Product Security Architect

Materialise

Heverlee

Sur place

EUR 90 000 - 130 000

Plein temps

14 jours+

Recevez plus de réponses des employeurs

Envoyez un CV adapté au poste en quelques minutes.

Résumé du poste

Materialise is seeking a Product Security Architect to lead secure architectures across our cloud-native platform and related medical devices. You will drive IAM, encryption, data protection, and risk assessments, partnering with engineering, product, and DevOps to embed security throughout the lifecycle.

You will work with AWS-based environments, Kubernetes workloads, and DevSecOps practices to strengthen security controls, support audits, and ensure regulatory compliance within a medical

Qualifications

  • 8+ years of experience in software engineering, system architecture, or application security, including cloud or distributed systems.
  • Experience leading architecture reviews and security decisions across teams.
  • Experience designing and implementing security controls (IAM, encryption, secrets management, network segmentation) in production environments.
  • Familiarity with threat modeling and security tooling; strong cloud security knowledge.

Responsabilités

  • Define and review secure system architectures for applications, services, and platforms.
  • Design and guide the implementation of IAM, data protection, and secrets management.
  • Embed security into SDLC and support secure coding practices across teams.
  • Lead threat modeling, risk assessments, and remediation strategies.
  • Collaborate with engineering, product, and DevOps to implement controls and compliance requirements.
  • Support audits, regulatory processes, and ensure traceability of security controls.

Connaissances

Threat modeling
Cloud security
IAM & encryption
DevSecOps
Security tooling
Stakeholder management
Secure SDLC
Container security

Outils

SAST
DAST
SCA
Kubernetes
AWS

Description du poste

At Materialise Medical, we believe that better healthcare starts with solutions designed around the individual patient. If you’re passionate about bringing personalized care to every patient, you’ll love being a part of this team. Through the technology we develop, researchers, engineers, and clinicians are revolutionizing personalized treatment — helping improve and save lives daily.We are looking for a Product Security Architect to lead the design and implementation of secure architectures across our products, including Materialise Mimics Flow — a cloud-based platform operating in a regulated medical device environment. This role ensures that security is embedded throughout the entire product lifecycle, from initial concept and design through development, deployment, and maintenance.Job descriptionOur platform leverages a cloud-native architecture on AWS, with an increasing adoption of containerized workloads orchestrated by Kubernetes and supported by DevOps practices. We are actively progressing the migration of legacy applications and further strengthening our operational and architectural foundations to improve scalability, reliability, and maintainability over time. The platform processes sensitive medical data and operates under strict regulatory requirements, requiring compliance with recognized cybersecurity standards and medical device regulations. You will work closely with engineering, product, and DevOps teams to proactively identify risks, define security requirements, and implement best practices that protect our systems, data, and users. You will also play a key role in supporting audits and regulatory processes, contributing to required documentation, and ensuring that security controls are clearly defined, effectively implemented, and fully traceable.What you will doSecure architecture designDefine and review secure system architectures for applications, services, and platformsDesign and guide the implementation of:Identity and access management (SSO, OIDC, SAML, authorization models)Tenant isolation and access controlData protection and privacy-by-design (encryption, key management, PII handling)Secrets management and network segmentationLogging, monitoring, and auditability aligned with compliance requirementsSecure CI/CD and software supply chain practicesThreat modeling and risk assessmentConduct threat modeling sessions and train the teams to identify potential vulnerabilities earlyPerform risk assessments and recommend mitigation strategiesSecurity integration in developmentEmbed security practices into SDLC (Secure SDLC)Guide teams on secure coding standards and design patternsSupport the adoption of SAST, DAST, SCA, and other security toolsEngineering collaborationPartner with engineering and product teams to ensure security requirements are clear and actionableParticipate in design reviews and architecture discussionsCompliance and standardsEnsure adherence to applicable standards (e.g., ISO 27001) and regulations (e.g., GDPR, data protection laws)Contribute to internal security policies and guidelinesAlign product security initiatives with the broader organizational security roadmapVulnerability management and incident supportSupport vulnerability remediation and coordinate with teams on fixesAssist in security incident analysis and responseSecurity strategy and roadmapDefine and drive a product security roadmap aligned with business goalsPromote a security-first culture across teamsYour profile8+ years of experience in software engineering, system architecture, or application security, including hands-on work in cloud or distributed systemsExperience leading architecture reviews and driving security decisions across teamsExperience designing and implementing security controls (e.g., IAM, encryption, secrets management, network segmentation) in production environmentsTechnical skillsStrong understanding of security principles (authentication, authorization, cryptography, secure APIs)Conducted threat modeling using STRIDE, mapped threats to CAPEC and CWE, and applied CVSS scoring to prioritize remediation effortsFamiliarity with security tools (SAST, DAST, SCA, container security, etc.)Knowledge of cloud security (AWS, Azure, or GCP)Standards and frameworksStrong stakeholder management skills, with the ability to influence engineering, product, and leadership without direct authorityAnalytical thinking and problem-solving mindsetComfortable communicating security risks, decisions, and strategy to senior leadershipWill be a plusSecurity certifications (e.g., CISSP, CISM, CSSLP)Experience with medical device cybersecurity standards (e.g., IEC81001-5-1, MDCG 2019-16, section 524B(b)(2) of the FDA act)Experience with DevSecOps practices and CI/CD integrationBackground in regulated industries (e.g., healthcare, finance)Experience with penetration testingWhat’s waiting for youWork that mattersThe technology we build at Materialise pushes the boundaries. You’ll find pride in building something that matters, whether you designed it, printed it, or shipped it. No matter your role, we unlock new possibilities to build a better and healthier world every day.At Materialise, we expect you to think about the customer, not just the task. You push for better solutions and care about the difference your work makes.A people-centered spaceWhen you join Materialise, you join a group of colleagues invested in you, not just your work. From your own team to a department across the world, you’ll find a sense of belonging with people who help without being asked, challenge you, and have your back.At the same time, we expect you to invest in the people around you — not just your own work — to make the group stronger than the sum of its parts.An environment of trustAs a company of innovators, we know how crucial autonomy is in your work. When we hire you, we trust in your expertise, giving you space to organize your tasks, work flexibly, and make your own calls.At Materialise, we expect you to deliver on that trust and keep your commitments.A career ready to buildWhen you see opportunities for your career to grow at Materialise, we encourage you to go for them. People shape a fulfilling career at their own pace here.At Materialise, we expect you to take initiative in your own development. Don’t wait for someone else to plan your career. Step into the space and make it count.Make a difference together with the Medical team.
Obtenez votre examen gratuit et confidentiel de votre CV.
ou faites glisser et déposez votre fichier ici.
Similar jobs

Postes similaires à comparer

Product Security Architect
Product Security Architect

Mondeadditif • Heverlee

Sur place
EUR 90 000 - 150 000
Product Security Lead
Product Security Lead

Materialise • Heverlee

Sur place
EUR 100 000 - 140 000
Product Security Architect
Product Security Architect

Materialise • Vlaams-Brabant

Sur place
EUR 90 000 - 130 000
Technical Portfolio Manager — CMF Standard
Technical Portfolio Manager — CMF Standard

Materialise • Heverlee

Sur place
EUR 110 000 - 140 000
Medical Device Development Manager
Medical Device Development Manager

Materialise • Heverlee

Sur place
EUR 90 000 - 140 000
Engineering Operations Manager
Engineering Operations Manager

Materialise • Heverlee

Sur place
EUR 90 000 - 120 000
Lead Enterprise Architect
Lead Enterprise Architect

Materialise • Heverlee

Sur place
EUR 90 000 - 120 000
Technical Manager Defense
Technical Manager Defense

Materialise • Heverlee

Sur place
EUR 90 000 - 130 000
Technical Portfolio Manager — CMF Standard
Technical Portfolio Manager — CMF Standard

Mondeadditif • Heverlee

Sur place
EUR 80 000 - 130 000
Medical Platform Security Architect — Cloud & Compliance
Medical Platform Security Architect — Cloud & Compliance

Mondeadditif • Heverlee

Sur place
EUR 90 000 - 150 000