Verimatrix

Senior Security Architect

Stellenbeschreibung:

Overview

In this hands-on senior role, you define and drive cloud security for our AWS estate, partnering with platform and product teams to embed secure design and policy. You will shape the security roadmap, lead threat modeling, and own incident response and vulnerability management. You’ll build secure-by-default CI/CD, automate defenses, and enable engineers with practical guardrails and Terraform patterns. This position offers impact across architecture, governance, and governance-aligned operations within a fast-moving product environment.

Verantwortungsbereiche
  • Design and own security controls across the AWS estate (IAM, network segmentation, encryption, logging, secrets management)
  • Lead threat modeling and security architecture reviews with development teams
  • Set cloud security policy and roadmap with security and platform leadership
  • Partner with Product Management to define security requirements
  • Integrate security into CI/CD with IaC scanning, container and base-image scanning, SBOM checks, policy-as-code, guardrails
  • Write and maintain Terraform modules and golden patterns to streamline secure engineering paths
  • Drive adoption of automated security tooling (cloud-native scanners, AWS Inspector)
  • Evaluate secure development tooling (IDE security, AI guardrails)
  • Improve detection coverage for cloud-native attack paths
  • Act as senior responder for cloud security incidents (runbooks, post-incident reviews)
  • Assess vulnerability impact and own end-to-end incident response
  • Manage CSPM/CNAPP tooling and triage remediation with owning teams
  • Coordinate DAST and penetration testing programs
  • Support ISO 27001 evidence and control implementation; assist with EU CRA obligations
  • Lead security reviews of third-party tools; mentor engineers on secure cloud design
Zentrale Anforderungen
  • 8+ years in security engineering with 5+ focused on cloud
  • Deep expertise with AWS security services (Organizations and SCPs, KMS, Config, GuardDuty, CloudTrail, Security Hub, Inspector, WAF, Shield Advanced)
  • Strong IaC skills (Terraform) and scripting (Python, Go)
  • Kubernetes and container security experience
  • OIDC/OAuth 2.0/SAML knowledge; cryptography and PKI fundamentals
  • Secure SDLC practices (threat modeling, secure design reviews, SAST/DAST, pentesting)
  • Incident response leadership experience
  • Strong ability to influence non-security stakeholders with risk-based business language
  • Nice to have: AWS Security/Specialty, CISSP/CCSP, media security/DRM, EU CRA knowledge, HSMs and key management, on-prem/cloud SDLC tooling familiarity
  • influencing without direct authority
  • clear communication
  • problem-solving with a risk mindset
  • AWS security services
  • Terraform
  • Python
NOTE / HINWEIS:
EnglishEN: Please refer to Fuchsjobs for the source of your application
DeutschDE: Bitte erwähne Fuchsjobs, als Quelle Deiner Bewerbung

Stelleninformationen

  • Veröffentlichungsdatum:

    15 Sep 2026
  • Standort:

    Remote
  • Typ:

    Vollzeit
  • Arbeitsmodell:

    Vor Ort
  • Kategorie:

  • Erfahrung:

    2+ years
  • Arbeitsverhältnis:

    Angestellt

KI Suchagent

AI job search

Möchtest über ähnliche Jobs informiert werden? Dann beauftrage jetzt den Fuchsjobs KI Suchagenten!