Your Mission
We're building a modern Internal Developer Platform (IDP) to enable secure, scalable, and efficient software delivery — and security & compliance is a first-class concern from day one.
As Security and Compliance Engineer in our Platform team, you'll be responsible for designing, implementing, and evolving the security architecture of our IDP. Your focus will be on embedding security into the entire Software Development Lifecycle (SSDLC), enabling secure-by-default development practices, and advancing our Zero Trust approach across infrastructure, tooling, and pipelines.
You'll collaborate closely with platform, infrastructure, compliance, and application teams to ensure that security and regulatory are not a bottleneck — but an enabler for safe, fast, and autonomous development.
Our Stack and Environment
We're building a secure, reproducible, and developer-friendly platform based on :
Nix / NixOS – declarative, reproducible system configuration
Rust – used for backend tooling
Terraform – infrastructure-as-code
GitLab – CI / CD and code lifecycle management
OpenStack + Kubernetes + GitOps – our runtime and delivery foundation
OpenTelemetry + Grafana Stack (LGTM) – observability
Policy-as-code, Secrets Automation, and security-as-code everywhere
APCT1_DE
Security Engineer Mfd • Essen, Germany