Security Lead - m/f/d
Help Us Change the Way the World Works
Build something that matters.
Langdock exists to change the way the world works, bridging the gap between what technology can do and what people actually do with it. We bring all leading AI models into one secure, model-agnostic platform and make them usable across entire organizations. Over 10,000 companies use our platform every day, from fast-growing startups to some of Europe's largest enterprises. Their employees open Langdock to draft strategies, analyze documents, or automate workflows - helping them to work smarter, think more creatively, and reach their full potential.
About the Role
We're hiring a hands-on Security Lead to own security at Langdock across all surfaces. Not just the management system, but the actual security of our identities, devices, premises, and processes.
This is a broad ownership role, deliberately scoped for one ambitious person. We believe that with good automation and an AI-first way of working, one person can run what traditionally takes a small team: the certified ISMS, identity and access management, device management, security programs like bug bounty, and physical security. You'll use automation (and Langdock itself) aggressively to keep the operational load low and the bar high.
You'll design technical and organizational controls that enable us to run our business securely and that actually make sense for how we build and operate. You'll also make sure we can prove they work, quarter after quarter, audit after audit.
You'll work closely with engineering, operations, and sales by translating security and compliance requirements into controls people can realistically implement and maintain, and explaining our security posture to customers who consider Langdock.
What You Will Do
Own identity & access.
Own identity and access management across all our identity surfaces. Build and automate the processes for onboarding, offboarding, and privilege provisioning so the right people have the right access at the right time, and nothing more.
Properly configure and own our Entra ID. Conditional access, group and role design, lifecycle automation, and integration with the tools our teams actually use.
Own devices.
Own MDM and device management. Ensure every device that touches company data is enrolled, encrypted, patched, and recoverable with as little friction for the team as possible.
Own the device inventory. Keep an accurate, automated picture of what hardware exists, who has it, and what state it's in.
Own security programs.
Run our bug bounty and security programs. Set up and operate responsible disclosure / bug bounty, triage findings, and drive them to resolution with engineering.
Own physical security of our premises. Access control, visitor handling, and the physical controls our certifications and customers expect.
Own the ISMS.
Own the information security management system. Maintain and continuously improve our ISO 27001 and SOC 2 Type II certified management system, ensuring it reflects how Langdock actually operates, not just how a framework says it should.
Design controls, not paperwork. Define technical and organizational safety measures that are proportionate, practical, and genuinely reduce risk.
Manage the risk register. Identify, assess, prioritize, and track information security risks; drive risk treatment plans to closure with the relevant owners.
Maintain evidence in Vanta. Keep our control evidence current and audit-ready on an ongoing basis.
Run audits & new standards. Manage the end-to-end audit process for existing certifications (ISO 27001, SOC 2 Type II) and lead scoping and readiness for new standards as the business requires (e.g. C5, TISAX, HDS, FedRAMP-adjacent requirements, customer-specific frameworks).
Partner across the company.
Partner with engineering, operations, sales. Sit close to the teams that build and run the product; help them implement controls in ways that fit into existing workflows (CI/CD, infrastructure, access management) rather than bolting security on afterward.
Respond to customer and prospect security questions , including security questionnaires and due-diligence requests, as needed.
Automate relentlessly. Treat every recurring manual task (evidence collection, access reviews, provisioning, questionnaires) as something to be automated. Use AI tooling as a force multiplier so this role scales with the company without scaling headcount.
You Might Be a Fit If…
Technical background. You understand cloud infrastructure, identity providers, software development practices, and how modern SaaS products are actually built and operated. Enough to have credible, specific conversations with engineers, and enough to configure Entra ID, MDM, and provisioning automation yourself rather than just specifying it.
Ambition and an AI-first mindset. You genuinely believe one person with great automation and AI tooling can own what used to take a team and you're excited to prove it. You build scripts, workflows, and agents instead of doing repetitive work by hand.
Identity & endpoint experience. You've run (or built) IAM and device management in practice: lifecycle automation, least-privilege and just-in-time access, MDM rollout and policy design.
Hands-on ISMS experience. You've operated (not just documented) an ISO 27001 and/or SOC 2 program before, ideally through at least one full audit cycle, ideally at a growth-stage SaaS or tech company.
Pragmatism over bureaucracy. You default to the simplest control that achieves the risk reduction, and you can explain the "why," not just enforce the "what."
The Environment
We work from our office in Berlin, Greifswalder Strasse 212. Everyone works together in person because the hardest problems get solved faster at a whiteboard than in a Slack thread. Conversations happen faster, problems get solved quicker, and we actually know each other.
Days start at 8:30. Lunch & dinner are together. We run, go to the gym, and take care of ourselves. Health is not separate from work here, it is part of how we work well.
The vibe is calm but intense. No one is yelling or panicking. But everyone is working hard on things that matter.
Compensation
Salaries are transparent and tied to levels, not negotiation. All roles include equity.
We will figure out the right level together based on your experience and scope. Levels are about the work you own, not your title or years of experience. We narrow down the expected salary range early in the process.
Next steps
We move fast. Most processes complete within two weeks.
If this sounds like your kind of work, we would like to meet you.
Empfohlene Jobs
Erzieher:in/ Sozialarbeiter:in für eine Temporäre Lerngruppe (TLG plus), Lauterbach GS
Ab dem 15.9 Wir suchen DICH! Erzieher:in/ Sozialarbeiter:in / Sozialpädagog:in oder vergl. Abschlüsse (m/w/d) für eine Temporäre Lerngruppe (TLG plus) an einer Grundschule im Märkischen Viertel in B…
Kreditberater/in für kirchliche und soziale Einrichtungen (m/w/d) HPJB1_DE
Firmenbeschreibung Wir sind die Pax-Bank für Kirche und Caritas und verstehen uns als christlich-nachhaltige Bank. In einer Zeit, in der ethische Werte und finanzielle Entscheidungen oft getrennt ersc…
GTM Engineer (German-Speaking)
SalesPlaybook is DACH’s #1 Pipeline, Sales, and HubSpot agency for B2B technology companies (50–500 FTEs). We help founders and revenue teams scale fast – by turning marketing and sales into a true…
Sales Manager, Funded Startups
Who we are About Stripe Stripe is a financial infrastructure platform for businesses. Millions of companies - from the world’s largest enterprises to the most ambitious startups - use Stripe to…
Maschinenführer (gn) pro Stunde bis 27,70 €
Deine Aufgaben als Maschinenführer Bedienung- und Führung von Abfüll- und Verpackungsanlagen Selbstständige Bearbeitung der gestellten Fertigungsaufträge Durchführung von Auftrags- und Charg…
Zerspanungsmechaniker (m/w/d)
26 bis 31 Euro pro Stunde Du verstehst als Zerspanungsmechaniker (m/w/d) in Berlin etwas von Technik und hast Spaß daran? Denn wenn Du als Zerspanungsmechaniker (m/w/d) in Berlin nach einer …
Montagehelfer (m/w/d)
In deiner Rolle als Montagehelfer/in (m/w/d) bist du in Berlin Teil eines engagierten Teams, das jeden Tag Beeindruckendes leistet. Ganz gleich, ob es um das Zusammensetzen von Bauteilen oder die Unt…
Go-to-Market AI & Data Intern (AI x Greentech) (m/f/d)
Do you thrive in fast-paced environments and have a passion for renewable energy? As our Go-to-Market AI & Data Associate, you will be the co-architect of our data ecosystem. You’ll take full owner…
Verkäufer m/w/d
Der [Kundenservice] steht im Einzelhandel an erster Stelle, deshalb suchen wir ein Mitarbeiter m/w/d der kundenorientiert arbeitet. Vollzeit Arbeit in Schichten mit 40 Stunden in der Woche. Monatlic…
Praktikum Berlin
Wer wir sind. 365 Sherpas BPI ist eine der profiliertesten Corporate-Affairs- und Strategieberatungen Deutschlands und seit 2026 die deutsche Marke der BPI Group, einer der dynamischsten internat…