Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
Senior Security Engineer (m/f/d) image - Rise Careers
Job details

Senior Security Engineer (m/f/d)

Permanent employee, Full-time * Germany (Munich office, hybrid)

Be our next roadsurfer!

We are looking for a Security Engineer to join our teams working on internal IT systems and our consumer-facing software applications. You will be part of our success story in delivering unique travel adventures to customers around the world and supporting our station teams to deliver a great experience every time.

An international work environment awaits you in the vibrant city of Munich if you are a creative problem solver who loves to drive solutions and is looking for a new adventure!

WHY ROADSURFER?

  • TEAMSPIRIT & TEAMEVENTS: Look forward to a collegial atmosphere with flat hierarchies, lots of fun and great team spirit, as well as regular team events such as joint sports sessions, pizza & beer evenings, etc.

  • FLEX WORK & WORKATION: You are flexible in terms of working hours. Our Flex Work Policy enables you to switch between office days and home office days or you can work fully remote. You can also work from abroad in Europe one month per year

  • PERSONAL DEVELOPMENT: We support your personal and professional development through an individual Growth Plan and our Inhouse Academy

  • CAMPER BUDGET: You get an annual camper budget to experience the #happyroadsurfing lifestyle for yourself

  • JOB BIKE: Stay fit with our job bike offer

  • DISCOUNTS: Use our Corporate Benefits Platform, the Travel Industry Card, and Family & Friends Discounts

  • THE PLACE TO BE: Look forward to a beautiful, bright office with everything your heart desires, like table tennis and table football. You can also enjoy our weekly breakfast and lunch specials

  • OFFICE DOGS: Dogs in the office are welcome

THE ROLE – YOUR PASSION

  • You foster a security-first mindset within internal IT and software development teams, actively raising awareness about potential risks, their associated damages, and the importance of integrating security into every aspect of their work.

  • You coordinate, conduct, and review external penetration and security testing of our internal IT systems and application landscape, ensuring thorough assessments and tracking the implementation of recommended improvements to close identified vulnerabilities.

  • You develop and implement robust procedures and policies that ensure all systems meet regulatory security standards and compliance requirements, while empowering team members with clear guidance to stay proactive about their security responsibilities.

  • You analyze, recommend, and implement strategic projects that enhance our overall security posture while balancing the organization’s productivity needs, such as adopting AI-driven productivity tools or securing comprehensive cybersecurity insurance.

  • You stay ahead of the evolving cybersecurity threat landscape by continuously learning about emerging technologies and industry trends, while actively managing relationships with cybersecurity vendors to ensure Roadsurfer is always well-equipped to tackle new challenges.

  • You collaborate closely with IT security staff and software development teams to implement effective security controls, rigorously track their performance, and manage post-mortem reviews to ensure continuous improvement after incidents.

  • Your proactive approach ensures Roadsurfer maintains customer trust and regulatory compliance, protecting sensitive data and aligning all security efforts with the company’s commitment to excellence and transparency.

  • You leverage automation and orchestration to streamline security operations, automating repetitive tasks and coordinating complex workflows to reduce human error and ensure that Roadsurfer’s defenses are consistently ahead of emerging threats.

WHAT YOU NEED TO SURF THE WAVE WITH US

  • Act as an ambassador: You represent and promote a security-first culture, serving as a role model and advocate for best practices across all levels of the organization.

  • Influence others: You inspire teams by clearly communicating the importance of cybersecurity, fostering collaboration, and driving alignment toward shared goals.

  • Technical writing expertise: You excel at creating clear and concise documentation, including problem definitions, success measurements, evaluation of options, and actionable recommendations.

  • First experience in IT and application security: You have foundational knowledge in security practices, such as OWASP, and understand key risks and mitigation strategies for applications and IT systems.

  • Eager to obtain security certifications: You demonstrate a proactive mindset, seeking to enhance your expertise through industry-recognized certifications like CISSP, CISM, or CEH.

  • Experience in achieving company security certificates: You have hands-on experience contributing to or leading efforts to achieve company-wide security certifications, such as ISO 27001, ensuring compliance and improving security standards.

Ready to surf?

We are looking forward to your application! If you have any questions, please drop a message to our recruiter Luca via team@roadsurfer.com and we will get back to you as soon as possible.

ABOUT #ROADSURFER

As a #roadsurfer you are part of an open, fast-growing team with ambitious goals and a great team spirit. We stick together and combine a brutal hands-on mentality with fun at work! It means shaping the future of outdoor travel and building an ecosystem for sustainable outdoor travel. We are more than Europe's largest campervan rental company. In 2021 we launched our platform roadsurfer spots in addition to our other products rent, abo and sales – a platform where you can discover and book unique camping spots. But that’s only the beginning. We are growing fast, so hop on board and join us on our journey. We’re looking for motivated and passionate people whose hearts beat for campers. Wanna spread the roadsurfer spirit across the globe with us?

roadsurfer Glassdoor Company Review
4.0 Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon Glassdoor star icon
roadsurfer DE&I Review
No rating Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon
CEO of roadsurfer
roadsurfer CEO photo
Markus Dickhardt
Approve of CEO

Average salary estimate

$70000 / YEARLY (est.)
min
max
$60000K
$80000K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About Senior Security Engineer (m/f/d), roadsurfer

Are you ready to make waves as a Senior Security Engineer with Roadsurfer in Munich? We are looking for a passionate individual to join our team, working on both internal IT systems and our exciting consumer-facing software applications. In this role, you’ll be at the heart of our mission to deliver unforgettable travel adventures while ensuring the utmost security for our operations and customer data. Your responsibilities will include fostering a security-first mindset, conducting penetration tests, implementing robust policies, and keeping up with the ever-evolving cybersecurity landscape. You'll collaborate with our talented IT security staff and software development teams to implement effective security controls that keep Roadsurfer ahead of potential threats while maintaining compliance with regulations. Imagine working in a vibrant environment where team spirit flourishes, and your ideas are valued. You’ll benefit from a flexible work policy, personal development opportunities, and even an annual camper budget to enjoy the happy roadsurfing lifestyle. Plus, our open office allows furry friends, so bring your office dog along! Dive into this opportunity to not just secure our systems, but to drive a culture of security that empowers our team members and earns the trust of our customers. If you’re a creative problem-solver eager to elevate our security measures, Roadsurfer is ready for you. Let's surf ahead together on this adventure!

Frequently Asked Questions (FAQs) for Senior Security Engineer (m/f/d) Role at roadsurfer
What are the responsibilities of a Senior Security Engineer at Roadsurfer?

As a Senior Security Engineer at Roadsurfer, your primary focus will be fostering a security-first culture within the organization. You will coordinate and conduct external penetration testing, develop robust security procedures, analyze strategic projects to enhance security posture, and manage relationships with cybersecurity vendors. Your role will also include collaborating with IT security staff and development teams, tracking security performance, and ensuring compliance with regulatory standards.

Join Rise to see the full answer
What qualifications do I need to apply for the Senior Security Engineer position at Roadsurfer?

To apply for the Senior Security Engineer position at Roadsurfer, you should possess foundational knowledge in IT and application security, with familiarity in security practices such as OWASP. Experience in achieving company security certificates, along with a proactive desire to obtain recognized security certifications like CISSP or CISM, is highly beneficial. Strong technical writing skills and the ability to clearly communicate security concepts will also set you apart.

Join Rise to see the full answer
What does the work environment look like for a Senior Security Engineer at Roadsurfer?

At Roadsurfer, the work environment for a Senior Security Engineer is vibrant and collaborative, located in Munich. You’ll enjoy flexible work options, allowing for remote work or office days. Expect a collegial atmosphere where regular team events foster camaraderie. The open office space is designed for creativity, with amenities such as table tennis and office dogs for a fun, relaxing workspace.

Join Rise to see the full answer
How does Roadsurfer support personal and professional development for its Senior Security Engineers?

Roadsurfer is committed to supporting the growth of its employees, including Senior Security Engineers, through an Individual Growth Plan and access to an Inhouse Academy, designed to enhance both personal and professional skills. You’ll have the opportunity to pursue certifications and trainings that align with your career goals, ensuring you remain current in the rapidly changing field of cybersecurity.

Join Rise to see the full answer
What security tools and technologies should a Senior Security Engineer at Roadsurfer be familiar with?

A Senior Security Engineer at Roadsurfer should be familiar with a range of security tools and technologies that support cybersecurity efforts. This may include intrusion detection systems, firewalls, security incident and event management (SIEM) systems, vulnerability scanners, and automation tools for streamlining security operations. Staying informed about emerging technologies and industry trends is also essential for tackling new cybersecurity challenges.

Join Rise to see the full answer
Common Interview Questions for Senior Security Engineer (m/f/d)
Can you describe your experience with IT and application security best practices?

In your response, focus on specific experiences where you applied security best practices in your previous roles. Mention any frameworks or standards you’ve implemented, such as OWASP, and outline how they improved security measures. Highlight your understanding of key risks and your proactive approach to mitigation to demonstrate your expertise.

Join Rise to see the full answer
How do you stay current with cybersecurity trends and technologies?

When answering, mention your strategies for continual learning, such as attending industry conferences, subscribing to cybersecurity news outlets, participating in online courses, and engaging with professional communities. Emphasize that staying informed helps you anticipate threats and implement effective security measures at Roadsurfer.

Join Rise to see the full answer
Describe a time you successfully managed a security incident.

Outline a specific incident where you played a key role in management. Discuss the steps you took to investigate, mitigate, and resolve the issue, emphasizing your problem-solving skills and ability to work collaboratively with your team. This showcases your hands-on experience and demonstrates your effectiveness under pressure.

Join Rise to see the full answer
What role does automation play in your approach to security?

In your answer, discuss how you believe automation can streamline security operations by handling repetitive tasks and minimizing human error. Provide examples of tools you've used for automation, and explain how these have improved efficiency in security monitoring or incident response.

Join Rise to see the full answer
How do you promote a security-first culture within a team?

Share methods you’ve employed to advocate for a security-first mindset amongst colleagues. This may include organizing training sessions, creating informative resources, and encouraging open discussions about security practices. Showcase your ability to influence and engage with team members on security topics.

Join Rise to see the full answer
What strategies do you use for conducting security assessments?

Discuss your systematic approach to security assessments, including planning, executing, and reviewing. Mention techniques such as vulnerability assessments and penetration testing, ensuring to explain how you track findings and implement improvements to close any identified gaps.

Join Rise to see the full answer
Can you discuss your experience with regulatory compliance and security certifications?

In your response, highlight your familiarity with relevant security standards, such as ISO 27001, and describe your hands-on involvement in achieving compliance. Discuss your understanding of the importance of meeting regulatory requirements and how it contributes to building trust with customers.

Join Rise to see the full answer
How would you analyze the trade-offs between security and user productivity?

Communicate your understanding of the need for a balanced approach to security and productivity. Discuss scenarios where you’ve had to make difficult decisions and how you navigated solutions that enhanced security without hindering user experience. This demonstrates your ability to think critically and strategically.

Join Rise to see the full answer
What has been your experience with security training for non-technical teams?

Highlight your experience in developing and delivering security training targeted at non-technical teams. Discuss how you tailored content to be approachable while still informative, enhancing their understanding and awareness of security risks and practices.

Join Rise to see the full answer
Where do you see the future of cybersecurity heading, and how will you adapt?

Share your insights on emerging trends such as AI in cybersecurity, increased remote work security needs, or evolving threats. Discuss how you plan to continuously adapt by learning new skills, staying agile with tools, and engaging in proactive risk assessment to remain effective in your role.

Join Rise to see the full answer
Similar Jobs
Photo of the Rise User
McDonald's Corporation Hybrid 110 N Carpenter St, Chicago, IL 60607, USA
Posted 4 days ago
Photo of the Rise User
Posted 2 days ago
Photo of the Rise User
Posted 13 days ago
Photo of the Rise User
Posted 6 hours ago
Photo of the Rise User
Posted 40 seconds ago
MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
EMPLOYMENT TYPE
Full-time, hybrid
DATE POSTED
December 6, 2024

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!