Network Security Architect - Payments Experience | Middle Management
Hybrid, PolskaWichtige Merkmale des Angebots
Mind. 5 Jahre Erfahrung
Hybridmodell - teilweise remote
DevOps / Cloud: AWS, Azure, Docker, Kubernetes
Vollzeit
Description
We’re looking for a Network Security Architect to join our team in Poland. In this role, you will lead the design and implementation of secure, resilient network and application security solutions for large-scale digital banking initiatives. You will collaborate with architecture, engineering, and risk teams to ensure compliance with regulatory requirements and delivery of robust, secure-by-design architectures. This is a strategic opportunity to influence security posture across highly regulated environments while working with modern platforms and technologies. Responsibilities Define and deliver As-Is and Target Security Architecture assessments, High-Level Security Design Documents and LLDs for major transformation programs Design secure patterns for integration approaches including REST APIs, microservices, event-driven systems, and batch processing in payment environments Assess solution designs from other architects, identify security gaps, evaluate risk, and recommend mitigations and best practices Apply core security standards and principles (OAuth2, OIDC, SAML2, mTLS/PKI, encryption, tokenization, HSM, secrets management, network zoning and firewall configurations) Track and manage security design decisions, document risk implications, and negotiate options with Technology, Business and Risk stakeholders Collaborate closely with delivery teams to embed secure-by-design principles across architecture and implementation Ensure security design compliance with financial regulations such as PSD2, SWIFT CSP, PCI DSS and local requirements Support engineering teams during implementation and resolve security-related technical challenges Requirements 7+ years of experience in network or security architecture roles, preferably within financial services or large-scale digital transformation Proven ability to produce and govern security architecture artifacts including As-Is/Target states, HLDs and LLDs Expertise in security design for APIs, microservices, system integration and sensitive data flows Strong knowledge of key security technologies and standards: OAuth2, OIDC, SAML2, mTLS/PKI, encryption, tokenization, secrets management Experience addressing risk through secure design patterns and engaging with architecture, compliance and business stakeholders Hands-on familiarity with protocols, data flows, application behaviors and infrastructure-level security considerations Excellent communication skills, capable of influencing technical and business teams Relevant security or architecture certification (e.g., SABSA, TOGAF) is a plus Nice to have Knowledge of payment solutions and platforms (FIS, ACI, Temenos, Finastra etc.) Previous full-stack engineering experience before moving into Security Architecture Experience defining infrastructure security architectures for high availability and resilience (WAF, DDoS, SIEM) Familiarity with container security and hybrid cloud platforms (OpenShift, Kubernetes, service mesh) Exposure to DevSecOps practices, CI/CD security tools and secure software supply chain principles Strong understanding of data security designs, classifications and migration strategies
Requirements
7+ years of experience in network or security architecture roles, preferably within financial services or large-scale digital transformation
Proven ability to produce and govern security architecture artifacts including As-Is/Target states, HLDs and LLDs
Expertise in security design for APIs, microservices, system integration and sensitive data flows
Strong knowledge of key security technologies and standards: OAuth2, OIDC, SAML2, mTLS/PKI, encryption, tokenization, secrets management
Experience addressing risk through secure design patterns and engaging with architecture, compliance and business stakeholders
Hands-on familiarity with protocols, data flows, application behaviors and infrastructure-level security considerations
Excellent communication skills, capable of influencing technical and business teams
Relevant security or architecture certification (e.g., SABSA, TOGAF) is a plus
Responsibilities
Define and deliver As-Is and Target Security Architecture assessments, High-Level Security Design Documents and LLDs for major transformation programs
Design secure patterns for integration approaches including REST APIs, microservices, event-driven systems, and batch processing in payment environments
Assess solution designs from other architects, identify security gaps, evaluate risk, and recommend mitigations and best practices
Apply core security standards and principles (OAuth2, OIDC, SAML2, mTLS/PKI, encryption, tokenization, HSM, secrets management, network zoning and firewall configurations)
Track and manage security design decisions, document risk implications, and negotiate options with Technology, Business and Risk stakeholders
Collaborate closely with delivery teams to embed secure-by-design principles across architecture and implementation
Ensure security design compliance with financial regulations such as PSD2, SWIFT CSP, PCI DSS and local requirements
Support engineering teams during implementation and resolve security-related technical challenges
Seniority
Middle Management
Nice to have
Knowledge of payment solutions and platforms (FIS, ACI, Temenos, Finastra etc.)
Previous full-stack engineering experience before moving into Security Architecture
Experience defining infrastructure security architectures for high availability and resilience (WAF, DDoS, SIEM)
Familiarity with container security and hybrid cloud platforms (OpenShift, Kubernetes, service mesh)
Exposure to DevSecOps practices, CI/CD security tools and secure software supply chain principles
Strong understanding of data security designs, classifications and migration strategies
Stichwörter / Fähigkeiten