Live opening · Posted 7 hours ago

Director, Security Operations (Security Engineering)

DeliveryHero · Berlin, , Germany
Smartrecruiters No Full-time
You are 7 hours behind. JobBeeper subscribers saw this role while it was still new.

At a glance

The key details from the original listing.

Posted 7 hours ago
CompanyDeliveryHero
LocationBerlin, , Germany
Job typeFull-time
Work modeNo
SkillsAWS, GCP
SourceSmartrecruiters
Listed7 hours ago

Your early-applicant advantage

Live timing from JobBeeper.

Live data
6 min from Smartrecruiters publishing this role to us finding it
15 min median time from a role going live to a subscriber being told
6 hours subscribers had this role before this page existed
71,265 roles found in the last 24 hours — the newest are not on this site yet
Start your free trial →

About the role

Description supplied by the original job listing.

We are on the lookout for a Director of Security Operations. Reporting directly to the Chief Information Security Officer (CISO), you will hold full accountability for defining and driving the global strategy for threat detection, security monitoring, threat intelligence, and security incident response across the entire Delivery Hero Group. In this role based out of our global headquarters in Berlin, you will lead our existing operations organization, composed of dedicated CSIRT and SOC teams, while strategically scaling capabilities where needed to safeguard our worldwide entities, platforms, and millions of daily customers.
As a Director, you will elevate our Security Operations capability to the next level, moving beyond baseline monitoring toward an intelligence-driven, proactive defense posture. Leveraging cutting-edge technologies like Google SecOps, you will drive modern threat detection engineering, streamline global incident handling workflows, and build resilient response frameworks tailored to the scale and operational complexity of the world’s leading local delivery platform. You will lead, mentor, and optimize a team of security operations professionals, fostering an environment where technical rigor, continuous learning, and rapid response are paramount. By establishing strong partnerships with local CISOs and security leadership across our global entities, you will ensure unified monitoring baselines while maintaining fast, effective crisis response.
Your mission:
Lead and Mentor Global Operations: Direct and mentor CSIRT and SOC teams, building a cohesive global operations organization that delivers monitoring and response across all Delivery Hero entities.
Drive Security Operations Maturity: Define the multi-year strategic roadmap for threat detection, incident response, and threat intelligence to systematically reduce organizational risk at a global scale.
Modernize Detection and Response: Optimize our detection pipeline using Google SecOps (SIEM) and advanced telemetry to build high-fidelity detections, minimize noise, and accelerate Mean Time to Detect (MTTD) and Mean Time to Respond (MTTR).
High-Level Incident Governance: Act as the ultimate escalation point and incident commander for critical, major security incidents, providing clear leadership, stakeholder communication, and post-incident governance.
Threat Intelligence Integration: Establish robust threat intelligence capabilities that translate global threat actor tactics, techniques, and procedures (TTPs) into proactive detection engineering and strategic defenses.
Global Entity Alignment: Partner closely with local CISOs and local security leads across all Delivery Hero entities to ensure consistent, scalable security monitoring and incident response standards across all global subsidiaries and platforms.
Operational Metrics and Continuous Improvement: Drive data-informed operational reporting within existing resources, evaluating capabilities using frameworks like MITRE ATT&CK to demonstrate measurable risk reduction over time.
Proven Operations Leadership: A track record of leading Security Operations Centers (SOC) and Incident Response (CSIRT) functions within large-scale, complex enterprise or tech environments.
Deep Incident Response and Threat Hunting Expertise: Extensive experience managing complex, critical security incidents and architecting proactive threat hunting programs.
Modern SIEM and SecOps Proficiency: Hands-on familiarity with modern cloud-native SIEM and SecOps platforms (experience with Google SecOps / Chronicle is a strong plus), including telemetry ingestion, detection-as-code, and automated response playbooks (SOAR).
Global Stakeholder Management: Excellent communication and crisis management skills, with the ability to translate complex technical incidents into actionable risk insights for executive leadership, regional CISOs, and legal partners.
Team Development and Mentorship: Demonstrated success mentoring analysts, optimizing operational workflows, and managing global follow-the-sun or escalation models efficiently.
Metrics-Driven Execution: Experience establishing and driving key security operations metrics (such as MTTD, MTTR, detection coverage against MITRE ATT&CK) to measure performance and continuously mature capability.
Strategic Vision and Execution: Ability to balance immediate operational fire-fighting with long-term strategic improvements to build a resilient, future-proof operations center.
Nice to haves:
Large-Scale Platform Experience: Background operating within complex global platforms, food/logistics delivery networks, or multi-tenant cloud ecosystems.
Incident Response and Operations Certifications: High-level credentials such as CISSP, CISM, or advanced GIAC certifications (such as GCIH, GCFA, GNFA).
Cloud-Native Architecture Exposure: Familiarity with monitoring and responding to threats across multi-cloud environments (AWS, GCP).

Employment type
Full-time

Work arrangement
No

Get JobBeeper Mobile App

Never miss a job opening! Get instant job alerts on your phone.

Subscribers see fresh openings within minutes. Download the JobBeeper App on Google Play to get real-time push notifications and apply before anyone else.

⚡ Instant Push Alerts 🎯 Tailored Filters 🚀 Direct Employer Links
GET IT ON Google Play

More openings worth a look

Recently tracked roles with full details and direct application links.

6 roles
Good roles move before most people even see them. Tell JobBeeper what you want and get fresh matches delivered in minutes.
Start your free trial →
⚡ Get fresh job alerts 📱 Get App