Jobiglo

Δεν βρέθηκαν αποτελέσματα.

Application Security Architect

Capital.com · Limassol

Νέο
Hybrid Senior 🇬🇧 English
AWS GCP ASVS SAST DAST IAST SCA secrets scanning microservices REST GraphQL OAuth2 OIDC Docker Kubernetes CI/CD policy-as-code SBOM

Περιγραφή θέσης

About the role

Capital.com builds and operates web and mobile trading platforms, public and partner APIs, and the backend services behind them in a highly regulated environment. As an Application Security Architect you will be the senior design authority for the security of these products, setting direction for secure‑by‑design patterns, leading threat modelling and architecture reviews, and defining the application security baseline.

Key responsibilities

  • Define and maintain secure‑by‑default reference architectures for web apps, mobile back‑ends, micro‑services, APIs and event‑driven services.
  • Own core security decisions such as authentication, authorisation, session management, API security, secrets management and multi‑tenant isolation.
  • Establish and run a threat‑modelling operating model, lead design reviews for high‑impact initiatives and identify practical mitigations.
  • Assess and improve the secure SDLC, oversee AppSec tooling (SAST, DAST, IAST, SCA, secrets scanning) and embed security guardrails in CI/CD pipelines.
  • Partner with DevOps to manage repositories, prevent supply‑chain attacks and improve internal tool security.

Required profile

  • 8+ years in technology with 5+ years in a dedicated application or product security role and strong engineering background.
  • Proven track record creating, documenting and rolling out security standards and patterns across complex organisations.
  • Exceptional ability to influence and align engineering teams without direct authority.
  • Pragmatic strategic thinker who balances strong protection with delivery speed.

Required skills

  • AWS (strong knowledge) and exposure to GCP or other clouds.
  • OWASP Top 10, ASVS and DevSecOps practices.
  • AppSec tooling: SAST, DAST, IAST, SCA, secrets scanning.
  • Modern distributed architectures: micro‑services, REST, GraphQL, OAuth2/OIDC.
  • Container technologies: Docker, Kubernetes.
  • CI/CD pipelines, policy‑as‑code, SBOMs and supply‑chain security.

What we offer

  • Work‑life balance with hybrid working model (3 days onsite, 2 days remote).
  • Annual bonus based on performance and generous annual leave policy.
  • Medical insurance, pension fund and additional location‑based benefits.
  • Comprehensive workation policy with extra remote days and paid volunteer leave.

Questions fréquentes

Le salaire n'est pas communiqué publiquement par le recruteur. Vous pouvez postuler et négocier directement avec Capital.com.
Cliquez sur "Postuler maintenant" en haut de la page. Vous pouvez importer votre CV en 1 clic — Jobiglo extrait automatiquement vos informations et postule pour vous.

Γιατί αναφέρετε αυτήν την προσφορά;

Σας ευχαριστούμε για την αναφορά. Θα εξετάσουμε αυτήν την προσφορά.

Explore further

Salaries, guides and searches for Κύπρος.

Κάντε αίτηση σε 30 δευτερόλεπτα

Εισάγετε το email σας για να κάνετε αίτηση. Ένας λογαριασμός θα δημιουργηθεί αυτόματα.

Αίτηση τώρα →

Συνεχίζοντας, αποδέχεστε τους όρους χρήσης μας.

Έχετε ήδη λογαριασμό; Σύνδεση

Une question sur cette offre ?

Posez-la ici : vous recevrez le récapitulatif de l'offre par e-mail, tout de suite.

💬 Chat with us on Telegram

Δημοσιευμένο πριν 14 ώρες

Λήγει σε 1 μήνα

3 προβολές · 0 interested

Αυξήστε τις πιθανότητές σας

Ανεβάστε το βιογραφικό σας: θα σας προτείνουμε αγγελίες που ταιριάζουν στο προφίλ σας.

Ανάλυση του βιογραφικού σας σε εξέλιξη...

Capital.com

Limassol