cybersecurity engineer

coera
Berlin, Germany
14 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Working hours
Regular working hours
Job source

Tech stack

C++ (Programming Language) Cloud Computing Security Cyber Security Linux on Embedded Systems Firmware Public Key Infrastructure Software Engineering Cloud Platform System Production Code

Job description

Berlin, Berlin, 10587 Unbefristet Vollzeit why this role matters

A robotic agent that can be compromised is a robotic agent that cannot be trusted. Security is the shadow half of coera’s safety guarantee. The EU Cyber Resilience Act is in force, reporting obligations start September 2026, and full application follows in December 2027. You will own the security architecture, the threat model, and the evidence base that lets coera pass every customer security review and every regulator briefing. what you will own

  • Design the end-to-end security architecture of coera’s platform: supply chain, build pipeline, deployed runtime, update channel.
  • Deliver CRA (Regulation (EU) 2024/2847) Annex I conformance and the IEC 62443-4-1 and -4-2 evidence base for the first customer deployment.
  • Run threat modelling (TARA) on every integration and turn findings into shipped mitigations.
  • Own incident-response readiness, penetration-testing relationships, and the security artefacts that pass customer review.
  • Work closely with the safety engineer to keep safety and security as one property.
  • Set the bar for secure engineering practice across the team.

Requirements

  • At least five years in product or platform security, with hands-on software engineering fluency. Production code in C and C++.
  • Hardening embedded Linux and firmware, including secure boot chains.
  • IEC 62443-4-1 and -4-2 and ISO/IEC 27001, with working literacy in CRA Annex I and TARA methodology.
  • Cloud security fluency.
  • Cryptographic primitives and PKI operated in production.

Benefits & conditions

Strong signals

  • Prior work on a safety-certified or functionally safe product. The single most valuable signal for coera because it means you already treat security and safety as one property.
  • Published vulnerability research, CVEs, or speaking record at Black Hat, DEF CON, Pwn2Own, OffensiveCon, CCC, or Troopers.
  • Cyber-physical attack surfaces and hardware-level threats: anti-tamper, reverse engineering.
  • CRA, NIS2, or Machinery Regulation 2023/1230 fluency demonstrated in shipped product.
  • AI and ML system security literacy: model weight protection, model supply chain, adversarial inputs.

Bonus

  • Supply-chain and code-signing frameworks.
  • German or Farsi in addition to English.

what we offer

A core-team role with real ownership over what we build and how. Direct line to deployments with leading robotics partners from day one. Post-thesis, pre-scale: the window where the work you do actually compounds.

All coera employees participate in the company’s long-term success through our employee participation program (ESOP). The specific terms of your participation are agreed individually as part of your compensation package. how we work

Small, senior, deliberate. We write more than we meet. We ship the core of the product before we ship the edges. We care about craft in code, policy design, and how we engage with customers. The bar is high, and the stakes are high: the safety layer of the robotics revolution is being built now, and we intend to be the one that defines it. process and small print

About the company

coera is the universal safety intelligence layer for human-robot coexistence, built to redefine what safety means in the age of physical AI. Robotics is advancing faster than the safety systems meant to support it. coera closes that gap with multimodal sensing and deterministic guardrails: retrofittable, embeddable, controller-agnostic. Safety is not a checkpoint or a constraint. It is the capability that lets intelligent machines operate freely wherever people do.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.adzuna.de

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

2:19 min

Orchestrating over-the-air firmware updates for vehicle modules

Denis Grahovac · World Congress 2021

4:50 min

Why developers treat test code differently than production code

Gil Zilberfeld · LIVE

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

2:20 min

Utilizing custom firmware for variable torque manipulation

Daniel Meilak Daniel Meilak +1 · World Congress 2026 Europe

Videos

See all

Related articles

See all