Security Architect

Priva

De Lier

On-site

EUR 90,000 - 120,000

Full time

5 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Priva Product Development Organisation is seeking a Security Architect to shape the security of our hardware and software services for horticulture and building automation. You will secure OT/IoT networks, cloud applications, and enforce security practices across Agile teams to achieve a strong security posture.

This hands-on role involves defining standards, guiding ISO/IEC controls, and collaborating with product, engineering and operations to implement secure SDLC and risk management across

Qualifications

  • Experience securing device/OT networks, cloud applications and CI/CD pipelines.
  • Proven ability to translate security designs into engineering specs and coach teams.
  • Familiarity with ISO 27001 and IEC 62443 standards and risk management.

Responsibilities

  • Define security standards, policies and design patterns for Priva products.
  • Lead security architecture reviews and risk acceptance documentation.
  • Ensure regulatory compliance and audit readiness across geographies.
  • Collaborate with product, engineering and operations to embed secure SDLC practices.
  • Provide hands-on security guidance and threat modelling with engineering teams.
  • Coach teams to improve secure coding maturity and secure deployment.

Skills

OT security
cloud security
Security architecture
ISO 27001
IEC 62443
Threat modelling
Secure SDLC
DevSecOps
PKI management
Network security

Education

Bachelor's degree in a relevant field

Tools

Snyk
OWASP
IAM frameworks

Job description

Are you a security specialist in the OT space looking to expand your expertise into cloud solutions? Are you a cloud security champion passionate about bringing your expertise into OT/IoT space? At Priva Product Development Organisation we are looking for the Security Architect who will shape the security of our products.

Security Architect in Priva Product Development – Why this role matters

At Priva, we develop hardware products and software services for horticulture and building automation. Seeing the importance of our products for our customers, we recognize the need to continuously keep these secure in the ever evolving, fast-paced world. The security requirements in our landscape span four different areas:

  • Physical/embedded device security.
  • OT (operational technology) network security.
  • OT network to Priva-hosted cloud services communications.
  • Priva's hybrid on-prem/multi-cloud platform applications security, including applications, infrastructure, CI/CD pipelines.

What makes this role truly unique is that our products contain long-lived hardware components that our customers run for years. Engineering future-proofed security solutions and maintaining a security posture at existing sites across all these areas having wide range of varying implementations and security needs creates a great challenge and a great fun.

As part of the architecture team, you will play a key role in shaping the future of Priva's portfolio offered on the global market. You define security standards, security practices and security designs for our products that are used in tens of thousands of buildings and greenhouses. You work across product, engineering, and operations teams to ensure security controls and adhered to, implemented and tested as you have designed these. That’s real impact.

What you will be doing

As a Security Architect, you have a very simple mission: you see to it that Priva's hardware products and software (cloud) services are secured against known and emergent threats in lines with the industry standards and practices. You build upon your strong background in securing device/OT networks, cloud applications, and engraining the security practices in the daily work of Agile teams to achieve consistent security posture across all Priva products, designs, and customer deployments.

As a security architect, you are trusted counterpart of Priva Security, Quality, and Compliance officer to define, review, and execute controls arising from ISO9001 and ISO27001 standards and internal initiatives. You are responsible for presenting the necessary evidence of Priva’s compliance with these controls to the auditors.

  • Security standards, policies, and design patterns library
  • Security architecture review process
  • Risk register and residual risk acceptance documentation
  • Periodic product security implementation reviews, including maintaining non-compliance register
  • Defined requirements, products and work packages for security-focused projects with 3rd party service providers, reviewing and accepting their deliverables, and supervising the implementation of these deliverables in the Priva hardware products and software services.
  • Regulatory compliance (IEC 62443, ISO 27001, ISO 9001 or other standard that may be applicable in specific geographies)
  • Threat intelligence briefing relevant to OT/IoT threat landscape
  • Designing, implementing, and reviewing security controls applied at major customer sites.

Above all, this is a hands-on role – occasionally writing code is included. You connect the industry’s best practices, ISO standards, product vision with the daily work of the product team. As a security architect, you practice what you preach. You explain, coach, and show by example the implementation of security as Secure SDLC in the developer’s daily work.

To succeed in this role:

  • You are passionate about OT security; you have great interest in the application of our products in the field. You are curious to grasp how our products truly work for our customers to find the best balance between security, reliability, and cost. You share the opinion that "if I don't secure Priva’s applications, then no one else will".
  • You identify and eliminate issues in the development cycle that can jeopardize the security posture. You know and can show by example how to "test securely as well as test security"
  • You are a great collaborator who can be a valuable sparring partner with product managers to understand and refine customer's needs for security so that you define the right security designs for market segments. Engineering managers rely on your ability to steer security implementations within the product teams.
  • You are comfortable designing products that our customers will be running for years; comfortable providing guidance to LCM activities for existing customers to update hardware and software components to continuously stay secure.
  • You share the knowledge about security subjects; you explain why security practices exist and what they achieve in the long run.
  • You can translate security designs into engineering specifications, appraise implementation designs, conduct code reviews. This role with a strong hands-on component, not just a pure governance role.
  • You understand and can register, document, and communicate clearly risks and trade-offs between differen t project execution scenarios
  • You have had hands-on experience implementing security designs using modern programming language and frameworks, and you are able to coach product teams to increase their secure coding maturity e.g. by running threat modelling workshops with the engineering team.
  • You have vast experience with architecture roles with 3-5 years of experience specifically focusing on security.

In addition, you have the following technical expertise:

  • Proven track record across at least two of the three domains: OT/IoT/embedded security, network security, cloud security
  • You are familiar with modern authentication and authorization frameworks (JWT, OpenID, SAML) and (REST) API security and protection approached
  • ISO 27001 and IEC 62443 understanding at a working level
  • Working knowledge with or excellent ability to apply the PKI and certificate lifecycle management at scale; also, with the vision how to implement this in OT/IoT deployment contexts
  • Solid network security understanding: firewall policy, micro-segmentation, DMZ design for IT/OT boundaries
  • Zero trust architecture principles
  • Secure SDLC and DevSecOps tools and practices (think about OWASP, SANS25, Snyk, Black Duck, etc)
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Architect: OT/IoT & Cloud Security Leader
Security Architect: OT/IoT & Cloud Security Leader

Priva • De Lier

On-site
EUR 90,000 - 120,000
Hands-on OT/IoT & Cloud Security Architect
Hands-on OT/IoT & Cloud Security Architect

Priva (The Netherlands) • Netherlands

Remote
EUR 90,000 - 120,000
Senior Solution Architect - Azure Platform & Product Security
Senior Solution Architect - Azure Platform & Product Security

EPAM Systems • Netherlands

Hybrid
EUR 100,000 - 140,000
Security Engineer
Security Engineer

Iceberg • Amsterdam

Hybrid
EUR 110,000 - 150,000
Architect informatiebeveiliging
Architect informatiebeveiliging

Teelor • Den Haag

Hybrid
EUR 85,000 - 95,000
Hybrid Work Model
International Collaboration
Strategic Impact
+1
OT Project Manager (ID: 3544)
OT Project Manager (ID: 3544)

Stafide • Amsterdam

On-site
EUR 60,000 - 80,000
Exposure to advanced OT and IoT cybersecurity programs
Opportunity to work on complex technology environments
Collaborative team atmosphere
Security Officer (Operational Technology) - m/f/x
Security Officer (Operational Technology) - m/f/x

RWE • Geertruidenberg

Hybrid
EUR 70,000 - 95,000
Flexible and hybrid working
Company pension scheme
Employee stock programme
+1
Security Domain Architect
Security Domain Architect

Deloitte Netherlands • Rotterdam

On-site
EUR 120,000 - 180,000
Technical Information Security Officer
Technical Information Security Officer

Qabird • Delft

On-site
EUR 70,000 - 100,000
Profit sharing
Flexible hours
Vacation add-on
+2
Technical Information Security Officer
Technical Information Security Officer

Prime Vision • Netherlands

Hybrid
EUR 104,000 - 130,000
Profit-sharing scheme
Additional vacation days
Snacks & coffee in Grand Café
+2