Logo Verimatrix, Inc.

Senior Security Architect

Neu

Job

  • Level
    Senior
  • Job Feld
    IT, Application, Security
  • Anstellung
    Vollzeit
  • Vertragsart
    Unbefristetes Dienstverhältnis
  • Ort
    Ismaning
  • Arbeitsmodell
    Onsite
  • Job Zusammenfassung

    In dieser Rolle übernimmst du die Verantwortung für die Sicherheit der Cloud-Infrastruktur, entwickelst Sicherheitsrichtlinien, arbeitest an Bedrohungsmodellierungen und implementierst Sicherheitslösungen für CI/CD-Prozesse in der AWS-Umgebung.

    Job Technologien

    Deine Rolle im Team

    • The Senior Security Architect will be accountable for the security of the cloud infrastructure behind those services: reporting to the CTO, he/she sets the technical direction for cloud security across our AWS estate and define the standard that engineering teams build to.
    • Design and own security controls across our AWS estate: IAM, network segmentation, encryption, logging, and secrets management.
    • Lead threat modelling and security architecture reviews for new services and major changes, working one-to-one with development teams on secure design.
    • Set cloud security policy and the security roadmap jointly with security and platform leadership.
    • Partner with Product Management to define and clarify security requirements.
    • Build security into CI/CD: IaC scanning, container and base-image scanning, dependency and SBOM checks, policy-as-code, and automated guardrails.
    • Write and maintain Terraform modules and golden patterns so that the secure path is the easy path for product engineers.
    • Drive adoption of automated security tooling, including cloud-native vulnerability scanning and security agents (e.g. AWS Inspector).
    • Evaluate and recommend secure development tooling, including IDE-integrated security and AI coding-assistant guardrails.
    • Improve detection coverage for cloud-native attack paths.
    • Act as senior responder for cloud security incidents: build and maintain runbooks, and run post-incident reviews that produce durable fixes.
    • Assess the impact of vulnerabilities and exploits, and own the incident response process end to end.
    • Manage CSPM/CNAPP tooling: triage findings and drive remediation with the owning teams.
    • Analyze the impact of WAF rules on our products.
    • Coordinate DAST and penetration testing programs across products.
    • Support ISO 27001 with evidence and control implementation.
    • Support regulatory security obligations, including the EU Cyber Resilience Act (CRA).
    • Lead security reviews of new third-party tools.
    • Mentor engineers on secure cloud design and act as security partner to the platform, product, and operations teams.

    Unsere Erwartungen an dich

    Qualifikationen

    • Deep, practical expertise with the AWS security suite: Organizations and SCPs, KMS, Config, GuardDuty, CloudTrail, Security Hub, Inspector, WAF, and Shield Advanced.
    • Strong infrastructure-as-code skills (Terraform) and scripting and automation (Python, Go).
    • Working knowledge of identity protocols (OIDC, OAuth 2.0, SAML) and of applied cryptography and PKI: key hierarchies, certificate lifecycle, and secure key storage.
    • Strong communication skills: you can influence engineering teams you do not manage and explain risk to non-security stakeholders in terms of business impact.
    • Certifications such as AWS Certified Security - Specialty, AWS Certified Advanced Networking - Specialty, AWS Certified Solutions Architect - Professional, CISSP, or CCSP.
    • Knowledge of the EU Cyber Resilience Act and related product security regulations.
    • Familiarity with on-premises and cloud security tooling supporting the SDLC.

    Erfahrung

    • 8+ years in security engineering, including at least 5 focused on cloud.
    • Kubernetes and container security experience.
    • Experience with secure SDLC practices: threat modeling, secure design review, SAST/DAST, and penetration testing.
    • Experience leading incident response.
    • Experience with media security, DRM, conditional access, or anti-piracy technologies.
    • Experience with HSMs and cryptographic key management.

    Unser Angebot

    • Ismaning (Munich), Bavaria, Germany - Full Time.

    Themen mit denen du dich im Job beschäftigst

    Job Standorte

    • Standort Ismaning

      85737 Bayern

      Deutschland

    Das ist dein Arbeitgeber

    Verimatrix, Inc.

    Verimatrix, Inc.

    Verimatrix ist die neue Standard-Plattform für vernetzte Geräte und Dienste. Sie bietet eine innovative Kombination aus Sicherheit und Datenanalyse, mit der Einnahmen maximiert, Reputation geschützt und Wachstum ermöglicht werden.

    Description

  • Sprachen
    Englisch
  • Unternehmenstyp
    Etablierte Firma
  • Arbeitsmodell
    Full Remote, Onsite
  • Branche
    Internet, IT, Telekom
  • Logo Verimatrix, Inc.

    Senior Security Architect

    Ort
    Ismaning
    Arbeitsmodell
    Onsite
    Diversität
    Für alle Personen geeignet (m/w/d)
    Nur Englisch
    Nur Englisch erforderlich

    Weitere Jobs