
Security Architect – Software, Cloud
Landis+Gyr
full-time
Posted on:
Location Type: Hybrid
Location: Prague • Czech
Visit company websiteExplore more
About the role
- Define and maintain security architecture blueprints for software and cloud components (Head-End Systems, SaaS, APIs, etc.).
- Review designs and perform threat modeling for new features and integrations.
- Specify security controls aligned with IEC 62443 and corporate policies.
- Work with DevSecOps teams to integrate secure design patterns into CI/CD pipelines and infrastructure-as-code.
- Assess and approve cloud-native services from a risk and compliance perspective.
- Support certification and audit readiness with documentation and risk assessments.
- Collaborate with governance and PSIRT teams to embed vulnerability management and incident response.
- Mentor developers on secure coding practices and modern security frameworks (OAuth2, Keycloak, vault solutions).
Requirements
- 7+ years of experience in software or cloud security architecture, ideally in industrial, IoT, or energy domains.
- Strong knowledge of secure design principles, cloud-native architectures (GCP, Azure), and application security.
- Experience with threat modeling (STRIDE, PASTA) and risk assessment.
- Deep understanding of authentication, encryption, network segmentation, and secrets management.
- Familiarity with regulatory frameworks (IEC 62443, CSTAR).
- Hands-on experience with secure CI/CD, containers, and Kubernetes.
- Excellent documentation and communication skills.
- Degree in Computer Science, Software Engineering, or Information Security (preferred).
- Cloud security certifications (e.g. CCSP, ISSAP, CCSK, or GCAD).
- Experience with penetration testing coordination or API security validation.
- Knowledge of privacy and cybersecurity regulations (GDPR, Data Act, CRA).
Benefits
- We value and encourage diversity in our team.
- We're committed to shaping a better future for everyone.
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard skills
security architecturethreat modelingsecure design principlescloud-native architecturesauthenticationencryptionnetwork segmentationsecrets managementsecure CI/CDpenetration testing
Soft skills
documentation skillscommunication skillsmentoring
Certifications
CCSPISSAPCCSKGCAD