Praha
Měsíčně: 120 000 CZK
Od: 6/2025 (6m)
Kontrakt přes CP Home office: 90%
Application Security Architect (39376)
I'm seeking an Application Security Architect to drive enterprise-wide application security strategy. You bring a strong foundation in computer science or IT, proven experience in securing applications, and fluency in English. Your deep knowledge of secure coding, encryption, authentication, OWASP Top 10, and SDLC will be critical. You'll collaborate with developers, lead security assessments, define standards, and influence decision-making. Familiarity with frameworks like NIST, ISO 27001, or SANS is valued—certifications such as CISSP, CISM, or CSSLP are a plus.
🚀 Project
- working with various stakeholders across the organization to ensure security of applications throughout their lifecycle considering industry best practices, regulatory requirements, and organizational needs
- steering external partner on conducting comprehensive security assessments of applications, identifying vulnerabilities and recommending appropriate remediation strategies
- collaborating with development teams to integrate security controls and measures into the application development process effectively
- defining and enforcing application security policies, standards, and procedures, ensuring compliance with internal and external security requirements
- staying up to date with emerging security threats, vulnerabilities, and industry trends related to application security and assess their potential impact
- providing guidance and support to development teams on secure coding practices, securing configuration management, and vulnerability remediation
- acting as a subject matter expert and providing guidance on application security to stakeholders, management, and executives
- any other Security Architecture topic relevant to project deliverables
- staying abreast of industry standards and frameworks such as OWASP, SANS, and NIST, and incorporate relevant practices into the application security program
- developing and maintaiing strong relationships with key vendors and strategic external partners
🎯 Skills
- university degree or equivalent experience in computer science, engineering, information technology or other relevant field(s)
- fluent in written and spoken English
- proven experience working as an Application Security Architect or in a similar role, with a focus on securing applications
- strong knowledge of application security principles, including secure coding practices, input validation, authentication, access controls, and encryption
- experience with application security standards and frameworks, such as OWASP Top Ten, SANS CWE Top 25, and secure software development lifecycle (SDLC) methodologies
- hands-on experience with security testing techniques ideally including code review, vulnerability scanning, and penetration testing
- experience working in a global company and designing / deploying solutions at scale
- excellent negotiation, communication, and interpersonal skills, ability to develop influential relationships with different stakeholders across all levels
💡 Nice to have
- knowledge and experience of industry standards such as ISO 27001, CIS Controls, NIST, Cyber Essentials
- certification or accreditation in Information Security (CSSLP, CISM, CISA, CISSP, etc.,) and/or relevant vendor specific certifications