Commercetools is looking for a Principal Engineer, Product Security to support the Engineering team by solving challenging technical problems for an ambitious product and enabling teams to'shift left' to build secure services on multi-cloud infrastructure.
Requirements
- Formulate, evangelise, and drive adoption of the product security strategy
- Assess, advise on, and increase the security maturity posture
- Create a standardised security architecture and operational best practices
- Help track and drive remediation of security and technology risks
- Educate product teams on risk assessments, threat modelling, and building secure api-first applications
- Review requirements and designs to help product teams address shortcomings
- Embed security tooling into the development process
- Contribute to the review of external penetration tests and help teams prioritise fixes
- Collaborate with product teams to improve overall security and resolve specific issues
- Facilitate or lead customer conversations regarding product security
- Triage and investigate new attack vectors to determine risk mitigation
- Drive security and quality initiatives across the organization and support certification audits
- Collaborate with Product Management, Principal Engineers, and legal/compliance teams
- Identify skills gaps and facilitate knowledge sharing across the organization
Benefits
- Comprehensive health benefits
- Learning and development opportunities
- Family Leave Plus
- Equity participation program