Security Architect providing expertise to secure software development ecosystems including CI/CD pipelines and code repositories. Ensuring security principles are integrated throughout the Software Development Lifecycle (SSDL).
Responsibilities
Provide architectural and technical expertise to secure the software development ecosystem.
Ensure security principles are embedded throughout the Secure Software Development Lifecycle (SSDL).
Conduct threat modeling and risk assessments for DevOps and SDLC tools.
Collaborate with Product Security & Data Privacy team to embed security in development processes.
Implement security automation for code scanning, dependency checks, and CI/CD workflows.
Assist incident response teams to monitor tool-related threats and define alerting workflows.
Requirements
Bachelor's or Master’s degree in Software Engineering, Cybersecurity, or related field.
8+ years in Information Security with at least 3+ years focused on application security or DevSecOps.
Hands-on experience with engineering tools (Jira, Bitbucket, SonarQube, Nexus, Jenkins) and CI/CD pipelines.
Strong knowledge of SSDL, OWASP principles, and secure coding practices.
Expertise in identity and access management, RBAC, and SSO.
Familiarity with cloud security and container security (AWS, Azure, Kubernetes).
Excellent communication and stakeholder management skills.
Preferred certifications: CISSP, CSSLP, or equivalent.
Benefits
Empowerment: You'll work as part of a global team in a flexible work environment, learning and enhancing your expertise.
Innovation: You embrace challenges and want to drive change.
Integrity: You are results-orientated, reliable, and straightforward and value being treated accordingly.
IT Security Officer overseeing information security for a specific IT sector at Desjardins. Collaborating with cross - sector teams and managing information security risks and vulnerabilities.
Associate, Information Security professional at Santander focusing on Vulnerability Management and network security exposure. Collaborating with teams to enhance security posture and manage technology risks.
IAM Security & Technology Governance person driving IAM technical program with cutting - edge technology to improve security posture at MUFG. Manage IAM requirements, standards, governance and solutions across global implementation.
Senior Analyst in Mastercard's newly created Vocalink Control Office supporting control testing across Security domains. Ensuring a strong control environment and identifying gaps for improvement.
Senior Analyst focusing on Information Security and Compliance at Cirque du Soleil. Engaging in threat analysis and improvement of security tools and processes, within a creative company culture.
Security Architect designing and implementing cybersecurity architectures for UK Defence projects. Collaborating with stakeholders to safeguard client data against cyber threats.
System Security Specialist analyzing risks and security controls for state agencies. Conducting assessments, providing advisory support, and strengthening cybersecurity posture.
Security Data Specialist supporting a large - scale cybersecurity assessment program for State government agencies. Transforming assessment data into actionable insights and enabling data - driven decision - making across stakeholders.
Trainee in Health & Safety supporting environmental and health safety processes at Hikma Pharmaceuticals. Collaborating on waste management and legal documentation while developing practical EHS skills.
Senior Security Engineer for Ro, enhancing SaaS security posture management and data loss prevention. Collaborating across teams to secure patient data and maintain compliance standards.