Logo Verimatrix, Inc.

Senior Security Architect

New

Job

  • Level
    Senior
  • Job Field
    IT, Application, Security
  • Employment Type
    Full Time
  • Contract Type
    Permanent employment
  • Location
    Ismaning
  • Working Model
    Onsite
  • Job Summary

    In this position, you will be accountable for the security of the cloud infrastructure, develop security policies, lead threat modeling efforts, and implement security solutions for CI/CD processes within the AWS environment.

    Job Technologies

    Your role in the team

    • The Senior Security Architect will be accountable for the security of the cloud infrastructure behind those services: reporting to the CTO, he/she sets the technical direction for cloud security across our AWS estate and define the standard that engineering teams build to.
    • Design and own security controls across our AWS estate: IAM, network segmentation, encryption, logging, and secrets management.
    • Leads threat modelling and security architecture reviews for new services and major changes, working one-to-one with development teams on secure design.
    • Set cloud security policy and the security roadmap jointly with security and platform leadership.
    • Partner with Product Management to define and clarify security requirements.
    • Build security into CI/CD: IaC scanning, container and base-image scanning, dependency and SBOM checks, policy-as-code, and automated guardrails.
    • Write and maintain Terraform modules and golden patterns so that the secure path is the easy path for product engineers.
    • Drive adoption of automated security tooling, including cloud-native vulnerability scanning and security agents (e.g. AWS Inspector).
    • Evaluate and recommend secure development tooling, including IDE-integrated security and AI coding-assistant guardrails.
    • Improve detection coverage for cloud-native attack paths.
    • Act as senior responder for cloud security incidents: build and maintain runbooks, and run post-incident reviews that produce durable fixes.
    • Assess the impact of vulnerabilities and exploits, and own the incident response process end to end.
    • Manage CSPM/CNAPP tooling: triage findings and drive remediation with the owning teams.
    • Analyze the impact of WAF rules on our products.
    • Koordination von DAST- und Penetration-Testing-Programmen über Produkte hinweg.
    • Unterstützung bei ISO 27001 mit Nachweisen und Kontrollimplementierung.
    • Support regulatory security obligations, including the EU Cyber Resilience Act (CRA).
    • Leiten Sie Sicherheitsüberprüfungen neuer Drittanbieter-Tools.
    • Mentor engineers on secure cloud design and act as security partner to the platform, product, and operations teams.

    This text has been machine translated. Show original

    Our expectations of you

    Qualifications

    • Deep, practical expertise with the AWS security suite: Organizations and SCPs, KMS, Config, GuardDuty, CloudTrail, Security Hub, Inspector, WAF, and Shield Advanced.
    • Strong infrastructure-as-code skills (Terraform) and scripting and automation (Python, Go).
    • Working knowledge of identity protocols (OIDC, OAuth 2.0, SAML) and of applied cryptography and PKI: key hierarchies, certificate lifecycle, and secure key storage.
    • Strong communication skills: you can influence engineering teams you do not manage and explain risk to non-security stakeholders in terms of business impact.
    • Certifications such as AWS Certified Security - Specialty, AWS Certified Advanced Networking - Specialty, AWS Certified Solutions Architect - Professional, CISSP, or CCSP.
    • Knowledge of the EU Cyber Resilience Act and related product security regulations.
    • Vertrautheit mit On-Premises- und Cloud-Security-Tools, die den SDLC unterstützen.

    Experience

    • 8+ years in security engineering, including at least 5 focused on cloud.
    • Kubernetes and container security experience.
    • Experience with secure SDLC practices: threat modeling, secure design review, SAST/DAST, and penetration testing.
    • Experience leading incident response.
    • Experience with media security, DRM, conditional access, or anti-piracy technologies.
    • Experience with HSMs and cryptographic key management.

    This text has been machine translated. Show original

    What we offer

    • Ismaning (Munich), Bavaria, Germany - Vollzeit.

    This text has been machine translated. Show original

    Topics You Will Work On

    Job Locations

    • Location Ismaning

      85737 Bayern

      Germany

    About Your Employer

    Verimatrix, Inc.

    Verimatrix, Inc.

    Verimatrix is setting new standards for connected devices and services with its innovative combination of security and data analytics. This allows businesses to maximise their revenue potential, protect their reputation, and enable growth.

    Description

  • Language
    English
  • Company Type
    Established Company
  • Working Model
    Full Remote, Onsite
  • Industry
    Internet, IT, Telecommunication
  • Logo Verimatrix, Inc.

    Senior Security Architect

    Location
    Ismaning
    Working Model
    Onsite
    Diversity
    Open for all genders
    English Only
    English only required

    More Jobs