Bereits vergeben

Lass dir die nächste nicht entgehen — erhalte passende Stellen direkt per Mail.

DI

Digistore24 DACH

IT Security Engineer (Cloud) - 100% Remote (m/w/d)

Remote
Gleitzeit, Teilzeit, Schichtarbeit
vor 1 Monat
Deutschland
Stellenbeschreibung

About Digistore24

We are one of the fastest-growing tech companies in Europe. Our mission is to empower people with our software and expertise to share their knowledge online, enabling them to fulfill their dream of an own business. As a result, millions of people gain access to information that helps them reach their goals. To keep pace with our growth, we aim to expand our teams sustainably. We emphasize working with experts and strong personalities who share our values -- regardless of their location.

Your New Dream Job

  • Protect our systems and cloud landscapes: You will continuously analyze security risks, implement modern security standards, and ensure the protection of our cloud infrastructure and critical business systems.
  • Design clear security policies and processes: You will further develop our security policies, standardize security processes, and ensure their application throughout the company.
  • Drive security awareness and training: You will raise security awareness in the company through training, workshops, and proactive communication with all teams.
  • Ensure structured incident and risk management: You will identify security incidents early, manage their processing, create analyses, and continuously develop our incident response procedures.
  • Ensure Compliance (PCI, ISO, NIS2): You will support the company in adhering to external standards, prepare for audits, and guide departments through compliance requirements.
  • Monitor our fundamental security mechanisms: You will analyze security-critical components, support our monitoring and audit processes, and ensure transparency regarding security-relevant events.
  • Collaborate closely with product, IT, and engineering teams: You will support other teams in the secure design of their solutions, reduce risks, simplify security processes, and contribute to a secure, scalable overall architecture.
  • Ensure a secure software development process: You will expand our secure development lifecycle (SSDLC), support teams with security-related topics, and ensure that security checks are a reliable part of our processes.

Your Benefits at Digistore24

  • 100% remote work, as long as you can guarantee an undisturbed internet connection.
  • The stability of an extremely successful German high-tech company that has retained its start-up spirit over the years.
  • Regular on-the-job training and development.
  • International team with strong cohesion.
  • Regular team events in various European countries.
  • State-of-the-art technical equipment.
  • Responsibility from day one.
  • Work with your team on a first-name basis, with no dress code and at eye level.

Job Requirements

Your Superpowers

  • You identify security risks early and proactively think in terms of solutions.
  • You have a very good understanding of how software, infrastructure, and cloud systems interact.
  • Assessing the security of systems, services, and processes is your passion.
  • Nice-to-have: Experience with compliance standards such as ISO 27001, PCI DSS, or NIS2.
  • Nice-to-have: Experience with security testing (e.g., SAST, DAST, Vulnerability Scans).
  • Understanding of secure development and infrastructure processes (SSDLC, Cloud Security, IAM, Risk Management).
  • Analytical thinking when evaluating security incidents and vulnerabilities.
  • Strong communication skills – able to explain technical risks clearly.
  • Basic knowledge of cloud environments (GCP/AWS) and automated workflows (e.g., CI/CD).
  • Nice-to-have: Security tools & standards like SIEM, SSO/MFA, Audits, Policies.

This Job is NOT for you if:

  • You don't enjoy identifying and minimizing security risks.
  • Structured analytical work and forward-looking planning are difficult for you.
  • You are not interested in continuous learning in security topics: IT security is constantly changing.
  • You are reluctant to work independently on security-critical projects.
  • You shy away from conflict: Security sometimes means openly addressing clear risks.
  • You don't feel comfortable in an international team.
  • You do not identify with our values.

A Typical Day Might Look Like This:

  • Monitoring & Analysis: You check security alerts, logs, and messages from our systems and initiate measures.
  • Security Review: You work on security topics such as SSDLC improvements, risk analyses, policies, or cloud security hardening.
  • Incident Response: You analyze reported security incidents, assess risks, and work on sustainable solutions.
  • Projects: You support projects such as policy development, compliance preparation, vulnerability management, or company-wide awareness measures.

Our Values

Please take a close look at our values. Are you ready to live them?

Benefits

  • Team Events

Salary

  • Currency: EUR

Remote Model

  • Hybrid