> Markdown version of [/jobs/ext/2041857-principal-security-engineer](https://www.wearedevelopers.com/jobs/ext/2041857-principal-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Principal Security Engineer - **Company:** Jobgether - **Location:** Germany - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Amazon Web Services, Microsoft Azure, Bash Shell, Cloud Computing Security, Cyber Security, System Configuration, Continuous Integration, Linux, Digital Assets, Identity and Access Management, Python (Programming Language), Key Management, Software Engineering, Alwayson, Pulumi, Cloud Platform System, Delivery Pipeline, Multi-Cloud, Gitlab, Gitlab-ci, Low Latency, Casper Suite, Hardware Infrastructure, Terraform, Security Orchestration, Automation & Response - **Published:** August 13, 2026 - **Apply:** https://www.adzuna.de/details/5840506900 ## About the Role * 8+ years of hands-on experience in security engineering, security operations or a closely related technical security discipline. * Deep expertise in identity and access management, including practical experience designing and implementing IAM across cloud environments. * Strong, well-developed opinions on IAM architecture, access models, permissions and identity security, backed by hands-on implementation experience. * Strong working knowledge of cloud security controls across multiple providers, particularly AWS and Azure. * Experience securing CI/CD platforms and software delivery pipelines, with GitLab experience preferred. * Familiarity with corporate IT security technologies such as Jamf, endpoint protection, DLP, SSO and identity providers. * Strong Linux skills and confidence with scripting and automation using Python, Bash or similar languages. * Experience with infrastructure-as-code technologies such as Terraform or Pulumi is an advantage. * Ability to investigate security incidents, assess infrastructure and application risks, and implement practical remediation. * Experience operating effectively in fast-paced, technically complex environments where security, resilience and availability are critical. * Strong problem-solving and ownership mindset, with the ability to independently drive technical initiatives from identification through implementation. * Clear communication skills and the ability to collaborate effectively with Infrastructure and Engineering teams. * Experience in financial services, digital assets, cryptocurrency or other regulated environments is beneficial but not required. * Demonstrated technical capability and practical experience are valued more highly than security certifications. ## Description As a Principal Security Engineer, you will take hands-on ownership of security implementation across a global, always-on digital asset trading environment. You will design, deploy and operate security controls across cloud, on-premises infrastructure and critical production systems. The role combines cloud security, identity and access management, key protection, CI/CD security, incident response and security automation. You will work closely with Infrastructure and Engineering teams to embed effective security controls directly into systems and development workflows. With a strong focus on practical execution, you will write code, configure systems and solve complex security challenges rather than focus on policy or people management. The environment is technically demanding and fast-moving, with resilience, low latency and risk discipline at its core. You will have significant autonomy and the opportunity to make an immediate impact on the security of critical trading infrastructure. Accountabilities * Implement, operate and continuously improve security controls across multi-cloud environments, primarily AWS and Azure, with exposure to GCP and AliCloud, as well as on-premises infrastructure. * Own the implementation of identity and access management strategies, designing secure, scalable and practical models for identities, permissions and privileged access. * Design and operate key management and custody security controls, including HSMs, secrets management and secure handling of sensitive cryptographic keys used in trading operations. * Harden GitLab CI/CD pipelines and integrate security controls throughout the software development and delivery lifecycle. * Configure and maintain corporate security technologies, including endpoint protection, mobile device management, Jamf, DLP and identity management platforms. * Respond to security incidents by triaging alerts, investigating threats, containing incidents and driving remediation through to completion. * Conduct security assessments across infrastructure and applications to identify vulnerabilities, weaknesses and opportunities for improvement. * Automate security operations, including detection, alerting, monitoring and response processes. * Partner closely with Infrastructure teams to embed security into cloud provisioning, infrastructure configuration and operational workflows. * Identify opportunities to improve security resilience while minimizing unnecessary friction for engineers and other technical stakeholders. * Own security problems end-to-end, from identifying risks and designing solutions through implementation, testing and ongoing operation. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Why segmenting your infrastructure into tiers makes your infrastructure design better](https://www.wearedevelopers.com/videos/1960-why-segmenting-your-infrastructure-into-tiers-makes-your-infrastructure-design-better) - [WeAreDevelopers LIVE - Modern DevOps for IoT Devices and More](https://www.wearedevelopers.com/videos/1805-wearedevelopers-live-modern-devops-for-iot-devices-and-more) - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [Enabling automated 1-click customer deployments with built-in quality and security](https://www.wearedevelopers.com/videos/83-enabling-automated-1-click-customer-deployments-with-built-in-quality-and-security) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) ## Related Articles - [Top-Paying Tech Jobs (with Salaries)](https://www.wearedevelopers.com/magazine/372-top-paying-tech-jobs-with-salaries) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Where to Find Entry-Level Software Engineering Jobs](https://www.wearedevelopers.com/magazine/397-where-to-find-entry-level-software-engineering-jobs) - [The 12 Best Jobs for Software Engineers](https://www.wearedevelopers.com/magazine/401-the-12-best-jobs-for-software-engineers) - [Where To Find Software Engineering Jobs](https://www.wearedevelopers.com/magazine/396-where-to-find-software-engineering-jobs) - [Why Upskilling And Reskilling is Important For Developers](https://www.wearedevelopers.com/magazine/428-why-upskilling-and-reskilling-is-important-for-developers)