Cloud Security Engineer-Platform & Infrastructure (F/M/D)
Location: Munich Hybrid (NavVis GmbH)
Department: IT & Infrastructure
THE OPPORTUNITY
As a Cloud Security Engineer-Platform & Infrastructure at NavVis, you will play a critical role in strengthening our cloud security posture, with a strong focus on Kubernetes and AWS environments. You will own and optimize our Wiz platform, implement security automation, and ensure compliance with ISO 27001 and SOC 2 standards. This is a hands-on role where you will collaborate closely with engineering teams to embed security into our infrastructure and processes.
HOW YOU WILL MAKE AN IMPACT
- Take ownership of Kubernetes security across our EKS clusters: design and enforce RBAC, admission controllers, network policies, and pod security standards
- Harden container workloads through image scanning, runtime threat detection, and workload identity best practices
- Own and continuously improve our cloud security posture using Wiz, AWS native services and internal monitoring
- Drive security automation and hardening across AWS, EKS and on-prem infrastructure
- Integrate security controls into CI/CD pipelines (Terraform, Helm, GitOps) to prevent misconfigurations early
- Design and maintain guardrails and detection rules for identity, network and workload security
- Design and enforce least-privilege IAM and support SSO and SAML workflows
- Partner closely with engineering teams to secure new services and architectural changes
- Lead vulnerability management and remediation across cloud assets, containers and applications
- Support risk assessments, internal security reviews and compliance initiatives (ISO 27001, SOC 2)
- Investigate and respond to security incidents, driving follow-up improvements
- Contribute to internal security standards, playbooks and documentation
WHAT WILL HELP YOU SUCCEED IN THE ROLE
- Strong hands-on Kubernetes security experience you are comfortable with being the go-to person for Kubernetes security decisions.
- Experience hardening containerized workloads, including image scanning, runtime security and workload identity
- Strong hands-on experience with AWS security (IAM, KMS, networking, GuardDuty, Security Hub)
- Strong Terraform skills and an automation-first mindset
- Experience with CSPM and cloud monitoring tools (Wiz is a strong plus)
- Familiarity with ISO 27001 and SOC 2 control environments
- Experience designing and enforcing least-privilege access models and SSO integrations
- Confidence handling security incidents, investigations and documentation
- Excellent communication and cross-team collaboration skills
HOW WE WILL KNOW WE ARE A PERFECT MATCH
Your recruiting partner for this role is Sylvie (she/her). You can expect to go through a screening call, and up to 4 rounds of interviews, where we would love to discover your passion and interests, introduce you to who we are and what drives us, and finally understand how we can potentially add value to each other's growth.
HOW WE WILL KEEP YOU SMILING
- It's important to take a break from work! We offer 30 days of paid time off per year
- Affordable access to a vast network of fitness and wellness facilities through EGYM Wellpass subsidy
- Deutschlandticket subsidy to support sustainable travel using public transport
- We offer flexible working hours and a hybrid work setup, enabling you to plan your work around your life, and not your life around work!
- We offer full visa and relocation support for international candidates
- An attractive bike leasing model through JobRad, in line with our commitment towards sustainable mobility
- A competitive compensation package that values the skills and experience you bring
- Up to 4000 EUR employee referral bonus
- Financial support for local language classes to help you in your journey of integrating into the culture!
NavVis’ unwavering commitment to fostering an inclusive and diverse workplace has laid the foundation for our incredible growth. We thrive on the collective strength of our people who come from diverse backgrounds. We respect and value every experience associated with race, gender identity, sexual orientation, nationality, religion and disability. We do not discriminate on the basis of any of these, or other identities, and strongly encourage everyone to apply.
Together with you, we build NavVis!
If you need assistance at any stage of the recruiting process due to a disability, please reach out to your recruiting partner(s) for this position.
There are more than 50,000 engineering jobs:
Subscribe to membership and unlock all jobs
Engineering Jobs
60,000+ jobs from 4,500+ well-funded companies
Updated Daily
New jobs are added every day as companies post them
Refined Search
Use filters like skill, location, etc to narrow results
Become a member
🥳🥳🥳 452 happy customers and counting...
Overall, over 80% of customers chose to renew their subscriptions after the initial sign-up.
To try it out
For active job seekers
For those who are passive looking
Cancel anytime
Frequently Asked Questions
- We prioritize job seekers as our customers, unlike bigger job sites, by charging a small fee to provide them with curated access to the best companies and up-to-date jobs. This focus allows us to deliver a more personalized and effective job search experience.
- We've got over 200,000 jobs from 15,000+ vetted companies. No fake or sleazy jobs here!
- We aggregate jobs from 15,000+ companies' career pages, so you can be sure that you're getting the most up-to-date and relevant jobs.
- We're the only job board *for* software engineers, *by* software engineers… in case you needed a reminder! We add thousands of new jobs daily and offer powerful search filters just for you. 🛠️
- Every single hour! We add 2,000-3,000 new jobs daily, so you'll always have fresh opportunities. 🚀
- Typically, job searches take 3-6 months. EchoJobs helps you spend more time applying and less time hunting. 🎯
- Check daily! We're always updating with new jobs. Set up job alerts for even quicker access. 📅
What Fellow Engineers Say
