potsdam der ASG - Anerkannten Schulgesellschaft mbH

The Vocational Schools Potsdam of ASG offer a practice-oriented training for educators that closely integrates academic theory with professional practice. A competent team of instructors and regular collaborations with practice partners support the preparation for pedagogical roles in child and youth welfare.

Description

  • Company Type
    Established Company
  • Working Model
    Hybrid, Onsite
  • Industry
    Education System
Location
Berlin, Karlsruhe
Working Model
Hybrid, Onsite
Diversity
Open for all genders
English Only
English only required

More Jobs