Business Intelligence Info ← Alle vacatures

Senior Product/Cloud Security Engineer

Geplaatst 30 Sep 2026 (7u geleden)
Business Intelligence Scale-up Senior
AWS GCP
AI Samenvatting

Senior Product/Cloud Security Engineer: Versterk de beveiliging van de JetBrains Air-platformen in AWS en GCP door het definiëren van beveiligingsbaselines en het automatiseren van risicobeheersing. Neem de leiding in het verbeteren van cloudbeveiliging en werk samen met engineeringteams om veilige keuzes te integreren in ontwikkelprocessen. Deze rol biedt de kans om een significante impact te maken op de beveiliging van cloudplatformen binnen een toonaangevend softwarebedrijf, met mogelijkheden voor remote werken vanuit Duitsland.

Functiebeschrijving

Are you excited by the challenge of strengthening the security of cloud platforms without slowing engineering teams down? We believe that real cloud security is about setting smart baselines, modeling threats early, and embedding guardrails directly into developer workflows, and we’re keen to hear about how you can help us implement this mentality About JetBrains We create intelligent software development tools for developers and teams. More than 15 million users, over 300,000 companies, and 88 of the Fortune Global Top 100 rely on our products to solve real, complex problems. Our mission is simple: make development teams more productive and AI adoptable at scale. What you’ll do As our cloud footprint grows, we are investing heavily in the security of the platforms and products that support them. We are looking for a Senior Product/Cloud Security Engineer to help us strengthen the security of the JetBrains Air platform and the services built on top of it. In this role, you’ll take ownership of cloud and product security across our AWS and GCP environments. You’ll work directly on design choices, architecture reviews, and automation that reduce risk across the entire software development lifecycle. You’ll partner closely with platform engineering, SRE, and product teams to make secure choices the easiest path for developers. You will have substantial ownership and influence across teams while staying close to technical details. Day to day, you will: Lead and continuously improve cloud security across JetBrains Air, including security posture, preventive controls, detection, and remediation. Define, maintain, and measure security baselines for AWS and GCP environments, covering IAM, networking, data protection, and workload configuration. Operate and evolve cloud security platforms and vulnerability-management solutions (e.g. Wiz, Orca Security, Upwind, Tenable, etc.). Establish effective processes for triaging, prioritizing, assigning, and remediating cloud security findings and vulnerabilities. Partner with platform engineering, SRE, and product engineering teams to design and implement practical security controls that fit naturally into developer workflows. Perform security design and architecture reviews for cloud services, APIs, and integrations. Conduct threat modeling and risk assessments to provide clear, actionable recommendations. Review product and platform changes for security implications throughout the entire software development lifecycle, from early design to production. Help improve security automation by integrating security checks, guardrails, and evidence into engineering and delivery pipelines. Support incident response, root-cause analysis, and drive systemic improvements that reduce recurrence. Develop meaningful metrics for cloud and product security, communicate trends and risks, and help prioritize security investments. Contribute to security standards, guidance, runbooks, and patterns that make secure engineering easier across JetBrains. What you’ll bring A pragmatic engineering mindset that balances security controls with developer velocity. A strong sense of ownership and the initiative to spot complex risks and address them early. Excellent communication skills, with the ability to explain technical trade-offs clearly to both engineers and stakeholders. A collaborative mentality when working across distributed teams and engineering disciplines. A high bar for quality and a commitment to building sustainable, long-term security baselines. A curious and analytical approach to threat modeling and architectural risk. What you’ll need Established professional experience in security engineering or a closely related technical security domain, securing SaaS products or cloud-native services. Strong experience with AWS and/or GCP security – specifically the ability to assess architecture and configurations directly, rather than relying solely on tool outputs. Practical experience deploying, operating, or integrating cloud security and vulnerability-management platforms (e.g., Wiz, Orca Security, Upwind, Tenable). Hands-on experience with security architecture reviews, threat