Skip to content

Open nowPosted 23 days ago

Head of Security (f/m/d)

1komma5grad319 open roles

Where
Remote
Work mode
Remote
Get the CV for this job

From $25 per CV, paid once. No subscription.

Your applicationOpen nowHead of Security (f/m/d)1komma5grad · Remote
  1. YouYes, apply to this one.

  2. CV RocketCV written for this posting.

  3. 25 readersRecruiter, hiring manager, skeptic. Round after round.

  4. CV RocketApplied on 1komma5grad's own form.

The reply lands in your private mailbox

3×more interviews than doing it yourself with ChatGPT.

The clock on this job

Early applications get read.

7.8% of postings close within 7 days. Measured by our own scanner across the market.

Share of postings closed within
  1. 1.7%1 day
  2. 3.5%3 days
  3. 7.8%7 days
  4. 14.6%14 days
  5. 34.1%30 days
This job: posted 23 days ago

The posting

1KOMMA5°

At 1KOMMA5°, we pursue a clear vision: Living on wind and sunlight forever for free. To make this a reality, we are building the energy system of the future with Heartbeat AI. Want to be part of it?

We bring together regional craftsmanship and scalable software: We don't think of solar, batteries, heat pumps, and e-mobility as isolated components, but control them as an intelligent, integrated overall system in our virtual power plant. Directly connected to the electricity market – in real time, fully automated. This way, energy is used when it is available from renewables and particularly cost-effective. By 2030, our goal is to transition 1.5 million households to renewable energies. Over 3,000 people are working towards this every day, at more than 80 locations worldwide, from Finland to Australia.

Want to take responsibility and build solutions that truly matter? Apply now and help us shape the energy world of tomorrow.

Become a part of our mission and learn more about our Product & Tech team!

Deine Position

As Head of Security, you are the security owner for Heartbeat AI GmbH, the company that builds software for the 1KOMMA5° group. You lead Team Trust, our security team inside the Core Platforms domain, and you are the person the technology organisation and the wider group turn to on security questions. What makes this different from most security leadership roles: we don't only protect data centres and laptops. We run connected energy systems in people's homes, and those systems are part of critical energy infrastructure. You protect exactly the infrastructure that drives the transition towards renewable energy. This is a hands-on leadership role. You build the team and the framework, and you stay close enough to the technology to make good calls yourself.

Key responsibilities include but are not limited to:

  • Leading Team Trust: direction, hiring, growth, health and mentoring.
  • Cloud and IoT Security: protect our cloud, our applications, and the connected hardware in our customers' homes.
  • Risk and Compliance: own cybersecurity frameworks and the regulations that applies to energy companies.
  • Identity and Access Management: internal permissions and secure development that scale with the engineering org.
  • Security as a Product: capabilities developers use by default.
  • Translating Risk: make security risk concrete for non-technical decision makers, up to C-level.

Technologies your team works with include:

  • Google Cloud Platform, Vercel
  • Auth0
  • Wiz
  • GitHub Advanced Security
  • Terraform / Terramate
  • Datadog, OpenTelemetry, Incident.io
  • Cursor, MCP, and agentic engineering workflows
  • TypeScript, Python and GoLang

Dein Profil

  • Several years of experience in security engineering or security leadership, including leading or mentoring engineers.
  • A technical background in cloud security, preferably Google Cloud Platform, with enough depth to reason about infrastructure, CI/CD, identity, and application security.
  • Startup agility: you have built a security framework from scratch, or close to it, with limited initial resources and a clear view of what matters first.
  • Regulatory knowledge: you are familiar with cybersecurity frameworks such as NIST CSF and ISO 27001, and ideally with critical infrastructure rules like NIS2 and KRITIS.
  • Strong communication skills and the ability to make security risk concrete for engineers, product managers, and senior business stakeholders.
  • A pragmatic, outcome-oriented way of working.
  • Excellent English communication skills; German is a plus.

Bonus points for:

  • Hands-on coding experience.
  • Experience with security in an AI-assisted engineering setup, including agentic workflows and their guardrails.
  • Experience running or coordinating security incident response.
  • Experience with security and IT controls in a company preparing for a public listing.
  • Experience in a scale-up environment with roughly 100 to 1000 employees.
  • Interest in climate tech and renewable energy.

Benefits

  • You are part of an international, dynamic, and highly motivated team of people who have proven to make things happen
  • With your work, you accelerate the "energy transition" and hence have a direct impact on our climate
  • Work with and learn from other super-smart colleagues
  • You will enjoy direct contact with core decision-makers
  • Flat hierarchies and short decision paths, so your work reaches production quickly
  • You work remotely (Germany-wide) with a genuinely flexible remote policy, and our offices in Hamburg, Berlin and Munich are there whenever you want them
  • Create a healthy balance alongside your work and enjoy all the benefits of the EGYM Wellpass
  • Benefits and discounts are yours with Futurebens
  • Whether city bike or e-bike - be flexible with our job bike leasing and do something good for the environment at the same time
From $25, paid onceGet the CV for this job

What happens when you press

One press. We do the rest.

  1. A CV for this posting

    Written against 1komma5grad's own wording, from every piece of relevant proof in your profile.

  2. 25 readers review it

    Recruiter, hiring manager, skeptic and more read every draft, round after round. You get the best round.

    The review screen in CV Rocket: how each CV was read, round by round.
  3. We apply on 1komma5grad's form

    Our application engine gets through the hardest forms there are. Where a question needs you, AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

    An application in CV Rocket: every answer filled in on the employer's form.
  4. Every reply, sorted

    1komma5grad's answer lands in your private mailbox, and we classify it on arrival: interview, question, rejection.

    The CV Rocket inbox: each employer reply classified as an interview, an action or a rejection.
  5. Reply with AI

    AI helps you write the email, checks it and sends it. We show you whether the recruiter read it.

  6. The interview in your calendar

    Full integration with your calendar. The invitation goes straight in.

    An interview invitation in the CV Rocket inbox, added to the candidate's calendar.
Get the CV for this job

From $25 per CV, paid once. No subscription.

Why it works

3×

more interviews than doing it yourself with ChatGPT.

ChatGPT writes a CV and never learns what happened to it. We see every reply. For each CV we know:

  • How it was written, and how the review scored it
  • When we applied, and how long after the posting went up
  • Which posting, which company, which city
  • Who got the interview, and who heard nothing

That is how we know which CVs get called.

Get the CV for this job

From $25 per CV, paid once. No subscription.

The numbers game

More applications. More interviews.

Every application goes out with its own CV, written for that posting and paid once. Send enough of them and the law of large numbers finds you the job.

By hand5–10
With CV Rocket100
applications a day

Before you press

Straight answers

Get the CV for this job

From $25 per CV, paid once. No subscription.

What if my background isn't good enough?

We make the most of the background you have. The CV uses every piece of relevant proof your profile holds, and one of the 25 readers reads your whole profile and flags what the CV left out.

Do you really apply for me?

Yes, on the employer's own form, the hardest ones included. Where a question needs you, you answer it right there and AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

Is it a subscription?

No. You pay once per CV, from $25. Every application goes out with its own CV, written for that posting.

One job. One CV.
Paid once.

Pick the posting you want. We write for it, apply for you and catch the reply.

Get the CV for this job

From $25 per CV, paid once. No subscription.