Security Engineering, Manager (m/f/d)
<div class="content-intro"><p><span data-contrast="none"><strong>About the Company</strong></span></p>
<p><span data-contrast="none"><strong>Affinidi </strong>is a technology company dedicated to changing data ownership for good. We empower businesses and individuals with control and ownership of their data, with a comprehensive approach to managing their holistic identity – accounting for all aspects of their digital footprint while ensuring privacy and security. </span></p>
<p><span data-contrast="none">Affinidi’s technology enables users to benefit from decentralised digital identity solutions. We believe that everyone has the right to own and control their data, and we are committed to creating a trusted digital credentials ecosystem that empowers businesses and individuals to securely exchange data and services across borders and industries.</span></p>
<hr>
<p> </p></div><p><strong><span data-contrast="none"><span data-ccp-parastyle="heading 2">Build security into the DNA of a privacy</span><span data-ccp-parastyle="heading 2"> </span><span data-ccp-parastyle="heading 2">first technology company.</span></span></strong><span data-ccp-props="{"134233117":false,"134233118":false,"134245418":true,"134245529":true,"335559738":299,"335559739":299}"> </span></p>
<p><span data-contrast="auto">Affinidi is building the infrastructure for the next generation of digital identity and AI Trust Frameworks. We enable individuals and organisations to own, control, and share verifiable data and ensure Agentic solutions can be trusted. Our technology sits at the intersection of decentralised identity, cryptography, and AI. Security isn't a support function here; it is a core product value.</span><span data-ccp-props="{"134233117":false,"134233118":false,"335559738":240,"335559739":240}"> </span></p>
<p><span data-contrast="auto">We are looking for a Manager, Security Engineering to lead our Application, Platform, and Offensive Security functions. If you want to own a broad, meaningful security remit at a company where what you build genuinely matters to people's digital lives, then this is the role for you.</span><span data-ccp-props="{"134233117":false,"134233118":false,"335559738":240,"335559739":240}"> </span></p>
<p><strong><span data-contrast="none"><span data-ccp-parastyle="heading 2">What You'll Own</span></span></strong><span data-ccp-props="{"134233117":false,"134233118":false,"134245418":true,"134245529":true,"335559738":299,"335559739":299}"> </span></p>
<p><strong><span data-contrast="auto">Product & Application Security</span></strong><span data-contrast="auto"> You'll embed security engineers within Engineering teams operating a shift-left model, reviewing architecture, building threat models, integrating security controls into CI/CD pipelines, and driving vulnerability management to ensure releases are never blocked by avoidable risk.</span><span data-ccp-props="{"134233117":false,"134233118":false,"335559738":240,"335559739":240}"> </span></p>
<p><strong><span data-contrast="auto">Platform Security (AWS)</span></strong><span data-contrast="auto"> Working closely with Platform Engineering, your team will enforce least-privilege IAM, network security, secrets management, and infrastructure hardening across our AWS environment by triaging, classifying, and remediating risks with speed and precision.</span><span data-ccp-props="{"134233117":false,"134233118":false,"335559738":240,"335559739":240}"> </span></p>
<p><strong><span data-contrast="auto">Offensive Security</span></strong><span data-contrast="auto"> You'll run repeatable cycles of penetration testing and red-team cyber exercises for production services, using both internal capability and external partners. Your team will leverage AI tooling for threat modelling, attack surface monitoring, and adversarial simulation.</span><span data-ccp-props="{"134233117":false,"134233118":false,"335559738":240,"335559739":240}"> </span></p>
<p><strong><span data-contrast="auto">Team Leadership</span></strong><span data-contrast="auto"> You'll lead a diverse team of security professionals through mentoring individuals, setting SMART objectives, and building a culture of experimentation, reflection, and continuous improvement. You'll also contribute to the broader Security and Technology Operations leadership group.</span><span data-ccp-props="{"134233117":false,"134233118":false,"335559738":240,"335559739":240}"> </span></p>
<p><strong><span data-contrast="auto">Security Strategy & Governance</span></strong><span data-contrast="auto"> As a member of our Information Security Management Systems (ISMS) Committee, you'll contribute to our ISO27001 programme, drive security maturity initiatives, and ensure compliance with GDPR, DPDPA, and PDPA requirements within your scope.</span><span data-ccp-props="{"134233117":false,"134233118":false,"335559738":240,"335559739":240}"> </span></p>
<p><strong><span data-contrast="none"><span data-ccp-parastyle="heading 2">What Makes This Role Interesting</span></span></strong><span data-ccp-props="{"134233117":false,"134233118":false,"134245418":true,"134245529":true,"335559738":299,"335559739":299}"> </span></p>
<ul>
<li><strong><span data-contrast="auto">AI meets security</span></strong><span data-contrast="auto"> - You'll develop strategies to exploit AI for security operations </span><em><span data-contrast="auto">and</span></em><span data-contrast="auto"> defend against AI-driven threats. LLM risk, AI red-teaming, and adversarial simulation are active parts of your brief.</span><span data-ccp-props="{"134233117":false,"134233118":false,"335559738":0,"335559739":0}"> </span></li>
<li><strong><span data-contrast="auto">Real cryptographic depth</span></strong><span data-contrast="auto"> - Affinidi's stack includes applied cryptography and distributed identity infrastructure. This is not commodity security work.</span><span data-ccp-props="{"134233117":false,"134233118":false,"335559738":0,"335559739":0}"> </span></li>
<li><strong><span data-contrast="auto">Cross-functional influence</span></strong><span data-contrast="auto"> - You'll work across Engineering, Platform, Legal, and Governance, building partnerships that accelerate delivery while keeping security first.</span><span data-ccp-props="{"134233117":false,"134233118":false,"335559738":0,"335559739":0}"> </span></li>
<li><strong><span data-contrast="auto">Ownership with support</span></strong><span data-contrast="auto"> - You'll have strategic input, budget accountability for tooling, and direct access to the Director of Security and Technology Operations.</span><span data-ccp-props="{"134233117":false,"134233118":false,"335559738":0,"335559739":0}"> </span></li>
</ul>
<p><strong><span data-contrast="none"><span data-ccp-parastyle="heading 2">What We're Looking For</span></span></strong><span data-ccp-props="{"134233117":false,"134233118":false,"134245418":true,"134245529":true,"335559738":299,"335559739":299}"> </span></p>
<p><strong><span data-contrast="auto">Experience</span></strong><span data-ccp-props="{"134233117":false,"134233118":false,"335559738":240,"335559739":240}"> </span></p>
<ul>
<li><span data-contrast="auto">12+ years in technical security roles spanning application security, infrastructure/platform security, and offensive security</span><span data-ccp-props="{"134233117":false,"134233118":false,"335559738":0,"335559739":0}"> </span></li>
<li><span data-contrast="auto">Proven experience leading and growing security engineering teams</span><span data-ccp-props="{"134233117":false,"134233118":false,"335559738":0,"335559739":0}"> </span></li>
<li><span data-contrast="auto">Hands-on background in secure architecture, threat modelling, and SDLC security integration</span><span data-ccp-props="{"134233117":false,"134233118":false,"335559738":0,"335559739":0}"> </span></li>
<li><span data-contrast="auto">Experience operating in AWS environments with distributed systems and microservices</span><span data-ccp-props="{"134233117":false,"134233118":false,"335559738":0,"335559739":0}"> </span></li>
<li><span data-contrast="auto">Familiarity with AI security risks and tooling (OWASP LLM Top 10, security-focused AI tools)</span><span data-ccp-props="{"134233117":false,"134233118":false,"335559738":0,"335559739":0}"> </span></li>
<li><span data-contrast="auto">Strong cryptography knowledge; applied cryptography experience is a strong advantage</span><span data-ccp-props="{"134233117":false,"134233118":false,"335559738":0,"335559739":0}"> </span></li>
</ul>
<p><strong><span data-contrast="auto">Frameworks & Standards</span></strong><span data-ccp-props="{"134233117":false,"134233118":false,"335559738":240,"335559739":240}"> </span></p>
<ul>
<li><span data-contrast="auto">ISO27001, NIST CSF, OWASP - implementation or management experience required</span><span data-ccp-props="{"134233117":false,"134233118":false,"335559738":0,"335559739":0}"> </span></li>
<li><span data-contrast="auto">Regulatory data privacy frameworks (GDPR, DPDPA, PDPA) - working knowledge</span><span data-ccp-props="{"134233117":false,"134233118":false,"335559738":0,"335559739":0}"> </span></li>
</ul>
<p><strong><span data-contrast="auto">Tooling Familiarity</span></strong><span data-contrast="auto"> AWS Platform, WIZ · CrowdStrike · Snyk · Burp Suite · AWS Security · GitLab and GitHub · Rust · TypeScript/Node.js, Flutter/Dart, CoPilot, and mainstream LLM’s, Microsoft Enterprise tools.</span><span data-ccp-props="{"134233117":false,"134233118":false,"335559738":240,"335559739":240}"> </span></p>
<p><strong><span data-contrast="auto">You as a leader and operator</span></strong><span data-ccp-props="{"134233117":false,"134233118":false,"335559738":240,"335559739":240}"> </span></p>
<ul>
<li><span data-contrast="auto">You communicate complex security concepts clearly across all levels of seniority</span><span data-ccp-props="{"134233117":false,"134233118":false,"335559738":0,"335559739":0}"> </span>
Diese Anzeige stammt von ats_greenhouse. Originalanzeige ansehen ↗