At a Glance
- Tasks: Lead security architecture initiatives and ensure robust cybersecurity practices across software development.
- Company: Join CHAMP Cargosystems, a leader in aviation technology, committed to innovation and security.
- Benefits: Enjoy a dynamic work environment with opportunities for remote work and professional growth.
- Why this job: Make a real impact on security while collaborating with diverse teams in a supportive culture.
- Qualifications: Bachelor's degree required; 3 years as a Security Architect and 5 years in Software Development preferred.
- Other info: CHAMP promotes equal opportunity and values diversity in the workplace.
The predicted salary is between 48000 - 72000 £ per year.
Responsibilities: The Security Architect reports to the Chief Information Security Officer. The Chief Information Security Officer determines the activities due by the Security Architect based on evolving needs to improve the company’s security posture and to secure CHAMP assets. Examples of the Security Architect’s responsibilities and duties include:
- Document and address information security, cybersecurity architecture, and systems security engineering requirements throughout the application acquisition or development life cycle.
- Employ secure configuration management processes.
- Ensure that acquired or developed system(s) and architecture(s) are consistent with the security policies.
- Establish a strategy to implement security-by-design in the software development lifecycle through the development of policies.
- Develop a threat modeling methodology, a framework to define the security requirements per project, a strategy for enabling the automation of Static security testing and dynamic Security Testing through unit security test framework and automated security test cases.
- Improve the Coding Standard and include security best practices.
- Lead a security awareness program for software development.
- Perform security reviews, identify gaps in security architecture, and develop a security risk management plan.
- Determine the protection needs (i.e., security controls) for the information system(s) and network(s) and document appropriately.
- Provide specialist advice and recommend approaches across teams and various stakeholders.
- Inspire and influence others to execute security principles.
- Research and apply innovative security architecture solutions to new or existing problems and be able to justify and communicate design decisions.
- Develop vision, principles and strategy for security architecture.
Knowledge, Skills and Abilities:
- CPSA or equivalent highly appreciated.
- CSSLP or equivalent highly appreciated.
- CISSP or equivalent is appreciated.
- Knowledge of the application firewall concepts and functions (e.g., Single point of authentication/audit/policy enforcement, message scanning for malicious content, data anonymization, data loss protection scanning, accelerated cryptographic operations, SSL security, REST/JSON processing).
- Ability to drive strategy to establish SAST and DAST framework.
- Knowledge of the enterprise information technology (IT) architectural concepts and patterns.
- Knowledge of installation, integration, and optimization of system components.
- Knowledge of remote access technology concepts.
- Knowledge of communication methods, principles, and concepts that support the network infrastructure.
- Excellent communication (written and verbal) English skills.
Education and Experience:
- Bachelor’s Degree graduate in related field of study.
- Master’s Degree in related field of study is appreciated.
- Experience as a Security Architect role for 3 years preferred.
- Experience in Software Development for 5 years.
The selected candidate may be subject to the provision of an up-to-date (not older than 3 months) criminal record certificate.
Security: the successful candidate will have to comply with CHAMP Security Requirements (including but not limited to CHAMP’s IT Security Policies, especially the ISMS Policy and the Acceptable Use Policy, mandatory courses, confidentiality and data protection, use of company assets, and incident reporting).
CHAMP Cargosystems is an equal opportunity employer and prohibits discrimination and harassment of any kind. We are committed to the principle of equal employment opportunity for all employees and to providing employees with a work environment free of discrimination and harassment. All employment decisions are based on business needs, job requirements and individual qualifications, without regard to race, ethnic background, religion or belief, family or parental status, or any other status protected by the laws or regulations in the locations where we operate.
Please note that any personal data that you submit along with your application will be processed by CHAMP and may be processed by any of its global entities as necessary. These data will be treated in strict compliance with the applicable data protection legislation (i.e. the Law of 2 August 2002 on the protection of individuals with regard to the processing of personal data, as amended, and Regulation (EU) 2016/679 of the European Parliament and of the Council of 27 April 2016, - the GDPR -, which entered into force on 25 May 2018, as well as any other subsequent regulation).
Further details on what is considered personal data, how it is processed by CHAMP as well as your rights in this regard can be found here.
Any questions relating to this should be addressed to CHAMP’s Data Protection Officer: Gertrud Huberty 2, rue Edmond Reuter Zone d'Activités "Weiergewan" L-5326 Contern Luxembourg Email: dpo@champ.aero (Please do not use this email to send job application).
Software Security Architect employer: CHAMP Cargosystems
Contact Detail:
CHAMP Cargosystems Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Software Security Architect
✨Tip Number 1
Familiarise yourself with the latest security frameworks and methodologies, especially those related to secure software development. Being able to discuss these in detail during your interview will show that you're proactive and knowledgeable about current best practices.
✨Tip Number 2
Network with professionals in the cybersecurity field, particularly those who have experience as Security Architects. Engaging in discussions or attending relevant conferences can provide insights and potentially lead to referrals.
✨Tip Number 3
Prepare to demonstrate your problem-solving skills by discussing past projects where you implemented security measures. Be ready to explain your thought process and the impact of your decisions on the overall security posture.
✨Tip Number 4
Stay updated on emerging threats and vulnerabilities in the software landscape. Showing that you are aware of the latest trends and challenges in cybersecurity will highlight your commitment to continuous learning and improvement.
We think you need these skills to ace Software Security Architect
Some tips for your application 🫡
Tailor Your CV: Make sure your CV highlights relevant experience in security architecture and software development. Emphasise your knowledge of secure coding practices, threat modelling, and any certifications like CPSA or CISSP.
Craft a Strong Cover Letter: In your cover letter, explain why you are passionate about security architecture. Mention specific projects where you've implemented security-by-design principles and how you can contribute to improving the company's security posture.
Showcase Relevant Skills: Clearly outline your skills related to SAST and DAST frameworks, secure configuration management, and communication methods that support network infrastructure. Use examples from your past roles to demonstrate these abilities.
Prepare for Security Questions: Anticipate questions related to security best practices and your approach to risk management. Be ready to discuss how you would lead a security awareness program and inspire others to adopt security principles.
How to prepare for a job interview at CHAMP Cargosystems
✨Understand Security Principles
Make sure you have a solid grasp of security principles and practices, especially those relevant to software development. Be prepared to discuss how you would implement security-by-design in the software development lifecycle.
✨Showcase Your Experience
Highlight your experience as a Security Architect and in software development. Be ready to provide specific examples of projects where you've successfully implemented security measures or improved security posture.
✨Familiarise Yourself with Relevant Certifications
If you hold certifications like CPSA, CSSLP, or CISSP, be sure to mention them. If not, consider discussing your knowledge and understanding of these frameworks and how they apply to the role.
✨Prepare for Technical Questions
Expect technical questions related to threat modelling, secure configuration management, and static/dynamic security testing. Brush up on these topics and be ready to explain your thought process and methodologies.