Skip to content

Open nowPosted 92 days ago

Senior Security and Compliance Engineer (m/f/d)

codesphere11 open roles

Where
Munich
Work mode
Hybrid
Get the CV for this job

From $25 per CV, paid once. No subscription.

Your applicationOpen nowSenior Security and Compliance Engineer (m/f/d)codesphere · Munich
  1. YouYes, apply to this one.

  2. CV RocketCV written for this posting.

  3. 25 readersRecruiter, hiring manager, skeptic. Round after round.

  4. CV RocketApplied on codesphere's own form.

The reply lands in your private mailbox

3×more interviews than doing it yourself with ChatGPT.

The clock on this job

Early applications get read.

7.8% of postings close within 7 days. Measured by our own scanner across the market.

Share of postings closed within
  1. 1.7%1 day
  2. 3.5%3 days
  3. 7.8%7 days
  4. 14.6%14 days
  5. 34.1%30 days
This job: posted 92 days ago

The posting

ABOUT CODESPHERE

Codesphere is a Virtual Cloud Provider from Germany building the future of sovereign cloud infrastructure. Our platform gives enterprises and governments full sovereignty without giving up modern cloud capability – a vision recently validated by a series of multi-million European government tenders.

Since our founding in Karlsruhe in 2020, we’ve expanded into an international team of 60+ experts. Based in Karlsruhe and Munich and backed by top-tier investors, we are chasing a bold vision.

We’re scaling fast and would love for you to join us and grow alongside us 🚀

ABOUT THE ROLE

Codesphere runs cloud infrastructure that enterprises and governments depend on – security is not an afterthought, it's a foundation. As a Senior Security & Compliance Engineer (m/f/d), you own the security posture of our platform: from vulnerability management and incident response to compliance frameworks and developer enablement.

WHAT YOU'LL DRIVE

- You conduct security assessments, penetration testing, and vulnerability scanning – and drive remediation with development teams

- You manage security scanning tooling (DAST/SAST) and perform security code reviews

- You design and implement security controls across our full technology stack, defining and enforcing standards for development, infrastructure, and data

- You integrate security into our CI/CD pipelines and development processes – Shift Left and DevSecOps in practice, not just on paper

- You develop and maintain our Security Incident Response Plan, monitor security logs via SIEM, and lead forensic analysis when needed

- You ensure compliance with relevant standards and regulations – including GDPR and ISO 27001

- You manage IAM systems with a least privilege approach

- You develop and deliver security awareness training for the whole company – and specialised secure coding training for engineering teams

WHAT MAKES YOU A GREAT FIT

- 5+ years in a security engineering or similar role, ideally in a cloud or SaaS environment

- Hands-on experience with penetration testing, vulnerability management, and DAST/SAST tooling

- Solid understanding of DevSecOps principles and CI/CD security integration

- Familiarity with SIEM tools, incident response, and forensic analysis

- Knowledge of relevant compliance frameworks – GDPR, ISO 27001, and ideally BSI IT-Grundschutz

- Strong communicator – able to translate security risks into clear guidance for both technical and non-technical audiences

- Fluent in English; German is a strong plus given the nature of our compliance landscape

WHAT'S IN IT FOR YOU

- 32 days of paid time off – 30 regular vacation days plus Christmas Eve and New Year's Eve off

- Meal allowance – up to 15 digital vouchers per month, adding up to over €100 net for you

- Flexibility – hybrid work setup with mobile work options and flexibility around core hours

- Steep learning curve – fast-moving environment, real ownership, and a front-row seat to scaling a company

- Job-Rad – lease a bike through us, tax-free

- Gym access – stay active on site (Karlsruhe office only)

- Employee events – from team offsites to regular get-togethers

- Company pension scheme – company-supported pension to set you up for later

- Great public transport links – both offices are within walking distance of tram and metro stops

From $25, paid onceGet the CV for this job

What happens when you press

One press. We do the rest.

  1. A CV for this posting

    Written against codesphere's own wording, from every piece of relevant proof in your profile.

  2. 25 readers review it

    Recruiter, hiring manager, skeptic and more read every draft, round after round. You get the best round.

    The review screen in CV Rocket: how each CV was read, round by round.
  3. We apply on codesphere's form

    Our application engine gets through the hardest forms there are. Where a question needs you, AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

    An application in CV Rocket: every answer filled in on the employer's form.
  4. Every reply, sorted

    codesphere's answer lands in your private mailbox, and we classify it on arrival: interview, question, rejection.

    The CV Rocket inbox: each employer reply classified as an interview, an action or a rejection.
  5. Reply with AI

    AI helps you write the email, checks it and sends it. We show you whether the recruiter read it.

  6. The interview in your calendar

    Full integration with your calendar. The invitation goes straight in.

    An interview invitation in the CV Rocket inbox, added to the candidate's calendar.
Get the CV for this job

From $25 per CV, paid once. No subscription.

Why it works

3×

more interviews than doing it yourself with ChatGPT.

ChatGPT writes a CV and never learns what happened to it. We see every reply. For each CV we know:

  • How it was written, and how the review scored it
  • When we applied, and how long after the posting went up
  • Which posting, which company, which city
  • Who got the interview, and who heard nothing

That is how we know which CVs get called.

Get the CV for this job

From $25 per CV, paid once. No subscription.

The numbers game

More applications. More interviews.

Every application goes out with its own CV, written for that posting and paid once. Send enough of them and the law of large numbers finds you the job.

By hand5–10
With CV Rocket100
applications a day

Nearby

Live postings like this one

Same employer first, then the same role elsewhere.

Before you press

Straight answers

Get the CV for this job

From $25 per CV, paid once. No subscription.

What if my background isn't good enough?

We make the most of the background you have. The CV uses every piece of relevant proof your profile holds, and one of the 25 readers reads your whole profile and flags what the CV left out.

Do you really apply for me?

Yes, on the employer's own form, the hardest ones included. Where a question needs you, you answer it right there and AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

Is it a subscription?

No. You pay once per CV, from $25. Every application goes out with its own CV, written for that posting.

One job. One CV.
Paid once.

Pick the posting you want. We write for it, apply for you and catch the reply.

Get the CV for this job

From $25 per CV, paid once. No subscription.