We're Celonis, the global leader in Process Mining technology and one of the world's fastest-growing SaaS firms. We believe there is a massive opportunity to unlock productivity by placing data and intelligence at the core of business processes - and for that, we need you to join us.
The Team:
Within our InfoSec organization, Our global security engineering team is responsible for designing, building, and enhancing the underlying security components that help with securing the Celonis Application and Platforms stacks. We think about both offensively and defensively. We continuously monitor our global security posture and are always adapting to the ever-changing threat landscape. The security engineering team is looking for talented subject matter experts in application, platform and offensive security.
The Role:
The Senior Security Automation Engineer is a technical role focused on integrating automated security practices into our software development lifecycle. You will architect and implement automated security solutions within our CI/CD pipelines, ensuring vulnerabilities are identified and resolved early. Sitting at the intersection of development, operations, and security, this role requires strong programming skills, deep security knowledge, and a passion for building scalable, automated security processes
The work you’ll do:
- Security Integration in CI/CD: Embed automated security scans (SAST, DAST, SCA, container scanning) into CI/CD pipelines (GitHub Actions, Jenkins, GitLab CI). Implement “fail-fast” deployment gates for high-severity security findings.
- Develop and Maintain Security Tooling: Build custom integrations and scripts (Python, Go, or similar) for third-party security tools (Snyk, Checkmarx, Semgrep, Trivy). Enhance code review, threat modeling, and vulnerability management processes with the Product Security team.
- Infrastructure as Code Security: Secure Infrastructure as Code (IaC) deployments leveraging tools like Terraform, CloudFormation, and Checkov. Automate baseline security checks (CIS benchmarks, best practices) for cloud resources.
- SBOM & Supply Chain Security: Implement and maintain Software Bill of Materials (SBOMs) using tools such as Syft or CycloneDX. Establish build signing and artifact verification (Cosign, GPG) to protect software supply chains.
- Collaboration & Training: Partner closely with Cloud Security Engineers to address cloud application vulnerabilities and coordinate remediation. Provide security best practices and guidance to development teams on secure coding and secure CI/CD processes.
- Continuous Improvement & Research: Stay current on emerging threats and DevSecOps tooling. Proactively propose improvements to existing security automation and tooling.
The qualifications you’ll need:
- Security Automation Experience: 5+ years in security engineering or DevSecOps, emphasizing security automation. Proven expertise integrating SAST, DAST, and SCA into CI/CD pipelines.
- Strong Coding & Scripting: Proficient in Python, Go, or similar scripting languages. Experienced using Git and version control best practices.
- Container & Kubernetes Security: Experience with container technologies (Docker, Kubernetes) and container security scanning tools (Trivy, Aqua).
- Cloud Infrastructure & IaC: Proficiency Infrastructure as Code frameworks (Terraform, CloudFormation).
- Application Security Knowledge: Solid understanding of OWASP Top 10 vulnerabilities and best practices in application security.
Preferred Qualifications:
- Supply Chain Security Expertise: Familiarity with SBOM tooling (Syft, CycloneDX) and build-signing technologies (Cosign, GPG).
- Advanced DevSecOps Practices: Knowledge of “Security as Code” and “Policy as Code” approaches (OPA, Conftest).
- Community Engagement: Contributions to open-source security projects or active participation in security communities.
- Collaborative Communication: Excellent communication skills to articulate complex security issues to both technical and non-technical colleagues. Experience writing security documentation or standard operating procedures, and fostering a culture of security awareness within teams.
What Celonis Can Offer You:
- The unique opportunity to work with industry-leading process mining technology
- Investment in your personal growth and skill development (clear career paths, internal mobility opportunities, L&D platform, mentorships, and more)
- Great compensation and benefits packages (equity (restricted stock units), life insurance, time off, generous leave for new parents from day one, and more). For intern and working student benefits, click here.
- Physical and mental well-being support (subsidized gym membership, access to counseling, virtual events on well-being topics, and more)
- A global and growing team of Celonauts from diverse backgrounds to learn from and work with
- An open-minded culture with innovative, autonomous teams
- Business Resource Groups to help you feel connected, valued and seen (Black@Celonis, Women@Celonis, Parents@Celonis, Pride@Celonis, Resilience@Celonis, and more)
- A clear set of company values that guide everything we do: Live for Customer Value, The Best Team Wins, We Own It, and Earth Is Our Future
About Us:
Celonis helps some of the world’s largest and most esteemed brands make processes work for people, companies and the planet. With over 5,000 enterprise customer deployments across nearly every industry, the Celonis Process Intelligence Platform uses process mining and AI to give you a living digital twin of your business operation. It’s system-agnostic and without bias, and empowers companies to reduce waste, create value and benefit people across the top, bottom, and green lines. Since 2011, the Celonis platform has enabled its customers to identify more than $18 billion in value. Celonis is headquartered in Munich, Germany, and New York City, USA, with more than 20 offices worldwide.
Get familiar with the Celonis Process Intelligence Platform by watching this video.
Data Privacy, Equal Opportunity, and Accessibility Information
Celonis is an equal opportunity employer. We celebrate diversity and are committed to creating an inclusive environment and equal opportunity in all aspects of employment. We will not tolerate any unlawful discrimination or harassment of any kind. We make all employment decisions without regard to race/ethnicity, color, sex, pregnancy, age, sexual orientation, gender identity or expression, transgender status, national origin, citizenship status, religion, physical or mental disability, veteran status, or any other factor protected by applicable anti-discrimination laws. As a US federal contractor, we are committed to the principles of affirmative action in accordance with applicable laws and regulations. Different makes us better.
Any information you submit to Celonis as part of your application will be processed in accordance with Celonis’ Statements on Data Privacy, Equal Opportunity and Accessibility.
Please be aware of common job offer scams, impersonators and frauds. Learn more here.
By submitting this application, you confirm that you agree to the storing and processing of your personal data by Celonis as described in our Privacy Notice for the Application and Hiring Process.
Other Jobs from Celonis
Lead Value Advisor - High Tech Industry
Value Engineering Intern - Summernaut Program
Staff Software Engineer - Process Modeling
Staff Software Engineer - Cloud Infrastructure
Staff Software Engineer - Cloud Infrastructure
Staff Software Engineer - Cloud Infrastructure
Similar Jobs
Infrastructure Engineer - Docker/ Linux/ Litmus/ Golang/ Kubernetes
Senior Engineering Manager ( Attack Surface Intelligence )
Senior Software Engineer, DGX Cloud Orchestration
Application Security Engineer - Internship
There are more than 50,000 engineering jobs:
Subscribe to membership and unlock all jobs
Engineering Jobs
60,000+ jobs from 4,500+ well-funded companies
Updated Daily
New jobs are added every day as companies post them
Refined Search
Use filters like skill, location, etc to narrow results
Become a member
🥳🥳🥳 452 happy customers and counting...
Overall, over 80% of customers chose to renew their subscriptions after the initial sign-up.
To try it out
For active job seekers
For those who are passive looking
Cancel anytime
Frequently Asked Questions
- We prioritize job seekers as our customers, unlike bigger job sites, by charging a small fee to provide them with curated access to the best companies and up-to-date jobs. This focus allows us to deliver a more personalized and effective job search experience.
- We've got about 70,000 jobs from 5,000 vetted companies. No fake or sleazy jobs here!
- We aggregate jobs from 5,000+ companies' career pages, so you can be sure that you're getting the most up-to-date and relevant jobs.
- We're the only job board *for* software engineers, *by* software engineers… in case you needed a reminder! We add thousands of new jobs daily and offer powerful search filters just for you. 🛠️
- Every single hour! We add 2,000-3,000 new jobs daily, so you'll always have fresh opportunities. 🚀
- Typically, job searches take 3-6 months. EchoJobs helps you spend more time applying and less time hunting. 🎯
- Check daily! We're always updating with new jobs. Set up job alerts for even quicker access. 📅
What Fellow Engineers Say