EnglishWillDo

Lead Cyber Security Engineer

VELUX · Østbirk, Denmark

No Danish requiredPosted today
Apply for this job

You apply on the site where the job is posted. I never handle applications.

Lead cyber security at the heart of product innovation. With deep technical expertise, a strategic mindset, and a passion for secure engineering, you could be our next Lead Cyber Security Engineer.

Meet your future team

Cyber security is a fundamental part of how we design, develop and deliver innovative products. Within our Products & Innovation organisation, security is embedded as an engineering discipline and a shared responsibility across development teams, IT, regulatory functions and external partners.

The Lead Cyber Security Engineer will play a pivotal role in advancing our security transformation, combining technical expertise with strategic leadership to strengthen secure engineering practices across the organisation.

Working within a collaborative, multidisciplinary environment, this role offers the opportunity to influence product development, shape security culture and help ensure our products remain secure, resilient and compliant in an evolving regulatory landscape.

You will be based in our beautiful offices in Innovation House in Østbirk.

What we offer

The Lead Cyber Security Engineer will lead the continual development of secure-by-design practices across the product lifecycle, ensuring security is considered from concept through to deployment and ongoing support.

The role combines hands-on technical expertise with the ability to influence engineering teams, guide strategic initiatives and drive continuous improvement across security capabilities.

Working closely with software engineering, architecture, IT, legal, purchasing and regulatory colleagues, the role will translate cyber security requirements into practical engineering solutions while supporting compliance with industry standards and emerging legislation.

Key responsibilities include:

  • Driving the adoption of secure engineering practices across embedded, cloud and mobile technologies.
  • Leading security risk assessments, design reviews and technical assurance activities throughout the development lifecycle.
  • Embedding DevSecOps principles, security tooling and secure development practices across engineering teams.
  • Translating regulatory and industry frameworks into scalable operational practices.
  • Building cyber security capability through coaching, collaboration and Security Champion initiatives.
  • Partnering with internal stakeholders, suppliers and external organisations to strengthen governance and security maturity.

What you will bring

The ideal candidate holds a relevant degree in Computer Science, Software Engineering, or a related field, and brings more than 10 years of cybersecurity experience. You have expert knowledge of security principles across embedded, cloud, and mobile environments, combined with a strong understanding of IT infrastructure and end-to-end security.

You have hands-on experience with:

  • Vulnerability management and patch governance
  • Input validation, encryption, certificate handling, endpoint protection, and Identity & Access Management (IAM)
  • Securing on-premises and cloud environments
  • Threat modelling (TARA), static analysis tools, CMMI, and security maturity frameworks

You proactively drive compliance with relevant cybersecurity regulations and standards, including CRA, ISO 27001, RED, Cyber Essentials Plus, GDPR, the Data Act, and the AI Act.

You can communicate complex cybersecurity risks clearly to both technical and non-technical audiences, including executives and senior leaders.

You have experience driving Security Champions programmes and partnering with value stream teams to embed secure-by-design principles, threat modelling, secure coding, and DevSecOps. You are familiar with security tooling such as SBOM, SCA, and SAST, and take a collaborative, human-centric approach to improving security maturity across the organisation.

Ready to apply?

Learn more about the Group online at www.velux.com where you can read more about working here and what to expect from the recruitment process.

We look forward to receiving your application and CV as soon as possible. We are conducting interviews on an ongoing basis until we find the right match.

All inquiries will be treated confidentially.

About the VELUX Group

In the VELUX Group, we offer you a world of opportunities and the chance to create a bright future. From the forefront of the roof window category, we enable those who live, work, and play under the roof to transform their spaces and live a healthier everyday life with more daylight and fresh air.

The Group is an international, family‑owned business with strong financial roots, and each year we create real impact by reinvesting in society, our employees, and the planet through our foundations. With 20 production companies in 12 countries and sales companies in 37 countries, our products are widely available. We employ around 12,000 people and are headquartered in Denmark. Alongside the rest of our values, “courage” and “mutual respect” guide how we work and contribute to the world.

Equal Opportunity Employer

At VELUX Residential, we believe in fostering a diverse workplace where everyone can thrive, develop, and perform at their best. We are committed to providing equal opportunities for all, whether you are applying for a role or already part of the organisation. We recruit, hire, train, and promote based on skills and potential, without regard to race, colour, religion, sex, age, neurodiversity, disability, protected veteran status, national origin, sexual orientation, or any other basis prohibited by applicable law.

We focus on what truly matters: your qualifications and how you can contribute to our shared mission and success.