Security Engineer (ITSec) (m,f,x)

HelloFresh
Berlin, Germany
On-site

Who this role is best for

Geared toward candidates comfortable with security hardening and AI risk mitigation, working in a global, hybrid environment with a focus on enterprise IT infrastructure and awareness campaigns.

Best fit for

  • Candidates with experience in enterprise security frameworks and AI risk management
    — “Hands-on experience hardening workstations, network equipment, servers, IAM platforms through using CIS/NIST frameworks
  • Individuals who enjoy cross-functional collaboration and influencing security culture
    — “Assist in company-wide security awareness campaigns and vulnerability patching

Things to consider

  • The role requires a blend of technical and communication skills for enterprise-wide impact
    — “Good communication and reporting skills
  • Candidates must be prepared to engage with diverse IT tools and security protocols
    — “Implement secure configurations and policies for IAM, EDR, VPN, Firewalls, Email Security, Slack and MDM tools

How to stand out

  • Highlight your experience with AI risk mitigation and security tool implementation
    — “Adapt to modern AI adoption strategy through implementing and mitigating AI controls in a variety of methods
  • Emphasize your ability to build and improve security processes across IT domains
    — “Develop and deliver tools and processes to enable colleagues to achieve their goals and objectives
  • Demonstrate your ability to analyze and counter social engineering attacks
    — “Understanding of modern-day social engineering attacks and how to prevent them through technical controls and training
  • Position yourself as an expert in malware analysis across multiple OS platforms
    — “Ability to perform malware analysis on Windows, MacOS, and Linux machines
Pace · Fast PacedCollaboration · MediumAutonomy · MediumDecision Impact · Team

Derived from job-description analysis by Serendipath's career intelligence engine.

What success looks like

  • enhanced security posture
  • deployed modern security solutions
  • delivered security awareness campaigns
Typical background
security engineeringnetwork securitycloud security

Skills & requirements

Required

Malware AnalysisNetwork SecurityIAMEDRFirewallsEmail SecurityMDM ToolsAI ControlsPatch ManagementSecurity HardeningTcp/ip ProtocolsSecurity Threats

Preferred

Cloud SecuritySecurity Automation

Stack & domain

PythonReactCis/nist FrameworksGenerative AIMalware AnalysisTcp/ip ProtocolsSecurity ThreatsCommunicationReportingLeadershipProblem-solvingCollaborationIT SecurityEnterprise ITAICloud SecurityNetwork SecurityData Security

About the role

Original posting from HelloFresh

The role

We’re looking for a new teammate to join us on the journey of keeping HelloFresh a trusted name - someone with a passion for security and appetite for new challenges. Security Engineers work in a variety of ways to constantly iterate and improve HelloFresh’s security posture. 

You will be the first port of call for responding to any of HelloFresh’s security related questions and concerns. You will also develop and deliver tools and processes to enable colleagues to achieve their goals and objectives.

Above all, we are looking for people who will make HelloFresh better. We believe there are many different ways of developing skills and we love diverse experiences! So even if you don’t “tick all the boxes” but think you’d thrive in this role, we would really like to learn more about you.

What you’ll do

Enhance  the security posture of the enterprise IT infrastructure, services, and tools by hardening them against abuse and nefarious activity

Implement  secure configurations and policies for IAM, EDR, VPN, Firewalls, Email Security, Slack and MDM tools

Responsible  for security hardening and posture of enterprise IT assets

Adapt  to modern AI adoption strategy through implementing and mitigating AI controls in a variety of methods including Shadow AI, MCP integrations, and protecting against AI-based risks

Deploy, optimize and operate  modern security solutions like EDR, Zero-Trust, SSE/CASB, DLP, and Patch Management tools

Assist  in company-wide security awareness campaigns and vulnerability patching

Perform  comparative technical and commercial analysis for various security products/tools prior to procurement

What you’ll bring

Hands-on experience hardening workstations, network equipment, servers, IAM platforms through using CIS/NIST frameworks

Understanding and usage of Generative AI from a corporate perspective, including LLM guardrails, MCP connections/gateways, and risks stemming from its usage such as prompt injections

Ability to perform malware analysis on Windows, MacOS, and Linux machines

Understanding of modern-day social engineering attacks and how to prevent them through technical controls and training

In-depth understanding of common TCP/IP protocols and modern-day security threats on each network layer and protecting against them

Good communication and reporting skills

What we offer

Elevate your lifestyle! Join one of Europe's fastest-growing tech powerhouses in a dynamic phase of expansion.

Immerse yourself in a diverse global community of 90+ nationalities.

Enjoy a competitive compensation package that goes beyond the norm, with perks like a HelloFresh- subsidized Pension Scheme and a Hybrid working model.

Elevate your lifestyle with exclusive discounts on your weekly HelloFresh box and office meals.

Invest in your growth with a German language learning budget, and access to the HelloFresh Academy.

Plus, we've got your well-being covered with mental health support, transportation perks, and working-parent-friendly benefits. From our 24/7 gym access,wellbeing platforms like Headspace and Spill, to sabbatical leave options, HelloFresh is not just a workplace; it's a lifestyle of perks and possibilities!

Source: HelloFresh careers

Similar roles