Dein persönlicher KI-Karriere-Agent
Senior Software Security Architect CT(m/w/x)
Securing software for cash cycle solutions, including high-security cash and data centers. Security by Design principles and threat modeling experience required. Inclusive work environment, promoting diversity and equal opportunity.
Anforderungen
- University degree in Computer Science, Information Security, Electrical Engineering, or comparable STEM field, or equivalent qualification
- Several years of experience designing and assessing secure software architectures and integrations, ideally in critical infrastructure, manufacturing or security/software tech environment
- Passion for application security with hands-on experience in frameworks such as OWASP SAMM, NIST SSDF (SP 800‑218) and IEC 62443‑4‑1
- Strong background in threat modeling, risk assessments, and common vulnerability classes (e.g. OWASP Top 10, CWE) plus practical mitigation strategies
- Experience with secure SDLC/SSDLC processes, CI/CD pipelines and typical security gates (code reviews, security testing, release approvals)
- Ability to analyze complex security topics, document clearly, and communicate convincingly to developers, project managers, customers and suppliers
- Very good English skills (written and spoken); French is a strong plus, German is an advantage
- High willingness to travel (around 25 % internationally) and to work in interdisciplinary, globally distributed project teams
Aufgaben
- Ensure software components follow Security by Design principles
- Derive and manage security requirements from contracts and standards
- Perform threat and risk assessments for applications and integrations
- Define prioritized mitigation measures
- Review software and interface designs for security
- Align with internal teams and customer IT
- Oversee SSDLC practices for third-party developments
- Coach internal teams on secure development best practices
- Coordinate vulnerability management and patch strategy
- Handle exception management for integrated software
- Plan and supervise security testing
- Validate security acceptance criteria for project milestones
- Produce customer-facing security documentation
- Drive security topics in workshops and supplier reviews
Berufserfahrung
- ca. 4 - 6 Jahre
Ausbildung
- Abgeschlossene BerufsausbildungODER
- Bachelor-Abschluss
Sprachen
- Englisch – verhandlungssicher
- Französisch – ist ein Plus
Tools & Technologien
- OWASP SAMM
- NIST SSDF (SP 800‑218)
- IEC 62443‑4‑1
- OWASP Top 10
- CWE
- CI/CD
Benefits
Sonstige Vorteile
- Equal opportunity employer
Gemeinnützige Ausrichtung
- Promote diversity
Lockere Unternehmenskultur
- Inclusive work environment
- Free from prejudice
- Sense of belonging
Noch nicht perfekt?
- Giesecke + Devrient GmbHVollzeitnur vor OrtBerufserfahrenMünchen
- Airbus Defence and Space GmbH
Aerospace Cyber Security System Architect(m/w/x)
Vollzeitnur vor OrtSeniorMünchen, Ottobrunn, Taufkirchen, Immenstaad am Bodensee, Friedrichshafen, Bremen - Airbus Defence and Space GmbH
Cyber Security Software Architect(m/w/x)
Vollzeitnur vor OrtSeniorMünchen, Immenstaad am Bodensee, Bremen - Rivada Space Networks
Security Architect(m/w/x)
Vollzeitnur vor OrtSeniorMünchen - Incadea GmbH
Software Security Engineer(m/w/x)
Vollzeitnur vor OrtBerufserfahrenMünchen
Senior Software Security Architect CT(m/w/x)
Securing software for cash cycle solutions, including high-security cash and data centers. Security by Design principles and threat modeling experience required. Inclusive work environment, promoting diversity and equal opportunity.
Anforderungen
- University degree in Computer Science, Information Security, Electrical Engineering, or comparable STEM field, or equivalent qualification
- Several years of experience designing and assessing secure software architectures and integrations, ideally in critical infrastructure, manufacturing or security/software tech environment
- Passion for application security with hands-on experience in frameworks such as OWASP SAMM, NIST SSDF (SP 800‑218) and IEC 62443‑4‑1
- Strong background in threat modeling, risk assessments, and common vulnerability classes (e.g. OWASP Top 10, CWE) plus practical mitigation strategies
- Experience with secure SDLC/SSDLC processes, CI/CD pipelines and typical security gates (code reviews, security testing, release approvals)
- Ability to analyze complex security topics, document clearly, and communicate convincingly to developers, project managers, customers and suppliers
- Very good English skills (written and spoken); French is a strong plus, German is an advantage
- High willingness to travel (around 25 % internationally) and to work in interdisciplinary, globally distributed project teams
Aufgaben
- Ensure software components follow Security by Design principles
- Derive and manage security requirements from contracts and standards
- Perform threat and risk assessments for applications and integrations
- Define prioritized mitigation measures
- Review software and interface designs for security
- Align with internal teams and customer IT
- Oversee SSDLC practices for third-party developments
- Coach internal teams on secure development best practices
- Coordinate vulnerability management and patch strategy
- Handle exception management for integrated software
- Plan and supervise security testing
- Validate security acceptance criteria for project milestones
- Produce customer-facing security documentation
- Drive security topics in workshops and supplier reviews
Berufserfahrung
- ca. 4 - 6 Jahre
Ausbildung
- Abgeschlossene BerufsausbildungODER
- Bachelor-Abschluss
Sprachen
- Englisch – verhandlungssicher
- Französisch – ist ein Plus
Tools & Technologien
- OWASP SAMM
- NIST SSDF (SP 800‑218)
- IEC 62443‑4‑1
- OWASP Top 10
- CWE
- CI/CD
Benefits
Sonstige Vorteile
- Equal opportunity employer
Gemeinnützige Ausrichtung
- Promote diversity
Lockere Unternehmenskultur
- Inclusive work environment
- Free from prejudice
- Sense of belonging
Über das Unternehmen
Giesecke + Devrient GmbH
Branche
FinancialServices
Beschreibung
Das Unternehmen ist ein internationaler Technologiekonzern, der integrierte Sicherheitstechnologien in den Bereichen Digital Security, Financial Platforms und Currency Technology anbietet.
Noch nicht perfekt?
- Giesecke + Devrient GmbH
Manager Secure Software and Product Development(m/w/x)
Vollzeitnur vor OrtBerufserfahrenMünchen - Airbus Defence and Space GmbH
Aerospace Cyber Security System Architect(m/w/x)
Vollzeitnur vor OrtSeniorMünchen, Ottobrunn, Taufkirchen, Immenstaad am Bodensee, Friedrichshafen, Bremen - Airbus Defence and Space GmbH
Cyber Security Software Architect(m/w/x)
Vollzeitnur vor OrtSeniorMünchen, Immenstaad am Bodensee, Bremen - Rivada Space Networks
Security Architect(m/w/x)
Vollzeitnur vor OrtSeniorMünchen - Incadea GmbH
Software Security Engineer(m/w/x)
Vollzeitnur vor OrtBerufserfahrenMünchen