Responsibilities: • Define and maintain secure architecture patterns for cloud-native SaaS systems.
• Review and approve system designs for security risks.
• Lead threat modeling for new features and platform components.
• Design secure multi-tenant isolation models.
• Architect secure API frameworks and integration patterns.
• Ensure tenant data isolation and encryption strategies.
• Continuously improve Secure SDLC practices.
• Define secure coding standards and guardrails.
• Architect secure cloud environments.
• Define IAM, least-privilege access models, and service-to-service authentication.
• Participate in security audits and customer security reviews.
• Lead security incident root-cause analysis for application-layer incidents.
• Improve detection and monitoring for application-level threats.
• Collaborate with SRE to ensure security does not compromise reliability.
Requirements: • 8+ years in software engineering, security engineering, or cloud architecture.
• Strong expertise in cloud-native architecture (microservices, containers, Kubernetes).
• Deep understanding of application security (OWASP Top 10, secure coding).
• Strong knowledge of IAM, authentication protocols (OAuth2, OIDC, SAML).
• Experience designing secure multi-tenant SaaS systems.
• Hands-on experience with one major cloud provider (AWS preferred).
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Текст вакансии взят без изменений
Источник - Telegram канал. Название доступно после авторизации