JetBrains
JetBrains
JetBrains is a software company focused on developer productivity, collaboration, and code quality. Its portfolio includes professional integrated development environments and developer tools such as IntelliJ IDEA, PyCharm, WebStorm, and Rider, alongside team and delivery products including TeamCity, YouTrack, and Datalore. JetBrains also develops AI-assisted developer capabilities, code-quality services, a plugin marketplace, and educational resources for learners, students, and teachers. The company serves individual developers and organizations worldwide across software development, SaaS, B2B, and artificial intelligence, with a team of more than 1,000 employees.

Senior Product Security Engineer, Cloud at JetBrains — Berlin Hybrid

Secure JetBrains Air across AWS and GCP by strengthening cloud baselines, threat modeling, vulnerability management, and developer-focused security controls. Partner with engineering teams to embed practical safeguards throughout design, development, delivery, and incident response.

Description

  • Lead the ongoing improvement of cloud security for JetBrains Air, spanning posture management, preventive controls, detection, and remediation.
  • Define, maintain, and measure AWS and GCP security baselines for IAM, networking, data protection, and workload configuration.
  • Operate and enhance cloud security and vulnerability management platforms.
  • Build processes for triaging, prioritizing, assigning, and resolving cloud security findings and vulnerabilities.
  • Work with platform engineering, SRE, and product engineering to embed practical controls in developer workflows.
  • Review the security architecture and design of cloud services, APIs, and integrations.
  • Perform threat modeling and risk assessments, turning findings into actionable recommendations.
  • Assess product and platform changes for security impact across the software development lifecycle.
  • Embed security checks, guardrails, and evidence collection into engineering and delivery pipelines.
  • Contribute to incident response and root-cause analysis while driving systemic improvements.
  • Create security metrics, communicate emerging risks and trends, and support investment prioritization.
  • Help shape security standards, guidance, runbooks, and secure engineering patterns.
  • Establish measurable baselines, reduce actionable findings, and encourage threat modeling and security reviews early in the design process.

Requirements

  • Professional experience in security engineering or a closely related technical security field, ideally protecting SaaS products or cloud-native services.
  • Strong AWS and/or GCP security experience, including hands-on assessment of cloud architectures and configurations.
  • Practical experience deploying, operating, or integrating cloud security and vulnerability management platforms such as Wiz, Orca Security, Upwind, or Tenable.
  • Hands-on capability in security architecture reviews, threat modeling, vulnerability management, and risk-based prioritization.
  • Strong understanding of modern SaaS environments, including APIs, microservices, containers, Kubernetes, identity providers, networking, and managed cloud services.
  • Experience partnering with engineering, SRE, and product teams to turn security requirements into practical technical solutions.
  • Excellent written and spoken English.
  • Experience with security automation, CI/CD, infrastructure as code, Terraform, Kubernetes security, detection engineering, cloud-native logging and monitoring, scripting or programming, compliance frameworks, or customer-facing security discussions is desirable.

Benefits

  • Competitive base salary aligned with skills and experience.
  • Choice of working from home or the office.
  • Up to 30 days per year working remotely from abroad.
  • Additional time off.
  • Medical insurance allowance for you and your family.
  • Learning and development support, including conferences, courses, and language classes.
  • Relocation assistance.
  • Language classes.
  • Hot meal or lunch allowance on workdays.
  • Professional mental health services.
  • On-site gym or sports club stipend.
  • Company-wide celebrations and team gatherings.

Related Jobs