About this role
The Position Join Boehringer Ingelheim's Cyber Intelligence & Security Operations Center (CISOC) as a Platform Security Engineer, where you will help secure cloud platforms, containerized environments, and software development ecosystems. In this role, you will engineer, operate, and continuously enhance cloud and application security capabilities while partnering closely with DevOps, platform engineering, and development teams. You will play a critical role in advancing DevSecOps practices, strengthening cloud security posture, automating security processes, and ensuring security controls are effectively integrated throughout the Secure Software Development Lifecycle (SSDLC).
Duties & Responsibilities As a member of the Cyber Intelligence & Security Operations Center (CISOC) team, the role will engineer, operate and continuously improve security capabilities across cloud platforms and the Secure Software Development Life Cycle (SSDLC). Operate and improve CSPM platform, including cloud posture, workload protection, vulnerability and misconfiguration management. Analyse cloud and workload findings, tune policies, manage justified exceptions and support risk-based remediation with cloud and application teams.
Support security for Kubernetes environments, including container images, registries, cluster configurations, workload vulnerabilities and runtime controls. Engineer and maintain SSDLC security controls covering source code, open-source dependencies, secrets, infrastructure as code, container images, APIs and testing. Integrate security controls and actionable feedback into supported development and delivery workflows in collaboration with DevOps and platform teams.
Administer security platforms, monitor service health and coverage, troubleshoot integrations and coordinate vendor support cases. Develop Python automation and API integrations for onboarding, policy management, data quality, reporting, workflow orchestration and repetitive operational tasks. Provide technical analysis, remediation guidance, training and documentation to cloud, platform and development teams.
Create and maintain dashboards, reports, runbooks, standards and operational procedures, and support ITSM-based workflows where applicable. Collaborate across both focus areas to provide mutual coverage and ensure cloud, container and software-development risks are handled consistently. Follow Boehringer processes and maintain required operational, compliance and audit documentation.
Requirements: An ideal candidate will have: Hands-on experience in DevSecOps, cloud security, platform security or a comparable engineering role. Practical experience with at least one major cloud provider and working knowledge of multi-cloud environments across AWS, Azure and GCP. Experience with Prisma Cloud or a comparable CNAPP/CSPM/CWPP platform is strongly desired.
Experience with Kubernetes or OpenShift, container images, registries and container security controls. Knowledge of SSDLC and security testing concepts such as SAST, SCA, secrets detection, infrastructure-as-code scanning, image scanning, DAST or API security. Experience integrating and operating security controls in development and delivery workflows.
Strong Python skills for automation, API integration, data processing and reporting. Working knowledge of Git, CI/CD concepts, Terraform or other infrastructure-as-code technologies, and REST APIs. Ability to analyse technical findings, distinguish relevant risk from noise and provide practical remediation guidance.
ServiceNow or comparable service-management knowledge is advantageous but not mandatory. Excellent spoken and written English, strong collaboration skills and experience in an international, multicultural environment. Relevant cloud, Kubernetes, DevSecOps or security certifications are desirable but not mandatory.
