Skip to content
New Job?Nejo!

Your personal AI career agent

GIGiesecke + Devrient GmbH

Senior Software Security Architect CT(m/w/x)

München
Full-timeOn-siteSenior

Securing software for cash cycle solutions, including high-security cash and data centers. Security by Design principles and threat modeling experience required. Inclusive work environment, promoting diversity and equal opportunity.

Requirements

  • University degree in Computer Science, Information Security, Electrical Engineering, or comparable STEM field, or equivalent qualification
  • Several years of experience designing and assessing secure software architectures and integrations, ideally in critical infrastructure, manufacturing or security/software tech environment
  • Passion for application security with hands-on experience in frameworks such as OWASP SAMM, NIST SSDF (SP 800‑218) and IEC 62443‑4‑1
  • Strong background in threat modeling, risk assessments, and common vulnerability classes (e.g. OWASP Top 10, CWE) plus practical mitigation strategies
  • Experience with secure SDLC/SSDLC processes, CI/CD pipelines and typical security gates (code reviews, security testing, release approvals)
  • Ability to analyze complex security topics, document clearly, and communicate convincingly to developers, project managers, customers and suppliers
  • Very good English skills (written and spoken); French is a strong plus, German is an advantage
  • High willingness to travel (around 25 % internationally) and to work in interdisciplinary, globally distributed project teams

Tasks

  • Ensure software components follow Security by Design principles
  • Derive and manage security requirements from contracts and standards
  • Perform threat and risk assessments for applications and integrations
  • Define prioritized mitigation measures
  • Review software and interface designs for security
  • Align with internal teams and customer IT
  • Oversee SSDLC practices for third-party developments
  • Coach internal teams on secure development best practices
  • Coordinate vulnerability management and patch strategy
  • Handle exception management for integrated software
  • Plan and supervise security testing
  • Validate security acceptance criteria for project milestones
  • Produce customer-facing security documentation
  • Drive security topics in workshops and supplier reviews

Work Experience

  • approx. 4 - 6 years

Education

  • Vocational certificationOR
  • Bachelor's degree

Languages

  • EnglishBusiness Fluent
  • Frenchis a plus

Tools & Technologies

  • OWASP SAMM
  • NIST SSDF (SP 800‑218)
  • IEC 62443‑4‑1
  • OWASP Top 10
  • CWE
  • CI/CD

Benefits

Other Benefits

  • Equal opportunity employer

Social Impact

  • Promote diversity

Informal Culture

  • Inclusive work environment
  • Free from prejudice
  • Sense of belonging
Find the original job posting in its most current version here. Nejo automatically captured this job from the website of Giesecke + Devrient GmbH and processed the information on Nejo with the help of AI for you. Despite careful analysis, some information may be incomplete or inaccurate. Please always verify all details in the original posting! Content and copyrights of the original posting belong to the advertising company.

  • Giesecke + Devrient GmbH

    Manager Secure Software and Product Development(m/w/x)

    Full-timeOn-siteExperienced
    München
  • Airbus Defence and Space GmbH

    Aerospace Cyber Security System Architect(m/w/x)

    Full-timeOn-siteSenior
    München, Ottobrunn, Taufkirchen, Immenstaad am Bodensee, Friedrichshafen, Bremen
  • Airbus Defence and Space GmbH

    Cyber Security Software Architect(m/w/x)

    Full-timeOn-siteSenior
    München, Immenstaad am Bodensee, Bremen
  • Incadea GmbH

    Software Security Engineer(m/w/x)

    Full-timeOn-siteExperienced
    München
  • Rivada Space Networks

    Security Architect(m/w/x)

    Full-timeOn-siteSenior
    München
View all 100+ similar jobs

Nejo is an AI – results may be incomplete or contain mistakes