Job offer
(Technical) Cloud and Platform Security Lead (80-100%)
Sygnum is seeking an experienced technical security expert as Cloud and Platform Security Lead to manage and shape the security of the cloud-native platform and systems. The ideal candidate will have at least 7 years of experience in IT and security, particularly in cloud-native, platform, or product security.
Tasks
The position as (Technical) Cloud and Platform Security Lead includes the following tasks:- Partner directly with the platform, engineering, and product teams to secure our cloud and digital asset product offerings.
- Reviewing, challenging, and improving technical specifications and solution designs in the following areas:
- Cloud architecture and landing zones (AWS & Azure)
- Platform, application, and Kubernetes-based microservices deployment
- Third-party integrations and network connectivity
- Ownership and continuous improvement of SSDLC capabilities through hands-on work with engineering teams on CI/CD controls that enable and enhance the developer experience.
- Own the configuration, baseline, and day-to-day operation of security tooling to ensure results are integrated into engineering and operational workflows.
- Design, review, and reinforce infrastructure-as-code to create secure defaults, safeguards, and reusable patterns for production deployment.
- Design logging, monitoring, and detection architecture for platform and application security events.
- Design and review encryption and key management solutions, including key lifecycle controls, signing workflows, and approval chains for digital asset management.
Requirements
Our ideal candidate has:- 7+ years of hands-on experience in IT and security, with deep technical expertise in cloud-native, platform, or product security roles.
- Demonstrable ability to design, implement, and operate technical security controls in AWS and Azure environments.
- Deep technical expertise in the security of Kubernetes and container platforms.
- Hands-on experience embedding security into modern software delivery and SSDLC workflows, including CI/CD pipelines and developer tools.
- Ability to design, configure, and execute cloud-native security solutions from start to finish.
- Comfortable working with technical configuration files, security policies, and code-based definitions (e.g., IaC, automation, policy-as-code).
- Experience working with SOC teams to define detection and response strategies.
- Fluent in English, German is a plus.
We offer
We offer a comprehensive package of benefits for all team members.Job details