EMD Group logo
EMD Group · Life sciences

Lead Security Engineer (Full-/Part-time) (all genders)

EMD Group Hessen, DE Posted Aug 28, 2026
Location
Hessen, DE
Workplace
On-site / per employer
Posted
Aug 28, 2026

About this role

Your role

In your role as Lead Security Engineer in the Platform and Engineering Enablement team, you will own the security engineering vision, strategy, standards, and delivery roadmap across our products and shared platforms. You will simplify and harden CI/CD pipelines, establish secure defaults, improve software supply-chain and AWS cloud security, and automate controls and audit evidence using GitHub, JFrog, Atlassian, and AWS. Working with engineering, enterprise security, legal, privacy, risk, and compliance, you will translate ISO 27001, SOC 2, the EU Cyber Resilience Act, customer, and internal requirements into practical controls.

You will combine long-term direction with hands-on implementation and enable teams to deliver secure software efficiently.

Who you are

  • You have extensive hands-on experience in security engineering, platform engineering, application security, cloud security, or a related field, with technical ownership across multiple teams.
  • You have defined security strategies and standards and turned them into production-ready implementations.
  • You have secured CI/CD pipelines, source control, build systems, artifacts, software releases, and cloud platforms using tools such as GitHub, JFrog, and AWS.
  • You have practical experience with identity and access management, infrastructure as code, vulnerability management, security testing, threat modeling, secrets, and software supply-chain security.
  • You understand risk-based control design and frameworks such as ISO 27001, SOC 2, or the EU Cyber Resilience Act and can translate requirements into automated controls and evidence.
  • You communicate clearly, influence across teams, and balance security, developer experience, delivery speed, and operational resilience.
  • Experience with software bills of materials, provenance, attestations, artifact signing, release integrity, or security considerations for AI-assisted software development is desirable.
  • Experience with Atlassian tools or relevant certifications such as CISSP, CCSP, AWS Certified Security - Specialty, or ISO 27001 Lead Implementer or Lead Auditor is desirable.

Department: LS-TO-DP

Job evaluation: Expert 3

TA: Gap Rattimasakol

Originally posted by EMD Group. View original posting