Web Security Engineer

None  •  IT & Software  •  Wiesbaden, Germany

<div class="show-more-less-html__markup show-more-less-html__markup--clamp-after-5 relative overflow-hidden"> <strong>About The Company<br/><br/></strong>The Haufe Group is a leading provider of digital transformation solutions, offering innovative software, consulting, and services to organizations across various industries. Renowned for its commitment to quality, security, and customer-centricity, the Haufe Group empowers businesses to optimize their processes, enhance compliance, and foster sustainable growth. With a strong focus on technology-driven solutions, the company continuously invests in research and development to stay ahead of industry trends and deliver value-added services to its clients. The Haufe Group values diversity, collaboration, and continuous learning, creating a dynamic work environment where employees can thrive and contribute meaningfully to the company's success.<br/><br/><strong>About The Role<br/><br/></strong>We are seeking a dedicated Web Application Security Engineer to join our Security Enablement team at Haufe Group. In this role, you will play a vital part in safeguarding our core applications that serve over one million users, including small and micro-enterprises across Germany. Your primary responsibility will be to identify, analyze, and mitigate security vulnerabilities within our web applications and cloud environments, particularly leveraging AWS cloud services. You will collaborate closely with development teams throughout the entire software development lifecycle, from planning and implementation to deployment and maintenance, ensuring security is integrated at every stage.<br/><br/>This position offers an exciting opportunity to work in a modern, agile environment utilizing DevOps practices, Scrum, and Kanban methodologies. You will have the chance to explore new security technologies, contribute to team initiatives such as hacking days and security workshops, and develop your skills in a challenging and supportive setting. Flexibility in working remotely or from our office allows you to maintain a healthy work-life balance while making a tangible impact on the security posture of our products.<br/><br/><strong>Qualifications<br/><br/></strong>The ideal candidate will possess a strong background in web application security, cloud security, and software development. You should have extensive experience with AWS cloud services, infrastructure as code (IaC), continuous integration/continuous deployment (CI/CD), and secure software development lifecycle (SDLC) practices. Proficiency in assessing vulnerabilities within Java web applications and JavaScript (TypeScript) web clients is essential, along with familiarity with dependency management tools such as NPM and Gradle.<br/><br/>Development skills in scripting languages like Bash and Python are highly desirable, enabling automation of security tasks and incident response procedures. You should be comfortable designing threat models, conducting vulnerability assessments, and effectively communicating security recommendations to technical teams. Experience in incident response is a plus. Fluency in German (minimum C2 level) and excellent English skills are required to collaborate effectively within our international team.<br/><br/><strong>Responsibilities<br/><br/></strong><ul><li>Identify, evaluate, and remediate security vulnerabilities in web applications and cloud environments, ensuring compliance with security standards and best practices.</li><li>Collaborate with feature teams during the design, development, and deployment phases to embed security measures and conduct threat modeling exercises.</li><li>Develop and maintain security mechanisms across multiple teams, including automated security testing and monitoring tools.</li><li>Conduct penetration testing, vulnerability scans, and security audits to proactively detect potential threats.</li><li>Provide clear and actionable security guidance and training to development teams to promote a security-first mindset.</li><li>Participate in security incident response activities, including analyzing breaches, mitigating risks, and implementing preventive measures.</li><li>Stay current with emerging security trends, tools, and vulnerabilities, continuously enhancing the security posture of our applications.</li><li>Support the development of security policies, standards, and documentation to ensure organizational compliance and best practices.<br/><br/></li></ul><strong>Benefits<br/><br/></strong>At Haufe Group, we value our employees and offer a comprehensive benefits package designed to support your professional growth and personal well-being. You will have access to flexible working arrangements, including the option to work remotely or from our modern office facilities. We provide ongoing training and development opportunities, including certifications, workshops, and conferences, to help you stay at the forefront of security technology.<br/><br/>Our benefits also include competitive salary packages, health and wellness programs, employee assistance services, and a vibrant company culture that encourages innovation and collaboration. Additionally, you will be part of a forward-thinking organization that prioritizes diversity, inclusion, and work-life balance, fostering an environment where your contributions are recognized and valued.<br/><br/>Equal Opportunity<br/><br/>The Haufe Group is committed to creating a diverse and inclusive workplace. We are an equal opportunity employer and do not discriminate based on race, ethnicity, gender, age, religion, disability, sexual orientation, or any other protected characteristic. We believe that a diverse team fosters innovation and drives our success, and we welcome applications from all qualified individuals who share our values and passion for security and technology. </div>

Job Overview
  • Datum der Veröffentlichung

    Jul 04, 2026

  • Kategorie

    IT & Software

  • Job Type

  • Standort

    Wiesbaden, Germany

  • Arbeitgeber

    FetchJobs.co

  • Source

    LinkedIn