Senior Software Security Architect (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Senior Software Security Architect (Cybersecurity): Designing and implementing secure software architectures for high-security cash cycle systems with an accent on Security by Design and secure software integration. Focus on threat modeling, risk assessments, and overseeing SSDLC practices across global customer projects.
Location: Not explicitly stated (requires 25% international travel)
Company
is an international technology group specializing in integrated security technologies for digital and physical currencies.
What you will do
- Ensure internal and external software components follow Security by Design principles from architecture to go-live.
- Derive security requirements from contracts and standards to create clear project guidelines.
- Perform threat and risk assessments for applications and integrations to define mitigation measures.
- Review software, interface, and integration designs from a security perspective.
- Oversee SSDLC practices for third-party developments and coach internal teams on best practices.
- Coordinate vulnerability management, patch strategies, and validate security testing.
Requirements
- University degree in Computer Science, Information Security, Electrical Engineering, or a related STEM field.
- Several years of experience designing secure software architectures, ideally in critical infrastructure or manufacturing.
- Hands-on experience with frameworks such as OWASP SAMM, NIST SSDF, and IEC 62443-4-1.
- Strong background in threat modeling, risk assessments, and common vulnerability classes (OWASP Top 10, CWE).
- Experience with secure SDLC/SSDLC processes and CI/CD pipelines.
- English: C1 level required (written and spoken).
- High willingness to travel approximately 25% internationally.
Nice to have
- Proficiency in French.
- Knowledge of German.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →