SlipstreamJobsFresh Startup & VC-Backed Jobs

Security Tech Lead Manager

Catawiki - Amsterdam, North Holland, Netherlands - Hybrid - posted 2026-10-01

Apply on the company site

SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.

Catawiki is a curated marketplace for special objects, auctioning over 100,000 unique items weekly and having sold 25+ million objects globally. The company operates a flat structure with 800+ employees across 60+ nationalities. As Security Tech Lead Manager, you will manage a team of 2–3 security engineers within Platform Engineering while remaining hands-on. You'll own the security engineering roadmap, drive team delivery and performance, and work with Product and Platform Engineering to protect the marketplace, customers, and their data. Key responsibilities include: - Managing and developing the security team through one-to-ones, feedback, performance reviews, career development, hiring and onboarding - Owning the security engineering roadmap: prioritizing work by risk and business needs, delegating effectively, and removing delivery blockers - Staying hands-on by building security controls and automation, reviewing code, and guiding technical decisions across applications, cloud infrastructure, and software delivery - Partnering with Product and Platform Engineering early in design; leading threat modeling and security reviews - Improving vulnerability management by assessing findings in context of exposure and business impact, prioritizing remediation with system owners - Enhancing security checks in CI/CD and infrastructure as code, including dependency and secret scanning - Coordinating the security team's technical contribution to incident response and investigations - Working with Legal, IT, and Trust & Safety on overlapping security controls, policies, and audit evidence - Measuring and communicating progress through remediation times, control coverage, and adoption metrics The platform runs on Google Cloud and Kubernetes. You'll focus on application and cloud security, secure software delivery, and risks in internal and AI-enabled systems. Requirements: - Substantial hands-on security engineering experience in software or cloud environments; demonstrated implementation and operation of security capabilities in production - Previous experience managing engineers as direct reports, including performance reviews, career development, and difficult feedback; ability to balance people management with technical contribution - Ownership of a security roadmap or programme; proven ability to translate priorities into deliverable work and coordinate implementation across engineering teams - Strong knowledge of application and cloud security, including identity and access management, secrets management, and secure software development - Experience in threat modeling, secure code and design reviews, vulnerability prioritization, and practical incident response - Ability to develop or automate in Ruby, Python, Go, or similar language; comfortable reviewing backend code; experience integrating security controls into engineering workflows - Clear communication with engineers and non-technical partners; ability to explain risk in business terms and gain support for decisions when priorities compete Helpful experience: - Google Cloud, Kubernetes, and Terraform or similar infrastructure tooling - Marketplace, e-commerce, or software product business experience, including account and API security - Experience securing AI-enabled applications, agents, or data pipelines, or using AI to improve security engineering workflows

Similar roles