Network Security Architect - Payments Experience

EPAM Systems

Poland

On-site

PLN 180,000 - 300,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

EPAM Systems in Poland is seeking a Network Security Architect to lead the design and implementation of secure network and application security solutions for large-scale digital banking initiatives. You will collaborate with architecture, engineering, and risk teams to ensure regulatory compliance and robust, secure-by-design architectures.

Key responsibilities include defining As-Is/To-Be security architectures, designing secure patterns for APIs and microservices, and guiding security design

Qualifications

  • 7+ years in network or security architecture, preferably in financial services.
  • Governs security architecture artifacts (As-Is/To-Be, HLDs and LLDs).
  • Expertise in API, microservices, data flows security design.
  • Proficient in OAuth2, OIDC, SAML2, mTLS/PKI, encryption, tokenization, secrets management.
  • Addresses risk via secure design patterns with stakeholders.
  • Hands-on with protocols, data flows, and infra security considerations.
  • Excellent communication and influencing skills with technical/business teams.
  • Security or architecture certs such as SABSA or TOGAF are a plus.
  • Knowledge of payment platforms (FIS, ACI, Temenos, Finastra) is a plus.
  • Prior full-stack engineering experience before security architecture.
  • Experience defining infra security architectures for high availability (WAF, DDoS, SIEM).
  • Familiarity with container security and hybrid clouds (OpenShift, Kubernetes).
  • DevSecOps exposure, CI/CD security tooling and secure software supply chain.

Responsibilities

  • Define and deliver As-Is and Target Security Architecture assessments, High-Level Security Design Documents and LLDs for major transformation programs
  • Design secure patterns for integration approaches including REST APIs, microservices, event-driven systems, and batch processing in payment environments
  • Assess solution designs, identify security gaps, evaluate risk, and recommend mitigations and best practices
  • Apply core security standards and principles (OAuth2, OIDC, SAML2, mTLS/PKI, encryption, tokenization, secrets management, WAF, and related controls)
  • Track and manage security design decisions, document risk implications, and negotiate options with Technology, Business and Risk stakeholders
  • Collaborate closely with delivery teams to embed secure-by-design principles across architecture and implementation
  • Ensure security design compliance with PSD2, SWIFT CSP, PCI DSS and local requirements
  • Support engineering teams during implementation and resolve security-related technical challenges

Skills

Network security
Security architecture
Risk assessment
Stakeholder communication
Regulatory compliance
OpenShift/Kubernetes familiarity

Education

TOGAF
SABSA

Tools

OAuth2
OIDC
SAML2
mTLS/PKI
WAF
SIEM
PCI DSS
OpenShift
Kubernetes
CI/CD security

Job description

We're looking for a Network Security Architect to join our team in Poland. In this role, you will lead the design and implementation of secure, resilient network and application security solutions for large-scale digital banking initiatives. You will collaborate with architecture, engineering, and risk teams to ensure compliance with regulatory requirements and delivery of robust, secure-by-design architectures. This is a strategic opportunity to influence security posture across highly regulated environments while working with modern platforms and technologies.

Responsibilities
  • Define and deliver As-Is and Target Security Architecture assessments, High-Level Security Design Documents and LLDs for major transformation programs
  • Design secure patterns for integration approaches including REST APIs, microservices, event-driven systems, and batch processing in payment environments
  • Assess solution designs from other architects, identify security gaps, evaluate risk, and recommend mitigations and best practices
  • Apply core security standards and principles (OAuth2, OIDC, SAML2, mTLS/PKI, encryption, tokenization, HSM, secrets management, network zoning and firewall configurations)
  • Track and manage security design decisions, document risk implications, and negotiate options with Technology, Business and Risk stakeholders
  • Collaborate closely with delivery teams to embed secure-by-design principles across architecture and implementation
  • Ensure security design compliance with financial regulations such as PSD2, SWIFT CSP, PCI DSS and local requirements
  • Support engineering teams during implementation and resolve security-related technical challenges
Requirements
  • 7+ years of experience in network or security architecture roles, preferably within financial services or large-scale digital transformation
  • Proven ability to produce and govern security architecture artifacts including As-Is/Target states, HLDs and LLDs
  • Expertise in security design for APIs, microservices, system integration and sensitive data flows
  • Strong knowledge of key security technologies and standards: OAuth2, OIDC, SAML2, mTLS/PKI, encryption, tokenization, secrets management
  • Experience addressing risk through secure design patterns and engaging with architecture, compliance and business stakeholders
  • Hands-on familiarity with protocols, data flows, application behaviors and infrastructure-level security considerations
  • Excellent communication skills, capable of influencing technical and business teams
  • Relevant security or architecture certification (e.g., SABSA, TOGAF) is a plus
  • Nice to have Knowledge of payment solutions and platforms (FIS, ACI, Temenos, Finastra etc.)
  • Previous full-stack engineering experience before moving into Security Architecture
  • Experience defining infrastructure security architectures for high availability and resilience (WAF, DDoS, SIEM)
  • Familiarity with container security and hybrid cloud platforms (OpenShift, Kubernetes, service mesh)
  • Exposure to DevSecOps practices, CI/CD security tools and secure software supply chain principles
  • Strong understanding of data security designs, classifications and migration strategies
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Network Security Architect - Payments Experience
Network Security Architect - Payments Experience

EPAM • Poland

On-site
PLN 260,000 - 380,000
Network Security Architect
Network Security Architect

EPAM • Poland

On-site
PLN 106,000 - 170,000
Senior Network Security Architect - Banking & Payments
Senior Network Security Architect - Banking & Payments

EPAM Systems • Poland

On-site
PLN 180,000 - 300,000
Senior Network Security Architect — Payments & Cloud Platforms
Senior Network Security Architect — Payments & Cloud Platforms

EPAM • Poland

On-site
PLN 106,000 - 170,000
Payments Network Security Architect - Secure-by-Design
Payments Network Security Architect - Secure-by-Design

EPAM • Poland

On-site
PLN 260,000 - 380,000
Enterprise Security Architect - Security Detection and Response
Enterprise Security Architect - Security Detection and Response

ING Hubs B.V. sp. z o.o. Oddział w Polsce • Katowice

On-site
PLN 22,000 - 35,000
Security Architect
Security Architect

Billennium • Województwo małopolskie

On-site
PLN 200,000 - 340,000
Udemy for Business
Private medical care
Multisport card
+5
Security Transformation Architect with German
Security Transformation Architect with German

VM.PL Software House • Wrocław

Hybrid
PLN 150,000 - 200,000
Remote work
Comprehensive benefits including healthcare
Company-sponsored language courses
Security Architect
Security Architect

Billennium • Warszawa

On-site
PLN 180,000 - 260,000
Udemy for Business
Private medical care
Multisport card
+8
Security Transformation Architect with German
Security Transformation Architect with German

VM.pl sp. z o.o • Wrocław

Hybrid
PLN 120,000 - 150,000
Remote work flexibility
Company-sponsored language courses
Comprehensive benefits package