Full-Time

Senior Cloud Security Engineer

Posted on 12/2/2025

Celonis

Celonis

1,001-5,000 employees

Process intelligence platform for end-to-end efficiency

No salary listed

Munich, Germany

In Person

Category
IT & Security (1)
Required Skills
Bash
Kubernetes
Microsoft Azure
Python
CloudFormation
AWS
Go
Terraform
Google Cloud Platform
Requirements
  • Proven Cloud Security Expertise: 5+ years of hands-on experience in security engineering with a strong focus on cloud (AWS, Azure, and GCP). Deep understanding of cloud architecture and services, and proven experience implementing security controls in a production cloud environment.
  • Kubernetes & Container Security: Strong experience securing containerized applications and Kubernetes clusters. Familiarity with tools and practices for container security (image vulnerability scanning, runtime security, Kubernetes network policies, service mesh security).
  • Automation Skills: Proficiency in Infrastructure-as-Code and scripting. Demonstrated ability to use Terraform, CloudFormation or similar to deploy secure configurations, and to write scripts in Python, Go, or Bash to automate security workflows. You should be able to build tools or integrations that reduce manual effort and human error.
  • Cloud Security Posture Management: Hands-on experience with Cloud Security Posture Management (CSPM) solutions or implementing automated checks for cloud compliance. Ability to identify misconfigurations and weaknesses in cloud setups and remediate them (for example, S3 bucket policies, public exposure of resources, etc.).
  • Identity & Access Management: In-depth understanding of cloud IAM and access control mechanisms. Experience designing role-based access schemes, managing federated identities (SAML/OIDC), and implementing principles of least privilege across multiple cloud accounts and services.
  • Vulnerability & Threat Management: Experience with vulnerability scanning tools (e.g., Tenable, Qualys) and interpreting their output. Knowledge of common cloud threats and vulnerabilities (OWASP Cloud Top 10, CIS benchmarks) and experience in remediating them.
  • Real-World Impact: A track record of securing real cloud deployments and solving security incidents or challenges in production. We value hands-on problem-solving skills and achievements—being able to point to projects and outcomes where you made a difference in security. (Formal degrees or certifications are less important than your proven ability to do the job.)
Responsibilities
  • Cloud Security Implementation: Implement and uphold cloud security best practices across multi-cloud environments. Harden our cloud infrastructure by leveraging native security features (e.g., AWS IAM & KMS, Azure AD & Key Vault, GCP IAM & KMS) and ensuring proper configuration of network controls, encryption, and logging.
  • Infrastructure & Kubernetes Security: Secure Celonis’ use of containerized applications and Kubernetes (EKS, AKS, GKE). This includes setting up container image scanning, enforcing Kubernetes security policies, managing secrets and certificates, and working with engineering teams to ensure microservices follow security guidelines.
  • Automation & Tooling: Develop and maintain automation scripts and Infrastructure-as-Code (Terraform, CloudFormation) to embed security into the deployment pipeline. Automate repetitive security tasks (such as provisioning secure configurations, patch management, and compliance checks) to improve efficiency and consistency.
  • Security Monitoring & Response: Enhance cloud security monitoring by tuning and extending CSPM tools and cloud-native monitoring (CloudTrail, GuardDuty, Azure Security Center, etc.). Identify potential vulnerabilities or misconfigurations proactively and work on fixes. Assist in investigating security alerts or incidents related to cloud infrastructure and coordinate remediation efforts.
  • Identity and Access Management: Continuously improve cloud IAM configurations to enforce least-privilege access. Manage roles, policies, and access keys across the organization’s cloud accounts. Implement solutions like Teleport to strengthen access controls for engineers and applications accessing sensitive cloud resources.
  • Vulnerability Management: Work with vulnerability scanning tools (such as Tenable Nessus/Tenable.io) to regularly scan cloud assets and container images.
  • Collaboration & Guidance: Serve as a security subject matter expert for cloud projects. Collaborate with developers, DevOps, and SRE teams to advise on secure architecture and coding practices. Contribute to threat modeling exercises and review new features/infrastructure for potential security risks before deployment.]
  • desirable:
  • Teleport & Advanced Tools: Experience with Teleport or similar identity-based access proxies for infrastructure is a strong plus, as is familiarity with the Tenable suite or other vulnerability management platforms. Comfort with other security tools (SIEM, IDS/IPS, container security platforms like Aqua or Prisma Cloud) is beneficial.
  • DevSecOps Mindset: Working knowledge of CI/CD pipelines and how to integrate security testing into them (e.g., integrating SAST/DAST, secret scanning in pipelines). Ability to work in an Agile environment and partner with development teams using a DevSecOps approach.
  • SaaS Security Challenges: Prior experience in a SaaS or cloud-native product company. Understanding the security considerations of multi-tenant architectures, data privacy, and scaling security solutions in a customer-facing cloud service.
  • Continuous Learning & Innovation: Passion for staying up-to-date with the latest cloud security threats, tools, and best practices. Participation in security conferences, certifications like AWS/Azure Security Specialty, or contributions to open source security projects are a plus (though we prioritize practical knowledge over credentials).
  • Collaborative Communication: Excellent communication skills to articulate complex security issues to both technical and non-technical colleagues. Experience writing security documentation or standard operating procedures, and fostering a culture of security awareness within teams.
Desired Qualifications
  • Teleport & Advanced Tools: Experience with Teleport or similar identity-based access proxies for infrastructure is a strong plus, as is familiarity with the Tenable suite or other vulnerability management platforms. Comfort with other security tools (SIEM, IDS/IPS, container security platforms like Aqua or Prisma Cloud) is beneficial.
  • DevSecOps Mindset: Working knowledge of CI/CD pipelines and how to integrate security testing into them (e.g., integrating SAST/DAST, secret scanning in pipelines). Ability to work in an Agile environment and partner with development teams using a DevSecOps approach.
  • SaaS Security Challenges: Prior experience in a SaaS or cloud-native product company. Understanding the security considerations of multi-tenant architectures, data privacy, and scaling security solutions in a customer-facing cloud service.
  • Continuous Learning & Innovation: Passion for staying up-to-date with the latest cloud security threats, tools, and best practices. Participation in security conferences, certifications like AWS/Azure Security Specialty, or contributions to open source security projects are a plus (though we prioritize practical knowledge over credentials).
  • Collaborative Communication: Excellent communication skills to articulate complex security issues to both technical and non-technical colleagues. Experience writing security documentation or standard operating procedures, and fostering a culture of security awareness within teams.

Celonis offers a Process Intelligence platform that creates a digital twin of an organization's end-to-end processes to show how work actually flows across departments. It collects data from multiple source systems in a system-agnostic way to map processes, reveal bottlenecks, and identify where improvements are possible. Compared with competitors, it stands out by providing an unbiased, cross-system view and by tying process insights to measurable outcomes like faster approvals and cost savings. Its goal is to help large organizations streamline operations, accelerate digital transformation, and realize sustained efficiency by acting on data-driven process improvements.

Company Size

1,001-5,000

Company Stage

Series D

Total Funding

$2.4B

Headquarters

Munich, Germany

Founded

2011

Simplify Jobs

Simplify's Take

What believers are saying

  • Oracle partnership deploys Process Intelligence on OCI for AI workflows.
  • AWS collaboration builds autonomous AI agents for automotive manufacturing.
  • Ewan Henderson leads North America to drive Fortune 500 AI ROI.

What critics are saying

  • SAP Signavio undercuts pricing by 30-50% in mid-market deals.
  • UiPath erodes automotive dominance with faster RPA-AI integration.
  • Oracle Fusion commoditizes Celonis layer, diverting 20-30% pipeline.

What makes Celonis unique

  • Celonis EMS creates system-agnostic digital twins of end-to-end processes.
  • Celonis integrates process mining with AI for execution management.
  • Celonis provides 170+ instruments to measure and unlock execution capacity.

Help us improve and share your feedback! Did you find this helpful?

Benefits

Health Insurance

Dental Insurance

Life Insurance

401(k) Retirement Plan

401(k) Company Match

Unlimited Paid Time Off

Paid Vacation

Paid Sick Leave

Paid Holidays

Hybrid Work Options

Company Equity

Wellness Program

Growth & Insights and Company News

Headcount

6 month growth

0%

1 year growth

0%

2 year growth

0%
Yahoo Finance
Apr 13th, 2026
Celonis and Oracle expand partnership to deploy AI-powered process intelligence on cloud

Celonis has expanded its partnership with Oracle to deploy its Process Intelligence platform on Oracle Cloud Infrastructure, supporting enterprise AI adoption and operational modernisation. The integration connects Celonis with Oracle Fusion Cloud Applications, enabling businesses to analyse end-to-end processes, identify automation opportunities and track operational outcomes. The collaboration addresses growing demand for cloud solutions managing data-intensive AI workloads. Celonis' process intelligence layer provides AI agents with operational insights across Oracle and third-party applications, whilst assisting organisations migrating from legacy systems to Oracle Fusion Cloud ERP. Co-CEO Bastian Nominacher said AI agents require proper context to be effective, which Celonis Process Intelligence provides. The joint offering combines Celonis' capabilities with Oracle Cloud Infrastructure's performance and security features to help enterprises scale AI implementation confidently.

AiThority
Apr 10th, 2026
Celonis and Oracle collaborate to power Enterprise AI and accelerate IT modernization.

Celonis and Oracle collaborate to power Enterprise AI and accelerate IT modernization. Celonis, a global leader in Process Intelligence, announced a new phase of its long-standing collaboration with Oracle to help enterprises modernize operations and industrialize Enterprise AI, driving real business value. This collaboration enables companies to deploy the Celonis Process Intelligence platform on Oracle Cloud Infrastructure (OCI), and builds on existing integrations between Celonis and Oracle Fusion Cloud Applications. This collaboration enables companies to deploy the Celonis Process Intelligence platform on Oracle Cloud Infrastructure (OCI), and builds on existing integrations between Celonis and Oracle Fusion Cloud Applications. Joint customers can now analyze and optimize end-to-end business processes across finance, supply chain, and other core business functions. Combining the Celonis Process Intelligence Platform with OCI and Oracle Fusion Cloud Applications enables customers to: Apr 10, 2026 Prev Next 1 of 42,834 * Enhance AI-driven workflows by incorporating Celonis Process Intelligence into AI services running on OCI * Identify high-impact opportunities for automation and Enterprise AI adoption while tracking value realization over time * Orchestrate end-to-end processes across Oracle Fusion Cloud Applications, third-party applications, and custom solutions running on OCI * Support modernization initiatives by using Celonis Process Intelligence for analyzing, benchmarking, and reducing risk when migrating from legacy systems to Oracle Fusion Cloud ERP As demand grows for scalable and secure AI infrastructure, enterprises are increasingly standardizing on cloud platforms that can support data-intensive and mission-critical workloads. OCI delivers the performance, scalability, and security needed to run complex AI and enterprise workloads. Celonis provides an "intelligence layer" - a system-agnostic digital twin - that gives AI agents the ability to process data and deep operational context they need to move beyond simple automation to autonomous, business-critical execution. "AI agents are only as effective as the context they operate in - and Celonis Process Intelligence provides that foundation," said Bastian Nominacher, co-CEO and co-founder of Celonis. "Expanding our collaboration with Oracle allows customers to scale AI with confidence, grounded in a real-time understanding of their business operations." "Oracle Cloud Infrastructure is designed to run demanding AI and enterprise workloads with high performance and reliability," said Chris Gandolfo, executive vice president, Oracle Cloud Infrastructure and AI. "Together with Celonis, we are helping customers gain deeper process insights and accelerate modernization initiatives on a secure, scalable cloud platform."

The Associated Press
Mar 25th, 2026
Celonis wins 2026 AGA Innovation Challenge with audit acceleration solution for government agencies

Celonis has won the 2026 Innovation Challenge at the Association of Government Accountants Technology & Transformation Summit. The global process mining leader was recognised for its Audit Acceleration and Control Monitoring Solution, which modernises how government agencies detect risk and monitor internal controls. The solution uses process intelligence to continuously analyse transactional data, enabling agencies to monitor control performance in near real-time, detect violations as they occur, and identify root causes of audit findings. This shifts agencies from reactive audit remediation to proactive control monitoring. Selected by expert panel and voted on by attendees, finalists were evaluated on broad applicability, measurable impact and real-world feasibility. The solution initially focuses on accounts payable but can extend across financial and operational workflows.

Amazon Web Services
Mar 16th, 2026
Building autonomous AI agents on AWS with Celonis process intelligence.

Building autonomous AI agents on AWS with Celonis process intelligence. * AWS * solutions * customer stories building autonomous AI agents on AWS with Celonis process intelligence learn how Celonis and AWS combined process intelligence and agentic AI to autonomously orchestrate complex manufacturing workflows in the automotive industry. Overview. Celonis, a global leader in process mining and process intelligence, partnered with Amazon Web Services (AWS) to demonstrate how autonomous AI agents can be deployed to solve critical operational challenges in automotive and manufacturing environments. By combining Celonis's deep process intelligence with the scalable, serverless infrastructure of AWS, the two companies built an agentic solution capable of autonomously coordinating production schedules across fragmented systems and partner networks - dramatically reducing manual intervention and cutting lead times in order-to-delivery processes. About Celonis. Celonis is the global leader in process mining and process intelligence, helping organizations across industries uncover inefficiencies, identify root causes of operational bottlenecks, and take action to improve their processes. With a strong focus on automotive and manufacturing customers, Celonis leverages AI and data to transform how businesses operate at scale. Opportunity | aligning production schedules across fragmented systems in automotive manufacturing. In complex automotive manufacturing environments, aligning production schedules between multiple companies operating on different systems is a persistent challenge. Celonis identified a critical bottleneck in the order-to-delivery process: coordinating appointments between internal resources and external partners required significant manual effort, was prone to delays, and relied on human intermediaries to bridge disconnected systems. The core challenges were threefold: * Fragmented data sources spread across internal and partner systems * Multiple external partner systems requiring real-time coordination * Manual intervention by human operators to manage scheduling and communication between systems Celonis sought to build an AI agent capable of handling all coordination autonomously - retrieving order data, checking partner availability, and scheduling appointments - without human involvement in the loop. Solution | deploying autonomous AI agents powered by process intelligence and AWS. To address these challenges, Celonis and AWS co-developed an agentic solution built on Amazon Bedrock AgentCore, a serverless environment designed for deploying and scaling AI agents and MCP servers. The agent was built using the Strands SDK, AWS's open-source framework for building and deploying agents, and connected to external systems via the open MCP (Model Context Protocol) standard. At the heart of the solution is the Celonis MCP Server, which exposes a set of tools enabling the agent to: * Load all order data and identify orders ready for partner scheduling * Retrieve partner data and available resources * Apply customizations from partners to orders * Trigger action flows within the Celonis environment to write results back into the system The agent also connects to third-party systems - such as partner calendar APIs - to check availability and avoid scheduling conflicts. By cross-referencing data from both the Celonis environment and external systems, the agent autonomously identifies the optimal time slot and schedules the appointment, then writes the outcome back into Celonis via an action flow. The architecture leverages four key components of Amazon Bedrock AgentCore: * AgentCore Runtime: A serverless environment for deploying and scaling agents and MCP servers, supporting any open-source framework and protocol. It automatically versions runtime deployments and exposes them through a secure endpoint. * AgentCore Gateway: A centralized, secure hub for managing and exposing MCP servers and REST APIs to agents through a single unified interface - simplifying tool discovery, authentication, and orchestration at scale. * AgentCore Identity: A centralized identity and credentials management system that assigns each agent its own scoped identity, controlling both inbound access (which users can trigger the agent) and outbound access (which tools the agent can use). * AgentCore Observability: Full tracing and transparency of agent activity, logging every tool call, request, and response between the agent and downstream systems - enabling continuous process improvement by feeding logs back into the Celonis environment. Outcome | A scalable blueprint for autonomous process orchestration. The joint solution between Celonis and AWS demonstrates a scalable, trustworthy blueprint for deploying autonomous AI agents in industrial environments. By grounding agents in process intelligence - using process mining to identify bottlenecks, define guardrails, and feed agents the right context - organizations can ensure that AI acts purposefully and reliably within their operations. The observability layer provided by AgentCore enables a continuous improvement loop: agent logs are written back into Celonis, allowing teams to monitor agent behavior, validate outcomes, and refine processes over time. This closes the loop between AI action and process intelligence, ensuring that deployed agents genuinely improve operational performance. Looking ahead, Celonis and AWS see this architecture as a foundation for expanding autonomous orchestration across additional use cases in automotive and manufacturing - wherever fragmented systems, manual coordination, and complex partner networks create friction in critical business processes. It's AWS who builds the agent and Celonis who provides the playbook and the rules of the game. Peter Hofmann Applied Automotive Engineer at Celonis

Pyze
Mar 3rd, 2026
Fueling enterprise AI: Pyze delivers 150% growth and record expansion in 2025.

Fueling enterprise AI: Pyze delivers 150% growth and record expansion in 2025. Pyze reports 150% year-over-year Bookings Growth in 2025, 100% Renewal Rate, record $1M+ enterprise contracts, and second straight Year of Positive EBITDA. March 3, 2026 (Redwood City, Calif.) - Pyze, the leader in Data for Productivity Optimization and AI Operationalization, today announced its 2025 results, highlighted by 150% year-over-year growth in bookings, a 100% customer renewal rate, multiple $1M+ multi-year enterprise agreements, and its second consecutive year of positive EBITDA cash flow. The results reflect accelerating demand from global enterprises seeking to operationalize AI, improve workforce productivity, and modernize mission-critical systems - while demanding measurable ROI and financial discipline from technology partners. "2025 was a defining year for Pyze," said Prabhjot Singh, Co-Founder & CEO of Pyze. "Enterprises are moving beyond AI experimentation toward operationalization. Our platform enables them to baseline productivity, build AI agents based on real execution data, and measure ROI in production. Achieving 150% bookings growth while delivering a second straight year of positive EBITDA demonstrates that we can scale responsibly and sustainably." Record enterprise adoption & expansion. In 2025, Pyze achieved: - 150% Year-over-Year Bookings Growth - 100% Customer Renewal Rate - Multiple $1M+ Multi-Year Enterprise License Agreements - Second Consecutive Year of Positive EBITDA Cash Flow Operationalizing enterprise AI. As organizations increase AI investment, many struggle to deploy agents intelligently and measure impact. Pyze addresses this gap by capturing real-time behavioral telemetry inside mission-critical systems such as Pega, Salesforce, Guidewire, SAP, and custom applications. This execution intelligence enables enterprises to: - Baseline workforce productivity at screen, workflow, and field levels - Identify high-impact AI and automation opportunities - Build AI agents based on observed execution patterns - Quantify productivity improvements post-deployment By integrating with Celonis Process Intelligence, Pyze expands visibility from process flows into the human execution layer - unlocking new domains for optimization and agentic automation. Strategic partnerships accelerate scale. In 2025, Pyze finalized a global reseller partnership with Celonis, enabling Pyze to be transacted as a certified Celonis Platform Application. The collaboration expands process intelligence into the human execution layer and strengthens joint enterprise go-to-market motion. Pyze also formalized a global partnership with EY and deepened its alliance with Virtusa to embed productivity and modernization intelligence into large-scale transformation programs. Product innovation: from productivity to agentic enterprise. Building on its Productivity Insights Generator and Pega Transformation Accelerator, Pyze introduced AI Readiness & Agent Discovery capabilities in 2025 - enabling enterprises to systematically identify, prioritize, and measure AI agent opportunities across thousands of employees. Customers now use Pyze to: - Identify 10-20% hard productivity gains within 8-10 weeks of deployment - Generate structured modernization requirements from live execution data - Monitor human-AI interaction and continuously optimize agent performance Positioned for continued scale in 2026. With strong enterprise expansion, strategic channel leverage, and disciplined financial execution, Pyze enters 2026 positioned for continued growth. "Our focus remains clear," added Singh. "Help enterprises operationalize AI safely, intelligently, and measurably. Productivity is the baseline. Execution intelligence is the enabler. And measurable ROI is the outcome." About Pyze Pyze is the leading Productivity Intelligence platform enabling enterprises to operationalize AI and maximize workforce productivity inside mission-critical applications. By capturing continuous, business-contextual telemetry across enterprise systems, Pyze provides the foundation for AI agent discovery, modernization acceleration, and measurable operational improvement. Pyze expands visibility from workflows into human execution patterns - enabling enterprises to move from AI experimentation to enterprise-scale operationalization. Pyze serves Fortune 500 and global enterprises across Financial Services, Banking, Insurance, Life Sciences, Telecommunications, and other regulated industries.

INACTIVE