Senior IT Security Engineer
AI in this role
Architect and maintain internal corporate security, endpoint defenses, and identity access management workflows.
Please note that this position is based in Berlin, Germany.
BEST WORK OF YOUR CAREER
Trade Republic is the largest savings platform in Europe - we operate in 18 countries, serving +10 million customers who trusted us with over 150B in assets. But we’re striving for more.
We have a bold mission to empower everyone to build wealth with easy, safe, and free access to financial systems. You will have the opportunity to grow your career by collaborating with a team of outstanding talents and state of the art technology to build a lasting, positive future for millions.
WHAT YOU'LL BE DOING
As a Senior IT Security Engineer in our Security Operations team, you'll architect and maintain the defenses that protect our global workforce and internal infrastructure. You will be the primary guardian of our endpoint ecosystem, corporate network, and identity perimeters. Your responsibilities include:
- Endpoint Defense: Deploy and manage EDR/XDR solutions across a diverse fleet, with a primary focus on macOS alongside Windows and Linux devices.
- Identity & Access Management (IAM): Architect end-user IAM workflows, including SSO integration, MFA enforcement, and automated lifecycle management (Joiners/Movers/Leavers) together with our IT team.
- Network Security: Secure our physical and logical corporate networks, managing firewalls, VPNs, and SD-WAN architectures.
- Zero Trust Architecture: Implement and optimize Zero Trust Network Access (ZTNA) to replace traditional perimeter-based security for internal applications.
- Device Management (MDM): Define security baselines and hardening standards within MDM tools like Jamf to ensure "compliant-only" device access.
- Vulnerability Management: Drive and automate the patching for all non-cloud assets, ensuring third-party software and OS vulnerabilities are remediated within SLA.
- Network Access Control (NAC): Manage and monitor office network security, implementing 802.1X authentication for wired and wireless environments.
- Data Loss Prevention (DLP): Implement and tune endpoint-level DLP controls to prevent unauthorized data exfiltration.
- Security Awareness & Phishing: Lead technical initiatives for phishing simulations and deploy automated tools to analyze, report suspicious emails, and provide security awareness training for all employees
WHAT WE'RE LOOKING FOR
Core Experience
- 5+ years as a Security Engineer with 4+ years specializing in Enterprise/Corporate Security.
- Identity: Deep experience with modern Identity Providers (Okta, Google Workspace) and passwordless authentication.
- Endpoint: Proven track record managing enterprise EDR (CrowdStrike, SentinelOne) and MDM platforms (Jamf) at scale.
- Networking: Strong understanding of non-cloud networking (switching, routing, and firewalling).
- Hardening Knowledge: Practical experience applying CIS Benchmarks or NIST standards to end-user workstations and office infrastructure.
Skills
- Automation: Proficiency in automating security tasks and API integrations between security tools.
- Zero Trust: Experience moving organizations away from legacy VPNs toward ZTNA solutions (e.g., Zscaler, Netskope or Tailscale).
- Hardware Security: Familiarity with TPM/Secure Enclave technologies and disk encryption management (FileVault, BitLocker).
- Financial Services: Experience working in highly regulated environments (GDPR, BaIT, or MaRisk).
WHY YOU SHOULD APPLY NOW
Our culture rewards ownership, excellence, and high energy. We care deeply about outcomes and hold each other accountable - we’re here to win and fix one of the largest challenges Europeans face - closing the pension gap and democratising wealth. If this gets you fired up, reach out!
We believe it’s our team’s varied identities and backgrounds that make us sharper and stronger. We’re committed to creating an environment where everyone feels respected and has equal opportunity to thrive in their careers. For any questions on DEI during the interview process, reach out to your recruitment partner.
We believe it’s our team’s varied identities and backgrounds that make us sharper and stronger. We’re committed to creating an environment where everyone feels respected and has equal opportunity to thrive in their careers. For any questions on DEI during the interview process, reach out to your recruitment partner.
How we rate this
Senior IT Security Engineer at Trade Republic rates 0 out of 100 for how much of the daily work is AI. That makes it Little AI (AI Level 1 of 4). The level is about AI in the job, not seniority.
Little AI. AI is not part of the work.
- ●●●● Builds AI80 to 100
- ●●●○ Works on AI60 to 79
- ●●○○ Uses AI40 to 59
- ●○○○ Little AI0 to 39
Levels come from how often the tools, models and workflows of the role are named in the posting itself. Open the description and count.
Prepare for this job
A free preview built only from this posting: what it asks for, what you could be asked in an interview, and how to adjust your resume.
Skills and AI tools this role asks for
Questions you could be asked
- Tell me about a project where endpoint security was part of your work. What did you do?
- Tell me about a project where identity and access management was part of your work. What did you do?
- Tell me about a project where zero trust was part of your work. What did you do?
- Tell me about a project where vulnerability management was part of your work. What did you do?
- Tell me about a project where network security was part of your work. What did you do?
Adapt your resume
- List these exact terms on your resume: Endpoint Security, Identity And Access Management, Zero Trust, Vulnerability Management, and Network Security. An applicant tracking system matches the wording, not the idea.
- Attach one line of real, concrete experience to at least one of them — a tool named with nothing behind it rarely survives a human read.
Want an expert to read your CV for this job?
Free. Send your CV and the role you want next. We reply by email within 2 to 4 business days.
Get a free CV reviewGet new cybersecurity jobs by email
One email a week with the new cybersecurity jobs, each rated for how much AI is in the work. No recruiter spam, unsubscribe in one click.
Free. One email a week. Unsubscribe in one click.
Similar roles
Security roles that involve little AI, at other companies.
What kind of AI work fits you?
Answer 12 practical questions in about three minutes. Get a simple profile, the work it points to, and live roles to explore next.
Find my next step