xelys jobs xelys jobs

Security Engineering Manager (Associate)

Taxfix

full-remoteseniorpermanentsecurityengineering-management Full remote - Berlin, DE 73 days ago via WTTJ

See how well this job matches your profile

Sign up to get an AI match score and generate a tailored application in seconds.

Get your match score

Tags

Security EngineeringDevSecOpsCloud SecurityKubernetesCI/CDInfrastructure as CodeGCPAI SecurityIncident ResponseThreat Modeling

About the role

Role Overview

As a Security Engineering Manager (Associate) at Taxfix, you will lead the security function end-to-end—owning security strategy, tooling, delivery, and team management. You’ll shape security posture while partnering across engineering and product to embed security into day-to-day development.

Key Missions

  • Lead the security function end-to-end: strategy, tooling, and team management.
  • Build and grow a high-performance security team culture through coaching, development, and performance management.
  • Own Product Security including:
    • rigorous vulnerability management
    • incident response
    • security-in-SDLC practices

Responsibilities

  • Drive technical direction for product security programs and security delivery.
  • Lead end-to-end technical initiatives (scope, execute, rollout).
  • Partner effectively across engineering, product, and leadership, including translating risk into business terms.
  • Use outcomes and metrics to drive progress (e.g., OKRs/KPIs).

Requirements

  • 8+ years in application security, DevSecOps, or security engineering, with strong hands-on depth.
  • Familiarity with cloud-native technologies to embed security controls into modern delivery pipelines:
    • Kubernetes, CI/CD, and Infrastructure as Code
  • Familiarity with AI security, including:
    • LLM security risks, adversarial testing, and secure integration patterns
  • Active experience using AI-assisted development tools (e.g., Claude, Copilot, Cursor, or similar).
  • Strong understanding of cloud security (preferably GCP; AWS/Azure transferable) with multi-cloud as a plus.
  • Experience with security tooling such as:
    • CNAPP/CSPM platforms
    • vulnerability scanners, SAST/DAST, dependency scanning
    • coordinating penetration testing
  • Experience working in regulated environments.
  • Exposure to incident response coordination at scale (including post-mortems).
  • Background in threat modeling at engineering-org scale.

Nice to Have

  • Experience supporting AI/ML workloads from a security angle (model supply chain, prompt injection defenses, agent guardrails).
  • Early management or tech lead experience with a clear desire to grow into engineering management and openness to coaching.
  • Multi-cloud security experience.

Additional Note

If you don’t meet every requirement, the team encourages you to apply anyway.

About Taxfix

Taxfix is a fintech platform that serves millions of users. The company focuses on building technology for financial services and operating in a security- and compliance-aware environment.

Scraped 5/13/2026