Enter a job title or keyword

Director, Security Operations (Security Engineering)

Delivery Hero


Job Location:

Berlin - Germany

Monthly Salary: Not provided by the employer
Posted: 30 September 2026 (Yesterday)
Application Deadline: 28 December 2026
Vacancies: 1 Vacancy

Job Summary

We are on the lookout for a Director of Security Operations. Reporting directly to the Chief Information Security Officer (CISO) you will hold full accountability for defining and driving the global strategy for threat detection security monitoring threat intelligence and security incident response across the entire Delivery Hero this role based out of our global headquarters in Berlin you will lead our existing operations organization composed of dedicated CSIRT and SOC teams while strategically scaling capabilities where needed to safeguard our worldwide entities platforms and millions of daily customers.

As a Director you will elevate our Security Operations capability to the next level moving beyond baseline monitoring toward an intelligence-driven proactive defense posture. Leveraging cutting-edge technologies like Google SecOps you will drive modern threat detection engineering streamline global incident handling workflows and build resilient response frameworks tailored to the scale and operational complexity of the worlds leading local delivery platform. You will lead mentor and optimize a team of security operations professionals fostering an environment where technical rigor continuous learning and rapid response are paramount. By establishing strong partnerships with local CISOs and security leadership across our global entities you will ensure unified monitoring baselines while maintaining fast effective crisis response.

Your mission:

  • Lead and Mentor Global Operations: Direct and mentor CSIRT and SOC teams building a cohesive global operations organization that delivers monitoring and response across all Delivery Hero entities.

  • Drive Security Operations Maturity: Define the multi-year strategic roadmap for threat detection incident response and threat intelligence to systematically reduce organizational risk at a global scale.

  • Modernize Detection and Response: Optimize our detection pipeline using Google SecOps (SIEM) and advanced telemetry to build high-fidelity detections minimize noise and accelerate Mean Time to Detect (MTTD) and Mean Time to Respond (MTTR).

  • High-Level Incident Governance: Act as the ultimate escalation point and incident commander for critical major security incidents providing clear leadership stakeholder communication and post-incident governance.

  • Threat Intelligence Integration: Establish robust threat intelligence capabilities that translate global threat actor tactics techniques and procedures (TTPs) into proactive detection engineering and strategic defenses.

  • Global Entity Alignment: Partner closely with local CISOs and local security leads across all Delivery Hero entities to ensure consistent scalable security monitoring and incident response standards across all global subsidiaries and platforms.

  • Operational Metrics and Continuous Improvement: Drive data-informed operational reporting within existing resources evaluating capabilities using frameworks like MITRE ATT&CK to demonstrate measurable risk reduction over time.


Qualifications :

 

  • Proven Operations Leadership: A track record of leading Security Operations Centers (SOC) and Incident Response (CSIRT) functions within large-scale complex enterprise or tech environments.

  • Deep Incident Response and Threat Hunting Expertise: Extensive experience managing complex critical security incidents and architecting proactive threat hunting programs.

  • Modern SIEM and SecOps Proficiency: Hands-on familiarity with modern cloud-native SIEM and SecOps platforms (experience with Google SecOps / Chronicle is a strong plus) including telemetry ingestion detection-as-code and automated response playbooks (SOAR).

  • Global Stakeholder Management: Excellent communication and crisis management skills with the ability to translate complex technical incidents into actionable risk insights for executive leadership regional CISOs and legal partners.

  • Team Development and Mentorship: Demonstrated success mentoring analysts optimizing operational workflows and managing global follow-the-sun or escalation models efficiently.

  • Metrics-Driven Execution: Experience establishing and driving key security operations metrics (such as MTTD MTTR detection coverage against MITRE ATT&CK) to measure performance and continuously mature capability.

  • Strategic Vision and Execution: Ability to balance immediate operational fire-fighting with long-term strategic improvements to build a resilient future-proof operations center.


Nice to haves:

  • Large-Scale Platform Experience: Background operating within complex global platforms food/logistics delivery networks or multi-tenant cloud ecosystems.

  • Incident Response and Operations Certifications: High-level credentials such as CISSP CISM or advanced GIAC certifications (such as GCIH GCFA GNFA).

  • Cloud-Native Architecture Exposure: Familiarity with monitoring and responding to threats across multi-cloud environments (AWS GCP).


Additional Information :

Ensuring you and all our Heroes are looked after happy and healthy is always on the menu. Because if youre in good shape then were in good shape.

  • Make the most of our hybrid working model and join the team for face-to-face connection and collaboration in our beautiful Berlin campus 2 days a week

  • We offer 27 days holiday with an extra day on 2nd and 3rd year of service

  • Ensuring you and all our Heroes are looked after happy and healthy is always on the menu. Because if youre in good shape then were in good shape

  • Get moving and release those wonderful mind-boosting endorphins: Health Checkups Meditation Yoga Gym

  • Cash. Dough. Cheddar. Whatever you call it well help you with it: Employee Share Purchase Plan Sabbatical Bank  Public Transportation Ticket Discount Life & Accident Insurance Corporate Pension Plan

  • Look up and go for it. We will support you in developing yourself and your career: 1.000 Educational Budget Language Courses Parental Support

  • The power of getting together over some food is unrivaled. Here are a few ways to help you do that. All the yum: Digital Meal Vouchers Food Vouchers Online Canteen Corporate Discounts

We believe diversity and inclusion are key to creating not only an exciting product but also an amazing customer and employee experience. Fostering this starts with hiring - therefore we do not discriminate on the basis of racial identities religious beliefs color national origin gender identities or expressions sexual orientations age marital or disability statuses or any other aspect that makes you you.

We encourage you to let us know if you need any accommodations or specific accessibility support to ensure a smooth interview experiencejust let us know with an email to our Inclusion Officer at

Severely disabled applicants with equal qualifications will be given preferential consideration.

Youre welcome to share your pronouns (he/she/they) right from the start so we can address you respectfully from our first contact.


Remote Work :

No


Employment Type :

Full-time


About Company

Company Logo

As the world’s leading local delivery platform, our mission is to deliver an amazing experience, fast, easy, and to your door. We operate in over 70+ countries worldwide, powered by tech but driven by people. As one of Europe’s largest tech platforms, we enable ambitious talent to del ... View more

View Profile View Profile