IT Security Architect
Stellenbeschreibung
Overview
In this IT Security Architect role, you will define and maintain the security concept for our cross-functional digital product team, shaping secure architectures and guidelines. You will drive risk analyses, threat modeling, and security assessments to protect complex, cloud-enabled systems. You will ensure compliance with regulatory requirements and collaborate with security, risk, and compliance units to integrate security into design, development, and operations. This is a chance to impact large-scale digital experiences across a global organization and contribute to a culture of secure, resilient delivery.
Leistungen / Benefits- 25 days of holidays
- 2 volunteer days for charitable activities
- Mental Health: wellness days plus support
- 40-hour week with overtime compensation
- Flexible working hours (flextime)
- Independent home office management
- Creation and maintenance of the security concept
- Definition of security architecture, standards and guidelines
- Integration of security requirements into architecture, design and development
- Execution and support of risk analyses, threat modeling and security assessments
- Monitoring implementation of security measures
- Consulting development, architecture, testing and operations
- Ensuring compliance with regulatory and organizational requirements
- Support for security tests, reviews and audits
- Collaboration with internal security, risk and compliance units
- 5–7 years of experience in IT security/security architecture
- Solid knowledge of security concepts for complex IT systems
- Experience in security-critical and regulated environments (e-banking advantageous)
- Strong knowledge of authentication, authorization, encryption and secure design
- Understanding of modern software architectures (frontend, backend, APIs, cloud)
- Experience with security standards and frameworks
- Languages: German fluent (B2+), English business proficient; French or Italian advantageous
- collaborative mindset
- clear communication with stakeholders
- analytical and structured problem-solving
- security architecture
- risk analyses
- threat modeling