400px Zalando Logo.svg Principal Security Analyst (all genders)

Principal Security Analyst (all genders)

  • Full Time
  • Berlin, Berlin, Germany
  • TBD USD / Year
  • Zalando profile

  • Job applications may no longer being accepted for this opportunity.



Zalando CSIRT is looking for a Principal Security Analyst to help protect our critical assets against any cyber threat.

Our Principal Security Incident Analyst will work very closely with our CSIRT Manager, lead our response to major incidents, take care of upskilling the CSIRT and making sure we have the right technology and processes in place to keep our security posture on the highest standard. They should be specialists in analytics, threat hunting, threat detection and containment and also contribute with their knowledge to the InfoSec community within Zalando.

Most of their time, they will work during core business hours but also regularly on-call outside of business hours and on weekends on the 3rd level.


At Zalando, our vision is to be inclusive by design. And this vision starts with our hiring – we do not discriminate on the basis of gender identity, sexual orientation, personal expression, ethnicity, religious belief, or disability status. You are welcome to leave out your picture, age, or marital status from your application. We only assess candidates on their qualifications and merit.

We want to provide you with a great candidate experience. Feel free to inform us of any accommodations you may need, so we can best support you throughout the hiring process.

do.BETTER – our diversity & inclusion strategy https //corporate.zalando.com/en/our-impact/dobetter-our-diversity-and-inclusion-strategy

Our employee resource groups https //corporate.zalando.com/en/our-impact/our-employee-resource-groups


  • As a Principal Security Analyst, you will be the right hand of our CSIRT Manager and take a central role in our response to major incidents, reaching the 3rd level;
  • On major incidents, you partner with engineering teams and other on-call staff to drive the investigation and response and facilitate swift decision-making;
  • Interact with platform partners on 3rd party Incidents to evaluate the potential impact on Zalando;
  • You will build and maintain our capability to enable data and intelligence-driven approach to defensive security operations and grow our expertise by mentoring our CSIRT Analysts; As part of this you will design and execute tabletop exercises to ensure all CSIRT Analysts and Stakeholders understand their roles and can execute their responsibilities during an Incident;
  • You develop and maintain our incident response playbooks and provide recommendations for other necessary documentation, such as standard operating procedures.


  • You have 7+ years of working experience operating on-call in a Senior role in a SOC or a CSIRT;
  • You have excellent communication skills, verbal and written, and a proven track record for dealing with senior stakeholders;
  • You bring strong technical leadership skills to help uplift the CSIRT and work closely with the CSIRT Manager and engineering teams;
  • You have a profound understanding of Amazon Web Services (AWS) and Kubernetes;
  • You are proficient in managing and securing Google Workspace or Microsoft 365.
  • You gained in-depth expertise in implementing and operating a variety of Incident management ticketing systems, SIEM platforms, SOAR tools, EDR and DLP solutions and WAFs;
  • The MITRE ATT&CK framework, the Cyber Kill Chain, and Nist 800-61r2 are very familiar to you;
  • You have experience with scripting languages to streamline security operations.

If you think you have what it takes, we encourage you to apply even if you don’t meet every single requirement. You may just be the right candidate for this or other roles!


Zalando provides a range of benefits, here’s an overview of what you can expect. Ask your Talent Acquisition Partner to learn more about what we offer.

  • Employee shares program
  • 40% off fashion and beauty products sold and shipped by Zalando, 30% off Zalando Lounge, discounts from external partners
  • 2 paid volunteering days a year
  • Hybrid working model with 60% (or more) remote per week, actual practice is up to each team to best support their collaboration
  • Work from abroad for up to 30 working days a year
  • 27 days of vacation a year to start
  • Relocation assistance available (subject to prior agreement)
  • Family services, including counseling and support
  • Health and wellbeing options (including Gympass)
  • Mental health support and coaching available

Learn all about Zalando and our values here https //jobs.zalando.com/en/?gh_src=22377bdd1us

To apply for this job please visit jobs.zalando.com.

Job Notifications
Subscribe to receive notifications for the latest job vacancies.