Senior Security Engineer (m/f/d)

Your heart beats for security architecture, and you're driven by the mission to protect our organization and strengthen resilience against evolving threats? You enjoy translating security requirements into resilient, well-designed architecture? A supportive culture, strong teamwork, and continuous development matter just as much to you as technical expertise? Then welcome to AND-E.
  • Design, implement, and continuously mature security architecture across endpoint, identity, network, cloud, and email domains.
  • Act as primary technical advisor to the external MSSP, reviewing and optimizing the Splunk Cloud SIEM and Cribl Stream/Edge data pipeline.
  • Partner with Infrastructure, Cloud Admin, and Client Services teams to review, harden, and implement security controls (Defender for Endpoint, Intune, Proofpoint, Zscaler, Cisco FTD, FortiGate).
  • Oversee vulnerability management, prioritize remediation with system owners, and manage/quality-assure penetration tests and red-team exercises.
  • Perform and guide proactive threat hunting across XDR, identity, and network telemetry, converting findings into durable detections.
  • Act as senior escalation point for the SOC, leading complex investigations, forensic analysis, and incident response playbooks/tabletop exercises.
  • Mentor SOC analysts and junior engineers while maintaining high-quality architecture and runbook documentation.
  • Bachelor's degree in IT Security, Cyber Security, Information Systems, or equivalent practical experience.
  • 5+ years of experience in IT security engineering, security operations, or infrastructure security.
  • Strong grounding in security-by-design, zero-trust, and frameworks such as NIST, ISO 27001, CIS Benchmarks, and MITRE ATT&CK.
  • Advanced knowledge of Splunk Cloud SIEM (SPL, use-case development) and Cribl Stream/Edge.
  • Hands-on familiarity with Microsoft Security Stack, AWS Security Services, Proofpoint, and Zscaler/Cisco/FortiGate.
  • Preferred certifications include: CISSP, GIAC (GCIH, GCIA, GCFA, GDSA), Microsoft SC-200/SC-100/AZ-500, AWS Security Specialty, Splunk Enterprise Certified Admin, Cribl Certified Observability Engineer.
  • Strong English communication skills (German a plus) and proven stakeholder/consulting ability across cross-functional teams.
  • Growth is important to us, that’s why we support your personal and professional development.
  • A working environment based on trust, encouragement and constructive feedback.
  • Collaboration with people from different countries and cultures.
  • 32 days annual leave plus 2 days off.
  • Flexible working hours and home office policy (approx. 60% possible).
  • Attractive employee conditions for car insurance.
  • Exceptional company benefits: Employer subsidy for occupational pension scheme and disability pension, supplementary company health insurance, capital-forming benefits.
  • Optional: Job ticket, car parking spaces, monthly travel allowance.
  • EGYM Wellpass.
  • Financial subsidy as a small wish-fulfiller.
  • Free coffee, tea, water and weekly fruit delivery.
  • Health management and pme family service.

See also

要針對這個職缺調整履歷嗎?

目前無法檢查您與這個職缺的符合程度;請先將履歷加入個人檔案,下次即可查看。

A new version of freehire is available