Senior Cloud Security Engineer
RemoteBerlin, Berlin, GermanyseniorFull-time
- Posted
- today
- Source
- LinkedIn (remote, Europe)
- Field
- Engineering, Security
Skills
AIPenetration TestingCommunicationGCPKubernetesLeadershipTerraformSecurityPythonCI/CDAWSLLMs
Description
At PPRO, we simplify access to local payments - providing a local payments platform that empowers giants like PayPal, Stripe, and Microsoft to connect with billions of consumers worldwide. We are on an ambitious, fast-paced mission to 3x our growth by 2028 - and we’re just getting started.
Our magic lies in our team of proud payments nerds. Spanning over 50 nationalities across 10+ global locations, our diverse cultures aren't a checklist; they are the competitive advantage driving our innovation. This is a people-first, high trust environment where you’ll have the autonomy to make a massive impact, own your work end-to-end, and grow through broad exposure, meaningful challenges, and continuous learning. We get things done, challenge respectfully, put the customer first, and recognise that our biggest successes are those we create as a team. If you’re ready to leave your footprint on global commerce, join us.
The Purpose
As a Senior Security Engineer, you’ll play a pivotal role in supporting PPRO’s mission to provide robust, secure, scalable and resilient systems. In PPRO, we operate an extensive cloud environment spanning across several AWS accounts and GCP. Your primary focus will be on ensuring the security and integrity of our cloud infrastructure and services, including the development and maintenance of our security platform. You will conduct assessments and analyze risks, design secure solutions, maintain IaC codebases and security automations, design metrics and KPIs to measure our security posture, employ AI for the implementation of security controls at scale as well as detect, investigate and prevent attacks against our technology systems. The role is highly collaborative, involving frequent interaction with various members of the technology teams.
Responsibilities Include
- Conduct threat modeling exercises and security assessments across our cloud environments and technology stacks.
- Partner with Engineering teams to integrate security principles, practices, and tools into all stages of the software development lifecycle.
- Design and build reusable Security as Code artefacts and patterns that reduce developer friction while improving security outcomes.
- Write Hardening Standards and Security Guidelines for various technologies and processes.
- Own and maintain our Cloud Native Application Protection Platform (i.e. Wiz).
- Develop automations for recurrent and manual tasks around auditing activities, cloud security posture management (CSPM) and other security processes.
- Maintain and expand our IaC codebase and CI/CD pipelines.
- Champion the use of AI to streamline security operations, scaling our defensive capabilities and enabling non-security teams to adopt security-first practices.
- Provide technical advice in various compliance matters.
- Continuously monitor emerging security trends and technologies to drive proactive improvements.
What Would Make You a Great Fit
- Solid knowledge of computer networks and operating systems.
- Strong background in AWS, with a great understanding of security hotspots, best practices and security related services.
- Container security best practices (incl. Kubernetes security).
- Deep understanding of DevSecOps and CI/CD security controls, with hands-on experience in Infrastructure as Code (preferably Terraform), CI/CD pipelines (preferably GitHub Actions) and scripting (Python, bash).
- You view AI as an essential force multiplier; you are a power user who actively leverages modern AI/LLM frameworks to both accelerate your own workflows and build scalable security solutions.
- Results-oriented, highly collaborative, pragmatic and proactive, and with a continuous improvement mindset.
- Strong interpersonal and communication skills, able to unblock teams and foster security awareness throughout the company.
- Excellent English skills in written & spoken.
Some of the technologies you will get to work with:
- AWS (Kubernetes, ECS, GuardDuty, SecurityHub, Lambda and more)
- Security tools (Wiz, Qualys, Artifactory, CrowdStrike and more)
- DataDog (SIEM)
- Terraform, Terragrunt
- Github Actions
- Claude Enterprise
Nice-to-haves
- Knowledge of the Wiz platform
- Experience in responding to incidents / threats within a cloud environment
- Experience on Google Cloud Platform (GCP)
- Experience with conducting cloud penetration testing or offensive security assessments within cloud environments
- Experience with the Mitre Att&ck framework
- SIEM experience
What's in it for you?
- Hybrid working - We offer a hybrid structure with a 3 days / week on site expectation, so you can strike the balance between office and home working. In addition to our 30-day holiday allowance, we also provide a work from abroad policy, enabling employees to work remotely for up to another 30 days per year.
- Learning and Development - We offer a €1,000 annual budget to support your professional growth—because investing in your development benefits us all. In addition, we provide leadership cafés, on-the-job training, and other opportunities to help you grow your skills and thrive in your role.
- Insurance - Because better safe than sorry - we want our employees to benefit from various insurances including accident insurance, disability insurance, direct insurance (bAV) and travel insurance.
- Gym membership - PPRO helps contribute towards the costs of your gym membership, supporting your physical fitness journey while easing the burden on your wallet.
- Enhance Family Leave - We understand the importance of family - that's why we offer enhanced family leave to support you during key life moments.
- Mental Health Platform - We’ve teamed up with a top well-being platform to provide one-on-one therapy, chat therapy, therapist-led courses, guided meditations, and more.
- Pet-friendly office - Because work is better with your paw-tners by your side.
Our Principles
We get things done: We are courageous; we take ownership, make decisions and get things done.
We act with trust and integrity: We listen first and challenge respectfully. We seek out and leverage diverse perspectives. We welcome and offer honest and open feedback, always assuming positive intent
We put the customer first: We are laser focused on delivering outstanding outcomes for our customers. We put the customer at the heart of what we do.
We make things better: We boldly explore new ideas and have an unwavering commitment to continuous improvement.
We work as a team: We collaborate closely and value team success over individual achievement.
Our Commitment To Diversity And Inclusion
Payments only work when they reflect how different people actually pay, and we build teams the same way: our people span more than 50 nationalities, and that mix is exactly what makes us good at this. So if you're reading this and wondering whether you tick every box, apply anyway. We're far more interested in what you'll bring than a perfect match on paper.
We welcome applicants of every background, identity, and experience, and we make sure our hiring process is accessible to everyone. If you need an adjustment at any stage, just let us know: we're happy to help.
A Few More Things
We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please refer to our Candidate Privacy Policy.
JobMatch aggregates public listings. Always apply through the original posting.