Senior Security Engineer
Change the way the world travels
Join the GetYourGuide journey to connect people with unforgettable travel experiences around the world. Millions look to us for unique activities they can trust, and it’s all powered by our commitment to make every single journey extraordinary - including yours.
Ready to unlock your potential with a community of fellow explorers? Find your next role at our Berlin HQ or one of our local offices around the globe, from New York to Bangkok. Head to getyourguide.careers to take the first step.
Team mission
We are looking for a Senior Security Engineer to help build and scale a modern Vulnerability Management and Exposure Management program for our cloud-native SaaS platform.
This role goes beyond traditional vulnerability scanning. You will partner with Engineering, Platform, Cloud Operations, and Product Security teams to continuously identify, prioritize, automate, and reduce security risk across our environments. You will help transform vulnerability management into an engineering-driven function by leveraging automation, data analytics, AI-assisted workflows, and risk-based decision making.
The ideal candidate combines deep technical security expertise with a builder mindset, strong automation skills, and practical experience operating in modern cloud-native environments.
Your mission
- Own and evolve our vulnerability management strategy, roadmap, and SLAs/KPIs.
- Continuously assess vulnerabilities across cloud, applications, containers, Kubernetes, endpoints, and third-party services.
- Prioritize by risk using asset criticality, exploitability, threat intelligence, and business context.
- Drive remediation programs in partnership with engineering teams.
- Build automation and integrations across scanners, ticketing, CMDBs, and cloud platforms to cut manual triage.
- Use AI and LLM-based tools to improve analysis, investigation, and analyst productivity, and evaluate emerging AI security tools.
- Secure cloud-native environments across AWS, Azure, or Google Cloud, including CI/CD and infrastructure.
- Contribute to security architecture reviews and DevSecOps initiatives.
Your toolkit
- 5+ years in security engineering, with meaningful hands-on experience in vulnerability management - you've owned this before, not just contributed to it.
- Strong understanding of modern vulnerability management methodologies, CVSS, threat intelligence, exploitability analysis, and risk prioritization.
- Experience with enterprise vulnerability management platforms such as Tenable, Qualys, Rapid7, Wiz, Orca Security, or similar technologies.
- Strong knowledge of cloud platforms (AWS, Azure, and/or Google Cloud).
- Experience securing containers, Kubernetes platforms, and cloud-native architectures.
- Experience building automation using APIs and workflow orchestration tools.
- Strong communication skills and ability to influence engineering teams.
Extras that give you an edge
- Experience operating security programs in a SaaS or cloud-native technology company.
- Experience with attack surface management, cloud security posture management (CSPM), or cloud-native application protection platforms (CNAPP).
- Familiarity with DevSecOps, Infrastructure-as-Code, and CI/CD security practices.
- Experience using AI-assisted security tools, security copilots, or LLM-based workflows.
- Experience building internal security automation platforms.
- Relevant certifications such as CISSP, GSEC, GCIH, GPEN, AWS Security Specialty, or equivalent.
How we’ll make your career journey extraordinary
- Annual personal growth budget and mentorship programs for continuous learning and development
- Work from anywhere in the world for 30 days per year
- A hybrid working approach with three days of in office collaboration (Mon, Tue, Thur) and two days of optional at home focus time.
- Opportunities to collaborate and socialize with team members through quarterly team events and yearly company-wide events
- Discounts for you, your friends, and family on GetYourGuide activities
- Health and wellness benefits
And more…
How to apply
Submit your CV/resume in English using the form below. For tips and insights into our hiring process and culture, check out ‘how we hire’ and ‘life at GetYourGuide’. If you have any further questions, please don’t hesitate to get in touch at jobs@getyourguide.com.
We’re an equal opportunities employer
Our commitment is that every qualified person will be evaluated according to their skills, regardless of age, gender identity, ethnicity, sexual orientation, disability status, or religion. Please refrain from including your picture and age with your application.