Senior Platform Engineer

Taxfix GmbH
Berlin, Germany
7 days ago
Apply on de.indeed.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
3 years minimum
Working hours
Shift work
Job source

Tech stack

Kubernetes Security Artificial Intelligence Amazon Web Services Microsoft Azure Bash Shell Cloud Computing Cloud Computing Security Cloud Engineering Cyber Security Computer Programming Data Security Identity and Access Management
+28 more
Intrusion Detection and Prevention Information Systems Security Architecture Professional Python (Programming Language) Network Security Automation of Marketing Network Architecture Open Source Technology Open Web Application Security Systems Development Life Cycle Tensorflow Runbook AI Infrastructure Google Cloud Cloud Platform System Pytorch Large Language Models Generative AI Infrastructure as Code (IaC) Cloudformation Containerization Kubernetes Infrastructure Automation Frameworks Machine Learning Operations Terraform Devsecops Docker Security Orchestration, Automation & Response Golang

Job description

We are seeking an experienced Senior Platform Security Engineer to design, implement, and maintain security solutions for our cloud-native infrastructure and AI systems. This role will be responsible for securing our platform across multiple cloud environments, ensuring container and Kubernetes security, protecting AI/ML workflows, and implementing robust security controls throughout our SDLC. The ideal candidate will have deep technical and programmatic expertise in cloud-native security, along with demonstrable hands-on experience securing AI/ML systems., * Design and implement comprehensive security architectures for cloud platforms (AWS, Azure, GCP)

  • Implement security best practices for container and Kubernetes deployments
  • Develop and maintain secure Infrastructure as Code (IaC) codebases
  • Design and deploy zero-trust network architecture and secure service mesh solutions
  • Build and maintain secure CI/CD pipelines following DevSecOps principles

AI/ML Security

  • Secure AI-powered product features end to end, covering context assembly, tool invocation, and output handling
  • Design and review security controls for RAG implementations
  • Secure agentic solutions and their extension points: tool integrations (MCP clients and servers), agent skills, and autonomous action boundaries such as scoped credentials, sandboxing, and human-in-the-loop gates
  • Build defenses against direct and indirect prompt injection and other adversarial inputs to LLM applications
  • Establish data security controls for sensitive data flowing through inference, retrieval, and fine-tuning

Security Operations

  • Lead incident response for cloud and AI infrastructure security incidents
  • Develop and implement security monitoring and detection strategies
  • Conduct threat modeling and risk assessments for cloud-native and AI systems
  • Perform regular security assessments of cloud infrastructure and container deployments
  • Create and maintain security documentation, including policies, procedures, and run-books

Leadership & Collaboration

  • Collaborate with development, data science, and operations teams to integrate security
  • Communicate security requirements and recommendations to technical and non-technical stakeholders
  • Stay current with emerging threats and security trends in cloud-native and AI security
  • Participate in technology selections for security tooling and platforms, * A chance to do meaningful, people-centric work with an international team of passionate professionals.
  • Holistic well-being with free mental health coaching sessions and yoga.
  • A monthly allowance to spend on an extensive range of services that you can use and roll over as flexibly as you like.
  • Employee stock options for all employees-because everyone deserves to benefit from the success they help to create.
  • 30 annual vacation days and flexible working hours.
  • Work from abroad for up to six weeks every year. Just align with your team, and then enjoy your trip.
  • Plenty of opportunities to socialise as a team. In addition to internal tech meetups, our international team hosts regular get-togethers-virtually and in person when possible.
  • Free tax declaration filing, of course, through the Taxfix app-and internal support for all personal tax-related questions.
  • Have a four-legged friend in your life? We’re happy to have dogs join us in the office.

Requirements

  • 5+ years of experience in information security, with at least 3 years specializing in cloud security
  • 3+ years of hands-on experience securing containerized environments (Docker, Kubernetes)
  • Demonstrable hands-on experience securing AI/ML or LLM-based systems
  • Strong background in at least one major cloud provider (AWS, Azure, GCP)

Technical Skills

  • Expert knowledge of container security, Kubernetes security, and cloud-native security patterns
  • Proficiency with Infrastructure as Code tools (Terraform, CloudFormation, etc.)
  • Strong understanding of network security, identity management, and access control
  • Experience with security tooling for cloud environments (Cloud Security Posture Management, CSPM)
  • Working knowledge of AI/ML and LLM security, including familiarity with frameworks like TensorFlow and PyTorch and their security implications
  • Proficiency in scripting and programming languages (Python, Go, Bash)
  • Experience with security automation and orchestration, * Deep experience securing Large Language Models (LLMs) and generative AI systems
  • Familiarity with AI/LLM security frameworks (e.g., OWASP LLM Top 10) and AI governance or compliance requirements
  • Experience with secure multi-tenant AI infrastructure
  • Experience with privacy-enhancing technologies for AI/ML (differential privacy, federated learning)
  • Contributions to open-source security projects or public security research
  • Experience building security tools or automation frameworks

Benefits & conditions

Pulled from the full job description

  • Flexible schedule

About the company

Spread across Germany, Spain and the UK, the team at Taxfix Group with its brands Taxfix, Steuerbot and TaxScouts, is a compassionate group of solution-finders. We speak our minds openly, and with over 400 professionals, including tax experts, developers, and IT security experts, we’re rich in ideas and voices. The group has facilitated more than 3.5 billion euros in tax refunds for its customers since its founding in 2016.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on de.indeed.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:03 min

Career evolution in data engineering and AI platforms

Maria Apazoglou · Coffee With Developers

2:50 min

Introduction and the value of runbooks

Hila Fish · World Congress 2023

2:07 min

Inspecting default bridge architectures and custom Docker networks

Oliver Seitz Oliver Seitz · World Congress 2025

1:08 min

Building solutions with open source GoLang infrastructure tools

Jad Wahab · LIVE

1:34 min

Pivoting careers into specialized platform engineering roles

Xavier Portilla Edo · LIVE

1:32 min

Structuring automated incident workflows between runbooks and raw models

Aram Hakobyan Aram Hakobyan +1 · World Congress 2026 Europe

Videos

See all

Related articles

See all