Head of Product Security Engineer (f/m/d)

Stellenbeschreibung:

Overview

As Senior Product Security Engineer, you own and drive product security across the lifecycle. You establish secure development practices, lead threat modeling and reviews, and oversee vulnerability management and incident response. You will build and operate testing frameworks and monitor threat intelligence to ensure regulatory and client expectations are met. You act as the primary security contact for presales, audits, and customer inquiries, collaborating with cross-functional teams. This role offers impact in shaping secure, scalable software in a fast-growing B2B SaaS business.

Leistungen / Benefits
  • profit-sharing and employee stock program
  • Structured onboarding and ATOSS Academy + Leadership Tracks
  • hybrid work model with EU remote options, 30 days vacation
  • team events and in-house barista
  • health and wellbeing programs including Wellhub
  • stability: SDAX & TecDAX, 20+ years of growth, Top Employer
Verantwortungsbereiche
  • Establish and enhance secure development practices (Secure SDLC, DevSecOps) and oversee threat modeling, architecture and code reviews
  • Oversee vulnerability management and product-related incident response
  • Build and operate security testing frameworks for regular, occasion-based, and continuous testing; monitor threat intelligence
  • Ensure compliance with Cyber Resilience Act, EU AI Act, GDPR, ISO 27001, SOC 2; embed controls into development workflows and maintain audit-ready SBOMs and documentation
  • Act as primary product security contact for presales, audits, customer inquiries, and incidents; communicate with both technical and non-technical stakeholders
  • Collaborate cross-functionally with Legal, Information Security & Infrastructure Compliance, IT, Cloud Operations, and Product Management
  • Use security metrics and threat insights to strengthen product security across the lifecycle
Zentrale Anforderungen
  • Degree in computer science, information security, engineering or related field; Master’s or PhD preferred
  • Extensive experience in product security, application security engineering or secure software development
  • Proven ability to build and operationalize security frameworks and controls across complex product environments
  • Strong understanding of regulatory and certification landscapes and translating legal requirements into product measures
  • Excellent English communication, able to engage stakeholders at all levels
  • cross-functional collaboration
  • clear and effective communication
  • stakeholder engagement
  • secure SDLC and DevSecOps
  • threat modeling
  • architecture and code reviews
NOTE / HINWEIS:
EnglishEN: Please refer to Fuchsjobs for the source of your application
DeutschDE: Bitte erwähne Fuchsjobs, als Quelle Deiner Bewerbung

Stelleninformationen

  • Veröffentlichungsdatum:

    14 Sep 2026
  • Standort:

    München
  • Typ:

    Vollzeit
  • Arbeitsmodell:

    Vor Ort
  • Kategorie:

  • Erfahrung:

    2+ years
  • Arbeitsverhältnis:

    Angestellt

KI Suchagent

AI job search

Möchtest über ähnliche Jobs informiert werden? Dann beauftrage jetzt den Fuchsjobs KI Suchagenten!