Lead Application Security Architect

Job not on LinkedIn

🔥 0 minutes ago

🇪🇸 Spain – Remote

⏰ Full Time

🟠 Senior

👮‍♂️ Cybersecurity / Security Engineer

👻 Ghost score 25%

infoinfo
Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of Jones Lang LaSalle Americas, Inc.

Jones Lang LaSalle Americas, Inc.

10,000+ employees

🏠 Real Estate

🤝 B2B

💼 Consulting

Real Estate • B2B • Consulting

Jones Lang LaSalle Americas, Inc. is a company that provides commercial real estate services for corporations and investors worldwide. Their focus is on helping clients save money, increase productivity, and improve sustainability in real estate operations.

📋 Description

• Design and maintain security architecture standards, policies, and patterns for enterprise applications, platforms, and cloud-native environments • Develop and enforce secure design patterns, reference architectures, and architecture decision records for application security • Lead security architecture reviews for new and existing applications using frameworks such as OWASP, NIST, and SANS • Integrate zero-trust principles and defense-in-depth strategies into application architecture • Define and maintain enterprise application security requirements and produce performance metrics • Lead threat-modeling sessions and provide actionable remediation guidance • Champion secure coding standards and developer security enablement programs • Analyze security requirements and design solutions addressing enterprise risk and regulatory compliance • Communicate architecture designs, risk assessments, and remediation recommendations to technical and non-technical stakeholders • Coordinate security design reviews and approval processes across security, engineering, and enterprise architecture teams • Contribute to the application security strategy roadmap and recommend program enhancements • Mentor junior security engineers, developers, and architects • Lead cross-functional security initiatives and support secure development training and awareness programs

🎯 Requirements

• Bachelor's degree in Computer Science, Information Security, Software Engineering, or a related field; equivalent experience considered • 7+ years of experience in information security with a focus on application security engineering, secure software development, or security architecture • Comprehensive knowledge of OWASP Top 10, SANS/CWE, secure development frameworks, and security architecture design patterns • Experience designing security architectures for cloud-native environments (AWS, Azure, GCP), microservices, APIs, and containerized workloads • Strong proficiency in DevSecOps practices and tooling: SAST, DAST, SCA, container image scanning, secrets management, and CI/CD security integration • Experience with NIST CSF, NIST SP 800-53, ISO 27001, and zero-trust architecture principles • Working knowledge of IAM, OAuth 2.0/OIDC, and application-layer authentication and authorization controls • Understanding of cryptography, data protection, encryption, and Public Key Infrastructure • Familiarity with STRIDE, PASTA, or equivalent threat-modeling methodologies • Ability to analyze complex application architectures and translate security requirements into practical design solutions • Ability to lead security assessments, architecture reviews, and cross-functional security initiatives independently • Relevant certifications such as CSSLP, CISSP, AWS/Azure Security Specialty, OSCP, or equivalent are preferred • Knowledge of OWASP GenAI, LLM Top 10, Security Exchange, and AI Exchange is a plus

🏖️ Benefits

• Remote work arrangement • Equal opportunities for men and women • Reasonable accommodations for individuals with disabilities • Mentoring and professional development through secure development training and awareness programs

Apply Now

Similar Jobs

🕒 6 days ago

MWDN

51 - 200

💼 Consulting

📦 Logistics

🏥 Healthcare

Security Researcher probing browser and mobile threats for a passwordless IAM platform. Turning attacker techniques into fraud, automation, and AI-agent detection signals.

Android

Cyber Security

iOS

Java

JavaScript

Kotlin

Objective-C

Python

Swift

TypeScript

🕒 August 21

Wiz

201 - 500

🔒 Cybersecurity

Security Engineer securing Wiz’s cloud and AI security products. Building cloud, Kubernetes, vulnerability-management, and detection-response controls.

AWS

Azure

Cloud

Google Cloud Platform

Kubernetes

Python

Terraform

Go

🕒 August 20

Inetum

10,000+ employees

💼 Consulting

🏥 Healthcare

🛡️ Insurance

Ingeniero/a de Seguridad Cloud protegiendo infraestructuras AWS en Inetum, empresa europea de transformación tecnológica. Diseñando controles cloud, DevSecOps y gobierno de seguridad.

🗣️🇪🇸 Spanish Required

AWS

Cloud

🕒 August 19

Devoteam

5001 - 10000

💼 Consulting

🏥 Healthcare

📣 Marketing

Consultor SailPoint ISC en Devoteam, consultora europea de estrategia digital y ciberseguridad. Despliegue, integración y evolución de soluciones Cyber IAM para clientes.

🗣️🇪🇸 Spanish Required

🕒 August 14

HSP Group

51 - 200

🤝 B2B

💼 Consulting

📋 Compliance

Information Security Engineer securing HSP Group’s global expansion services SaaS platform. Leading SOC 2, vulnerability management, Azure security, and governance initiatives.

Azure

Cloud

Kubernetes

SDLC