Back to all jobs
NavVis logo

Cloud Security Engineer-Platform & Infrastructure (F/M/D)

NavVis
Munich Hybrid (NavVis GmbH)Hybrid3d ago

About the role

<p><img style="max-width: 100%;" src="https://3339696.fs1.hubspotusercontent-na1.net/hubfs/3339696/greenhouse_hero.jpg" alt="" width="900"></p> <h3>THE OPPORTUNITY</h3> <p><span class="TextRun SCXW249848926 BCX0" lang="EN-US" data-contrast="auto"><span class="NormalTextRun SCXW249848926 BCX0">As a <strong>Cloud Security Engineer-Platform &amp; Infrastructure</strong> at </span><span class="NormalTextRun SpellingErrorV2Themed SCXW249848926 BCX0">NavVis</span><span class="NormalTextRun SCXW249848926 BCX0">, you will play a critical role in strengthening our cloud security posture, with a strong focus on <strong>Kubernetes and AWS environments. </strong>You will own and&nbsp;</span><span class="NormalTextRun SCXW249848926 BCX0">optimize</span><span class="NormalTextRun SCXW249848926 BCX0">&nbsp;our Wiz platform, implement security automation, and ensure compliance with ISO 27001 and SOC 2 standards. This is a hands-on role where you will collaborate closely with engineering teams to embed security into our infrastructure and processes.</span></span><span class="EOP SCXW249848926 BCX0" data-ccp-props="{&quot;134233117&quot;:false,&quot;134233118&quot;:false,&quot;335559738&quot;:0,&quot;335559739&quot;:160}">&nbsp;</span></p> <p>&nbsp;</p> <h3>HOW YOU WILL MAKE AN IMPACT</h3> <ul> <li><span data-contrast="auto">Take ownership of&nbsp;<strong>Kubernetes security across our EKS clusters:&nbsp;</strong>design and enforce RBAC, admission controllers, network policies, and pod security standards&nbsp;</span></li> <li>Harden container workloads through image scanning, runtime threat detection, and workload identity best practices&nbsp;<span data-ccp-props="{}">&nbsp;</span></li> <li>Own and continuously improve our cloud security posture using Wiz, AWS native services and internal monitoring&nbsp;<span data-ccp-props="{}">&nbsp;</span></li> <li>Drive security automation and hardening across AWS, EKS and on-prem infrastructure</li> <li>Integrate security controls into CI/CD pipelines (Terraform, Helm, GitOps) to prevent misconfigurations early&nbsp;<span data-ccp-props="{}">&nbsp;</span></li> <li>Design and maintain guardrails and detection rules for identity, network and workload security&nbsp;</li> <li>Design and enforce least-privilege IAM and support SSO and SAML workflows&nbsp;<span data-ccp-props="{}">&nbsp;</span></li> <li>Partner closely with engineering teams to secure new services and architectural changes&nbsp;<span data-ccp-props="{}">&nbsp;</span></li> <li>Lead vulnerability management and remediation across cloud assets, containers and applications&nbsp;</li> <li>Support risk assessments, internal security reviews and compliance initiatives (ISO 27001, SOC 2)&nbsp;</li> <li>Investigate and respond to security incidents, driving follow-up improvements&nbsp;<span data-ccp-props="{}">&nbsp;</span></li> <li>Contribute to internal security standards, playbooks and documentation<span data-ccp-props="{}">&nbsp;</span></li> </ul> <p><span data-ccp-props="{}">&nbsp;</span></p> <h3><br>WHAT WILL HELP YOU SUCCEED IN THE ROLE</h3> <ul> <li><span data-contrast="auto">Strong hands-on <strong>Kubernetes </strong>security experience&nbsp;you are comfortable with being the go-to person for<strong> Kubernetes </strong>security decisions.</span></li> <li>Experience hardening containerized workloads, including image scanning, runtime security and workload identity</li> <li>Strong hands-on experience with <strong>AWS security </strong>(IAM, KMS, networking, GuardDuty, Security Hub)</li> <li>Strong Terraform skills and an automation-first mindset</li> <li>Experience with CSPM and cloud monitoring tools (Wiz is a strong plus)</li> <li>Familiarity with ISO 27001 and SOC 2 control environments</li> <li>Experience designing and enforcing least-privilege access models and SSO integrations</li> <li>Confidence handling security incidents, investigations and documentation</li> <li>Excellent communication and cross-team collaboration skills<span data-ccp-props="{&quot;134233117&quot;:false,&quot;134233118&quot;:false,&quot;335559685&quot;:720,&quot;335559737&quot;:0,&quot;335559738&quot;:0,&quot;335559739&quot;:0,&quot;335559991&quot;:360}">&nbsp;</span></li> </ul> <h3>HOW WE WILL KNOW WE ARE A PERFECT MATCH</h3> <p>Your recruiting partner for this role is Sylvie (she/her). You can expect to go through a screening call, and up to 4 rounds of interviews, where we would love to discover your passion and interests, introduce you to who we are and what drives us, and finally understand how we can potentially add value to each other's growth.</p> <p>&nbsp;</p> <h3>HOW WE WILL KEEP YOU SMILING</h3> <ul> <li>It's important to take a break from work! We offer 30 days of paid time off per year</li> <li>Affordable access to a vast network of fitness and wellness facilities through EGYM Wellpass subsidy</li> <li>Deutschlandticket subsidy to support sustainable travel using public transport</li> <li>We offer flexible working hours and a hybrid work setup, enabling you to plan your work around your life, and not your life around work!</li> <li>We offer full visa and relocation support for international candidates</li> <li>An attractive bike leasing model through JobRad, in line with our commitment towards sustainable mobility</li> <li>A competitive compensation package that values the skills and experience you bring</li> <li>Up to 4000 EUR employee referral bonus&nbsp;</li> <li>Financial support for local language classes to help you in your journey of integrating into the culture!</li> </ul> <div class="detail-block-description"><strong>We derive our strength from our diversity.</strong> <p>NavVis’ unwavering commitment to fostering an inclusive and diverse workplace has laid the foundation for our incredible growth. We thrive on the collective strength of our people who come from diverse backgrounds. We respect and value every experience associated with race, gender identity, sexual orientation, nationality, religion and disability. We do not discriminate on the basis of any of these, or other identities, and strongly encourage everyone to apply.</p> <p><strong>Together with you, we build NavVis!</strong></p> <p>If you need assistance at any stage of the recruiting process due to a disability, please reach out to your recruiting partner(s) for this position.</p> </div>

Perks & benefits

  • Paid Time Off

731,000+ hidden jobs like this

NavVis and thousands of companies post here first — often days before LinkedIn or Indeed. Your first 5 applications are free; go Pro to apply without limits.

Everything Pro unlocks:

  • Unlimited applications — free stops at 5
  • Track every application in one place
  • Apply straight to the source, one click
  • Save & organize roles you love
  • Roles pulled from company boards before the big sites

Weekly

$9.99
$4.99/week

For an active search. Cancel anytime.

Most popular

Monthly

$24.99
$12.99/month

The smart pick. Save 35% vs weekly.

Lifetime

$99
$49.99once

Pay once. Every future feature, forever.