July 9, 2026
Security Architect
Senior • Remote
178,500 - 203,496 USD/yr
About the Role
The Security Architect is a technical, hands-on senior role responsible for designing and implementing robust security architectures across hybrid and cloud environments. The role focuses on strengthening security posture, ensuring compliance with SOC2, HITRUST, and PCI DSS, and embedding security practices into cloud-native development workflows.
Key Responsibilities
- Own the strategy and execution for the Cloudflare ecosystem to secure the network edge, including WAF rules using RegEx, DDoS protection, Bot Management, and Cloudflare Workers using JavaScript/TypeScript.
- Lead the design of security controls within Google Cloud Platform, specifically for Vertex AI, BigQuery, VPC Service Controls, IAM, and Security Command Center.
- Architect and verify security for GKE environments, including container hardening, securing Helm charts, and implementing runtime security policies.
- Embed security into CI/CD pipelines using Cloud Build, GitHub Actions, and Terraform.
- Orchestrate security workflows using Workato and build custom Python API endpoints for platform integrations.
- Lead threat modeling for critical applications and feature releases.
- Mentor engineers on secure coding standards and cloud security best practices.
- Lead technical response to complex security incidents using SQL/KQL for log analysis and forensic investigations.
- Conduct regular risk assessments and ensure alignment with SOC2, HITRUST, and PCI DSS requirements.
Professional Qualifications
- 7+ years of experience in Information Security with deep expertise in network architecture.
- Master's degree in Cybersecurity required.
- GCP Professional Cloud Security Engineer certification preferred.
- Deep experience securing Google Cloud Platform, including Vertex AI and BigQuery.
- Proven ability to manage and tune Cloudflare WAF/Zero Trust and CrowdStrike Falcon EDR/XDR.
- Expert proficiency in Python and Workato.
- Working knowledge of HCL, Terraform, JavaScript, TypeScript, SQL, and RegEx.
- Strong understanding of Kubernetes and GKE security, including node pools, network policies, and Helm deployments.
- Solid understanding of NIST RMF and compliance frameworks including SOC2, HITRUST, and PCI DSS.
Compensation & Benefits
- Compensation range for Zone 1 (National Average): $178,500—$203,500 USD.
- Eligible employees may receive variable pay and a comprehensive benefits package.
- Work-from-home equipment discounts available.
- Access to Gympass and Telus Employee Assistance Program resources.
- Additional wellness, childcare, and education benefits available in Costa Rica.
Compliance & Privacy
- Equal opportunity employer.
- Interviews may be recorded and transcribed using BrightHire interview intelligence technology.
Similar jobs you might like
Technology
Antal Sp. z o.o.
ILS_Cloud & Infrastructure Security Architect and security Administrator
Mid
On-site
Warsaw, Poland
🏢 Summary: Role focused on designing and administering security architecture for cloud and hybrid environments, combining architectural responsibilities with hands-on security operations. The position covers implementation and management of enterprise security solutions, risk analysis, threat modeling, and support for cloud transformation initiatives. Work is fully onsite and involves close collaboration with IT, DevOps, IAM, and infrastructure teams. 🗂️ Requirements: Minimum 2 years of experience in cybersecurity, security architecture or security operations, Minimum 2 years of experience in administration of security systems, Practical knowledge of at least one cloud platform: Azure, OCI or GCP, Experience with SIEM, PAM, EDR/XDR, DLP and SOAR solutions, Knowledge of cloud and on-premise security architecture, Knowledge of network security: firewall, IDS/IPS, network segmentation, Zero Trust, Knowledge of encryption, KMS and HSM, Experience in security monitoring and threat detection, Knowledge of DevSecOps, container security and Kubernetes, Ability to perform risk analysis and threat modeling, Knowledge of security standards: ISO27001, NIS2, CIS Benchmarks, Ability to create technical and architectural documentation 📃 Skills: Azure, OCI, GCP, SIEM, PAM, EDR, XDR, DLP, SOAR, Firewall, IDS, IPS, ZeroTrust, KMS, HSM, DevSecOps, Kubernetes, ISO27001, NIS2, CIS, Encryption 🏢 Description: Cloud & Infrastructure Security Architect and Security Administrator Lokalizacja i model pracy Praca realizowana jest w modelu 100% stacjonarnym z biura w Warszawie lub Łodzi . Obecność w biurze jest kluczowym elementem tej roli ze względu na charakter projektów oraz ścisłą współpracę z zespołami technicznymi i biznesowymi. Zakres obowiązków Obszar architektury bezpieczeństwa Projektowanie oraz rozwój architektury bezpieczeństwa dla środowisk chmurowych i hybrydowych (cloud + on-premise), Definiowanie wymagań bezpieczeństwa oraz współpraca z zespołami IT, DevOps i biznesem przy realizacji projektów technologicznych, Analiza ryzyk bezpieczeństwa oraz dobór odpowiednich mechanizmów zabezpieczających, Tworzenie i opiniowanie dokumentacji technicznej, standardów oraz rekomendacji bezpieczeństwa, Wsparcie inicjatyw związanych z transformacją cyfrową i migracją środowisk do chmury, Weryfikacja zgodności rozwiązań z obowiązującymi standardami i politykami bezpieczeństwa, Udział w przeglądach architektonicznych oraz modelowaniu zagrożeń (Threat Modeling), Współpraca z zespołami odpowiedzialnymi za bezpieczeństwo operacyjne, IAM, DevSecOps oraz infrastrukturę. Obszar operacyjny i administracyjny Administracja, rozwój i utrzymanie rozwiązań bezpieczeństwa IT, Konfiguracja oraz optymalizacja systemów monitorowania i ochrony środowiska IT, Zarządzanie rozwiązaniami klasy: PAM, SIEM, EDR/XDR, DLP, SOAR i innymi systemami security, Utrzymanie oraz rozwój zabezpieczeń sieciowych: firewall, IDS/IPS, systemów detekcji i ochrony ruchu sieciowego, Monitorowanie skuteczności wdrożonych zabezpieczeń i ich ciągłe doskonalenie, Wsparcie procesów reagowania na incydenty bezpieczeństwa, Doradztwo techniczne w zakresie najlepszych praktyk cyberbezpieczeństwa dla środowisk cloud i on-premise. Wymagania Doświadczenie Minimum 2 lata doświadczenia w obszarze cyberbezpieczeństwa, architektury bezpieczeństwa lub security operations, Minimum 2 lata doświadczenia w administracji systemami bezpieczeństwa, Praktyczna znajomość przynajmniej jednej platformy chmurowej (Azure, OCI lub GCP), Mile widziane doświadczenie w środowiskach multicloud i hybrydowych. Kompetencje techniczne Znajomość architektury bezpieczeństwa dla środowisk cloud oraz on-premise, Doświadczenie w pracy z rozwiązaniami: SIEM, PAM, EDR/XDR, DLP i SOAR, Wiedza z zakresu bezpieczeństwa sieci: firewall, IDS/IPS, segmentacja sieci, Zero Trust, Znajomość zagadnień związanych z szyfrowaniem danych, KMS i HSM, Doświadczenie w monitoringu bezpieczeństwa i detekcji zagrożeń, Znajomość DevSecOps, bezpieczeństwa kontenerów oraz Kubernetes, Umiejętność analizy ryzyka i modelowania zagrożeń, Znajomość standardów bezpieczeństwa i frameworków takich jak ISO 27001, NIS2 czy CIS Benchmarks, Umiejętność tworzenia dokumentacji technicznej i architektonicznej, Bardzo dobra znajomość języka polskiego oraz komunikatywna znajomość języka angielskiego. Mile widziane Certyfikaty bezpieczeństwa (np. AZ-500, SC-100, SC-200, CISSP, CCSP lub pokrewne), Doświadczenie w projektach migracji do chmury, Doświadczenie w środowiskach regulowanych lub o podwyższonych wymaganiach bezpieczeństwa, Praktyka w pracy w środowiskach hybrydowych i wielochmurowych. Oferujemy Udział w zaawansowanych projektach z obszaru cyberbezpieczeństwa i infrastruktury IT, Możliwość realnego wpływu na rozwój architektury bezpieczeństwa organizacji, Pracę w nowoczesnym środowisku multicloud i hybrid cloud, Budżet szkoleniowy oraz wsparcie w rozwoju certyfikacji, Stabilną współpracę w dynamicznym środowisku technologicznym, Pracę w modelu 100% stacjonarnym z biura w Warszawie lub Łodzi .
Technology

Capital Technology Group
Cloud Architect
Senior
On-site
Silver Spring, MD
110,004 - 150,000 USD/yr
🏢 Summary: Cloud Architect role focused on designing, securing, and scaling modern cloud solutions for high-impact federal initiatives. The position involves leading cloud modernization and migration efforts, embedding security and compliance best practices, and supporting DevSecOps and infrastructure automation. The role requires strong AWS expertise, cloud security architecture knowledge, and experience operating in regulated federal environments. 🗂️ Requirements: US Citizenship, Ability to obtain Public Trust clearance, Bachelor’s degree in Computer Science, Engineering, Information Systems, Cybersecurity, or related field (or equivalent experience), 4+ years of experience in cloud engineering or cloud architecture roles, Hands-on experience designing cloud solutions in AWS (EKS, EC2, RDS, S3), Experience with Azure, particularly disaster recovery and resiliency planning, Experience with Docker and Kubernetes, Experience with infrastructure automation tools (e.g., Ansible), Strong understanding of cloud networking, compute, storage, IAM, and security groups, Experience with cloud security architecture (IAM, encryption, secrets management, logging, vulnerability management), Knowledge of compliance frameworks (NIST, FedRAMP, FISMA, CIS), Experience with Infrastructure as Code (Terraform, CloudFormation, AWS CDK, or similar), Experience supporting DevSecOps pipelines and CI/CD integrations 📃 Skills: AWS, Azure, EKS, EC2, RDS, S3, Docker, Kubernetes, Ansible, Terraform, CloudFormation, CDK, IAM, NIST, FedRAMP, FISMA, CIS, CI/CD, DevSecOps 🏢 Description: Client Requirements: applicants MUST BE US Citizens and be able to obtain Public Trust clearance About the Role CTG is seeking a Cloud Architect to help design, secure, and scale modern cloud solutions supporting high-impact federal initiatives. This role will focus on architecting resilient cloud environments, driving modernization efforts, and ensuring cloud security and compliance best practices are embedded throughout the solution lifecycle. You Will Get To - Design and implement secure, scalable cloud infrastructure solutions - Lead cloud modernization and migration efforts across enterprise environments - Develop cloud architecture standards and best practices - Partner with engineering, DevSecOps, and cybersecurity teams to deliver secure cloud solutions - Ensure compliance with federal security and regulatory requirements - Support IAM, encryption, infrastructure automation, CI/CD, and cloud operations - Assess technical risks, architecture tradeoffs, resiliency, and performance optimization - Translate mission and business needs into scalable cloud architectures Qualifications - Bachelor's degree in Computer Science, Engineering, Information Systems, Cybersecurity, or related field (or equivalent experience) - 4+ years of professional experience in cloud engineering, infrastructure architecture, or cloud architecture roles - Deep hands-on experience designing cloud solutions in AWS (EKS, EC2, RDS, S3 preferred) with exposure to Azure, particularly disaster recovery and resiliency planning - Strong experience with Docker, Kubernetes, container orchestration, and infrastructure automation tools such as Ansible - Strong understanding of cloud networking, compute, storage, IAM, security groups, monitoring, and infrastructure design - Experience with cloud security architecture including IAM, encryption, secrets management, logging, vulnerability management, and secure access controls - Knowledge of compliance frameworks such as NIST, FedRAMP, FISMA, CIS benchmarks, or similar regulated environments - Experience with Infrastructure as Code (Terraform, CloudFormation, AWS CDK, or similar) - Experience supporting DevSecOps pipelines and CI/CD integrations - Strong documentation, architecture review, and stakeholder communication skills Nice to Have - AWS Solutions Architect, AWS Security Specialty, Azure Architect, or similar certifications - Familiarity with Zero Trust architecture principles - Experience supporting federal government agencies Salary We are committed to offering a competitive salary for this position, with an estimated range of $110k–$150k annually. Please note that this range is intended to provide a general idea of what to expect. The final offer may vary based on experience, skills, and other factors. Full Time Employee Benefits - Remote Work (Hybrid roles will be specified in the job post) - Competitive Compensation Package - Medical, Dental, and Vision - Life Insurance, Short/Long Term Disability - Employee Assistance Program - 401(k) with 4% matching - Liberal PTO vacation policy - Generous Annual Continuing Education - Annual Wellness Budget - Bonus Incentive Programs (Employee referrals and performance-based rewards)
Technology
Team Up
API Architect (m/k) 🏗️
Senior
Hybrid
Katowice, Poland
🏢 Summary: Hands-on Platform Architect role responsible for defining and driving a contract-first, cloud-native API strategy on AWS. The position focuses on designing scalable, secure, and governed API platforms, including standards, tooling, and architecture for internal and external consumers. It combines deep platform engineering with cross-team leadership to modernize legacy APIs and enable a unified, product-grade ecosystem. 🗂️ Requirements: Strong experience designing scalable API platforms on AWS, Deep knowledge of contract-first API design and versioning, Experience with schema governance and API standards (OpenAPI/GraphQL), Expertise in OAuth2/OIDC, JWT, and AWS SigV4, Hands-on experience with Terraform and infrastructure-as-code, Experience designing CI/CD pipelines and DevOps automation, Experience with event-driven architectures, Experience implementing observability and reliability practices, Experience defining API Gateway patterns and security controls, Ability to modernize legacy APIs to cloud-native standards 📃 Skills: AWS, APIGateway, Lambda, ECS, Fargate, ALB, Cognito, EventBridge, IAM, OpenAPI, GraphQL, OAuth2, OIDC, JWT, SigV4, Terraform, CI/CD, DevOps, WAF, .NET, Python, TypeScript, Observability, SLO, Tracing 🏢 Description: We are looking for an experienced Platfrom Architect to define and drive an end-to-end API strategy for a modern, cloud-native organisation. This role is responsible for shaping API standards, architecture, governance, and tooling to enable secure, scalable, and product-grade APIs across internal and external consumers. This is a hands-on architecture role , combining deep platform engineering with cross-team leadership to deliver a unified, contract-first API ecosystem built on AWS. Your role Own and evolve the target API architecture across domains using AWS-native services. Define contract-first API standards (OpenAPI/GraphQL), versioning, schema governance, and CI/CD quality gates. Design and govern API Gateway patterns , routing models, Terraform modules, and policy-as-code guardrails. Architect identity and security models , including OAuth2/OIDC, JWT, AWS SigV4, rate limiting, and WAF controls. Enable teams through paved-road service templates (.NET, Python, TypeScript) with built-in auth, observability, and pipelines. Define integration patterns for event-driven and synchronous APIs , ensuring reliability and backward compatibility. Establish observability and reliability standards (logs, metrics, tracing, SLOs). Lead API modernisation, reducing technical debt and aligning legacy APIs with new standards. Partner with engineering, product, security, and SRE teams to drive adoption and best practices. Offer International, collaborative work environment Exposure to large-scale cloud and integration platforms Strong learning and development support Competitive compensation and benefits Hybrid work Requirements Technical Expertise Strong experience designing scalable API platforms on AWS (API Gateway, Lambda, ECS/Fargate, ALB, Cognito, EventBridge, IAM). Deep knowledge of contract-first API design , versioning, and schema governance. Expertise in authentication and authorisation (OAuth2/OIDC, JWT, SigV4). Hands-on experience with Terraform and infrastructure-as-code. Solid understanding of CI/CD, DevOps, security automation , and dependency management. Experience with event-driven architectures and observability tooling. Architecture & Leadership Proven ability to define platform-wide standards and lead large-scale architectural change. Experience creating opinionated templates and enablement tooling. Strong stakeholder communication and ability to influence across teams. Mindset Hands-on builder with a pragmatic approach. Strong focus on security, automation, and API quality. Comfortable modernising legacy systems while designing for scale.
Technology
Antal Sp. z o.o.
Cloud Network Engineer
Senior
Remote
Warsaw, Poland
🏢 Summary: This role focuses on designing and evolving a scalable, secure cloud foundation on GCP for a large engineering organization. It involves building cloud-native platform architecture, automation, governance frameworks, and reusable infrastructure to enable self-service and compliance at scale. The position emphasizes infrastructure as a product, cloud strategy, and cross-team technical leadership. 🗂️ Requirements: Strong hands-on experience with GCP, Production-level experience with Kubernetes, Advanced knowledge of Terraform including module design, Solid networking fundamentals including VPC, CIDR, DNS, hybrid connectivity, Experience in compliance-driven environments (SOC2, PCI-DSS or similar), Experience with GitOps methodologies, Experience with observability practices (metrics, logging, tracing), Ability to create and present architectural documentation 📃 Skills: GCP, Kubernetes, Terraform, VPC, CIDR, DNS, IAM, GitOps, SOC2, PCI-DSS, Observability, Logging, Tracing, Networking 🏢 Description: About the role We are building a Cloud Center of Excellence responsible for establishing and evolving the cloud foundation used across a large-scale engineering organization. This role focuses on designing scalable cloud architecture, automation, governance, and reusable platform capabilities that enable multiple engineering teams to operate efficiently and securely. If you see infrastructure as a product and enjoy shaping cloud strategy, standards, and developer enablement at scale, this role offers strong ownership and impact. What you'll do Design and implement cloud-native platform architecture on GCP ; Build scalable guardrails for multi-team, multi-environment platforms with compliance requirements; Create reusable infrastructure components enabling self-service provisioning; Define and evolve cloud governance practices, including IAM strategies, organizational policies, and policy-as-code; Collaborate across engineering teams and participate in technical discussions, architecture reviews, and leadership forums; Contribute to platform standards, operational excellence, and long-term cloud strategy. What we're looking for Strong hands-on experience with GCP (experience with AWS/Azure is a plus); Production-level Kubernetes experience, including networking, security, tenancy, and lifecycle management; Advanced Terraform knowledge, including module design and reusable infrastructure patterns; Solid networking fundamentals: VPC architecture, CIDR planning, DNS, and hybrid connectivity; Experience operating in compliance-driven environments (SOC2, PCI-DSS, or similar); Familiarity with GitOps methodologies and tooling; Experience with observability platforms, including metrics, structured logging, and tracing; Strong technical communication skills and ability to create and present architectural documentation. What separates good from great You approach infrastructure as a product with focus on scalability, reliability, and developer experience; You have experience building cloud foundations for large engineering organizations; You create scalable patterns and reusable solutions rather than one-off implementations; You can influence across teams and navigate cross-functional collaboration effectively; You actively raise engineering standards and mentor others through best practices and technical leadership.
Technology
Link Group
Cloud Solution Architect
Senior
Remote
Krakow, Poland
130 - 150 PLN
🏢 Summary: Senior Cloud Solution Architect role focused on defining enterprise-grade Azure infrastructure standards, leading advanced IaC and automation initiatives, and driving global cloud optimization through FinOps practices. The position owns the Terraform and Ansible ecosystem, architects scalable multi-region solutions, and acts as the final authority on complex Azure designs. It also leads automated environment provisioning and cost governance at an enterprise scale. 🗂️ Requirements: 6+ years experience in Cloud Architecture or Engineering, Proven experience with large-scale Azure transformations, Expert-level knowledge of Terraform, Expert-level knowledge of Terragrunt, Strong proficiency in Ansible, Experience with Azure DevOps or GitHub Actions, Strong experience in Azure Solution Architecture, Ability to design enterprise-scale IaC modules and manage state, Experience in cloud cost optimization and FinOps practices, Experience designing multi-region and multi-tenant architectures 📃 Skills: Azure, Terraform, Terragrunt, Ansible, AzureDevOps, GitHubActions, FinOps, CI/CD, IaC 🏢 Description: The Role We are looking for a strategic Cloud Solution Architect with a minimum of 6 years of deep architectural experience in Microsoft Azure. This is a high-impact role where you will define the "Gold Standards" for our infrastructure. You will be responsible for building enterprise-grade infrastructure patterns, leading high-velocity initiatives like the Demo Factory , and steering the global cloud optimization strategy through advanced FinOps practices. Key Deliverables Strategic Infrastructure Patterns: Architect and govern scalable, reusable IaC patterns (blueprints) that ensure consistency, security, and compliance across the entire organization. Advanced Orchestration: Ownership of the Terraform & Terragrunt ecosystem, ensuring a sophisticated, DRY, and maintainable codebase for multi-region, multi-tenant environments. Enterprise Automation: Design end-to-end configuration management workflows using Ansible , bridging the gap between core infrastructure and application-ready environments. The "Demo Factory" Leadership: Drive the technical vision for our Demo Factory, enabling instantaneous, automated environment provisioning for stakeholders and sales engineering. FinOps Governance: Act as the primary advocate for cloud financial efficiency. Implement lifecycle management, rightsizing strategies, and cost-attribution models to drive maximum ROI on cloud spend. Solution Architecture: Act as the final technical authority on complex Azure designs, ensuring they are resilient, performant, and future-proof. Required Expertise Experience: 6+ years in Cloud Architecture/Engineering, with a proven track record in large-scale Azure transformations. Expert IaC Stack: Mastery of Terraform and Terragrunt is essential. You should be comfortable designing complex modules and managing state at an enterprise scale. Configuration & CI/CD: Deep proficiency in Ansible and modern DevOps pipelines (Azure DevOps/GitHub Actions). Architectural Vision: Strong experience in Azure Solution Architecture (Certified AZ-305 or equivalent preferred). FinOps Mastery: Proven ability to manage and optimize cloud costs (FinOps Certified Practitioner is a plus). Leadership: Ability to mentor senior engineers and influence stakeholders at the C-suite or Director level.
Technology
Link Group
GitHub Platform Engineer
Senior
Remote
Warsaw, Poland
30,000 - 33,500 PLN
🏢 Summary: Senior GitHub Platform Engineer responsible for architecting, securing, and governing a GitHub Enterprise Cloud environment at scale. The role focuses on identity integration, security compliance, automation, and infrastructure as code to enable secure and efficient developer workflows. You will standardize GitHub Actions, manage runner infrastructure, and drive platform automation using APIs and scripting. 🗂️ Requirements: Extensive experience administering GitHub Enterprise Cloud at scale, Strong expertise in Enterprise Managed Users (EMU) and RBAC, Hands-on integration with Microsoft Entra ID using SAML, OIDC, and SCIM, Proficiency with GitHub Advanced Security including CodeQL and Dependabot, Experience designing and securing GitHub Actions workflows, Advanced scripting skills in Python, Bash, or PowerShell, Experience automating via GitHub REST and GraphQL APIs, Experience managing infrastructure using Terraform or Bicep, Knowledge of audit logging and SOX compliance controls 📃 Skills: GitHub, EMU, RBAC, Entra, SAML, OIDC, SCIM, GHAS, CodeQL, Dependabot, Actions, Terraform, Bicep, Python, Bash, PowerShell, REST, GraphQL, SOX, Azure, AWS 🏢 Description: Senior GitHub Platform Engineer We are seeking a Senior GitHub Platform Engineer to serve as the primary architect and guardian of our GitHub Enterprise Cloud ecosystem. In this role, you will bridge the gap between Cloud Operations and Developer Experience, ensuring our platform is secure, automated, and scalable. The Role As the Platform Owner, you will be responsible for the governance, security, and continuous improvement of GitHub Enterprise. You will lead identity integration, enforce enterprise standards, and empower our engineering teams through automation and AI-driven workflows. Key Responsibilities Platform Governance: Administer GitHub Enterprise Cloud settings, organizations, and licensing while establishing operational standards for backup and recovery. Identity & Access: Lead the implementation of Enterprise Managed Users (EMU) integrated with Microsoft Entra ID (SAML/OIDC, SCIM). Security & Compliance: Manage GitHub Advanced Security (GHAS) , including CodeQL, Secret Scanning, and Dependabot. Ensure audit log streaming and compliance with regulatory standards (SOX). Automation: Eliminate manual tasks using GitHub REST/GraphQL APIs and scripting (Python, PowerShell, or Bash). Developer Enablement: Standardize GitHub Actions (reusable workflows), manage self-hosted runner infrastructure, and oversee GitHub Copilot adoption. Infrastructure as Code: Maintain and deploy platform configurations using Terraform or Bicep. Required Qualifications Expertise: Extensive experience administering GitHub Enterprise Cloud at scale. Identity: Deep understanding of EMU, RBAC, and IdP integration (Microsoft Entra ID). Security: Hands-on proficiency with GHAS toolsets and branch protection strategies. DevOps: Strong background in GitHub Actions, secure workflow design, and runner governance. Scripting: Advanced skills in Python, Bash, or PowerShell with heavy API usage. IaC: Experience managing infrastructure via Terraform or similar tools. Preferred Skills Experience in regulated industries (FinTech, Gaming, or Government). Familiarity with Azure or AWS integration patterns. Experience supporting audit readiness and software delivery controls.
Technology
IT Squad
Software Architect
Senior
Remote
Warsaw, Poland
🏢 Summary: Technical Architect role focused on designing and leading implementation of scalable, secure distributed systems based on Java 17+ and Spring Boot in a cloud-native environment. The position combines architectural ownership, event-driven and microservices design, CI/CD optimization, and full-stack coordination with Angular. It includes technical leadership in Agile/DevOps teams and responsibility for quality, integrations, and high-availability solutions. 🗂️ Requirements: Minimum 5 years of experience in Java and system architecture, Strong knowledge of Java 17+ and Spring Boot, Experience in distributed systems design, Experience in microservices architecture, Experience in REST API design with OpenAPI, Practical experience with Azure Cloud, Experience with Docker and Kubernetes, Experience with CI/CD pipelines, Knowledge of Infrastructure as Code, Experience with event-driven architecture, Experience with Kafka or RabbitMQ, Knowledge of Angular and frontend technologies, Advanced knowledge of PostgreSQL or Oracle, Experience in performance optimization, Experience working in Agile/Scrum, Very good English skills 📃 Skills: Java, Spring, SpringBoot, Microservices, REST, OpenAPI, Azure, Docker, Kubernetes, CI/CD, AzureDevOps, GitHub, SonarQube, IaC, Kafka, RabbitMQ, Angular, HTML, CSS, JavaScript, TypeScript, PostgreSQL, Oracle, Agile, Scrum 🏢 Description: ZAKRES OBOWIĄZKÓW Projektowanie i odpowiedzialność za architekturę systemów – prowadzenie projektowania oraz wdrażania złożonych, rozproszonych systemów (Java 17+, Spring Boot), z naciskiem na skalowalność, wydajność i bezpieczeństwo Definiowanie standardów technologicznych – ustanawianie i egzekwowanie najlepszych praktyk w obszarze mikrousług, API REST (OpenAPI), architektury czystej oraz podejścia cloud-native Przekładanie potrzeb biznesowych na rozwiązania IT – ścisła współpraca z interesariuszami w celu tworzenia spójnej wizji architektonicznej i dopasowanych rozwiązań technologicznych Liderstwo techniczne i podejmowanie decyzji – prowadzenie zespołów międzyfunkcyjnych, wspieranie decyzji architektonicznych oraz nadzór nad realizacją inicjatyw technologicznych w środowisku Agile/DevOps Projektowanie architektury zdarzeniowej i integracji – tworzenie rozwiązań opartych o event-driven architecture (Kafka/RabbitMQ) oraz integracja systemów Rozwój i nadzór nad warstwą frontendową – koordynacja rozwoju nowoczesnych interfejsów użytkownika (Angular) w zgodzie z wymaganiami UX i architektury systemu Zapewnienie jakości i standardów kodu – prowadzenie przeglądów kodu, definiowanie standardów oraz dbanie o wysoką jakość rozwiązań Rozwiązywanie złożonych problemów technicznych – diagnozowanie i eliminowanie krytycznych problemów w środowiskach developerskich i produkcyjnych Projektowanie i optymalizacja procesów CI/CD – rozwój automatyzacji, pipeline’ów oraz narzędzi monitorujących wspierających ciągłe dostarczanie Zarządzanie wdrożeniami i wydaniami – planowanie, koordynacja i nadzór nad release’ami oraz wdrożeniami produkcyjnymi Tworzenie dokumentacji architektonicznej – opracowywanie diagramów, standardów i dokumentacji technicznej Mentoring i rozwój zespołu – wspieranie programistów, budowanie kultury jakości i ciągłego doskonalenia CZEGO OCZEKUJEMY Min. 5 lat doświadczenia w Java oraz projektowaniu systemów i architektury Bardzo dobrej znajomości Java (17+), Spring Boot oraz budowy systemów rozproszonych Doświadczenia w projektowaniu mikrousług i API REST (OpenAPI) Praktycznej znajomości Azure Cloud, Docker, Kubernetes oraz wdrożeń wieloregionalnych Doświadczenia z CI/CD (Azure DevOps, GitHub), SonarQube oraz Infrastructure as Code Znajomości monitoringu, automatyzacji oraz strategii wysokiej dostępności i disaster recovery Doświadczenia w event-driven architecture (Kafka lub RabbitMQ) Praktyki w integracji systemów oraz (mile widziane) rozwiązań AI/ML Znajomość Angular, HTML, CSS, JavaScript/TypeScript Umiejętność projektowania spójnych rozwiązań full-stack Zaawansowanej znajomości relacyjnych baz danych ( PostgreSQL, Oracle ) Doświadczenia w optymalizacji zapytań i wydajności systemów Doświadczenia w pracy w Agile/Scrum oraz prowadzeniu inicjatyw technicznych Bardzo dobrych umiejętności analitycznych i rozwiązywania problemów Samodzielności w pracy nad złożonymi zagadnieniami Bardzo dobrej znajomości języka angielskiego umożliwiającej swobodną komunikację biznesową MILE WIDZIANE Znajomość frameworków do automatyzacji testów Certyfikaty (Azure, Java, Kubernetes) CO OFERUJEMY Realny wpływ na rozwiązania biznesowe i technologiczne w ramach realizowanych projektów Szkolenia oraz wsparcie w określeniu ścieżki rozwoju Eventy firmowe, dostęp do usług medycznych oraz pakietów sportowych Zatrudnienie na umowę B2B Pracę w trybie 100% zdalnym lub 1 dzień pracy z biura (Trójmiasto) Krótki proces rekrutacji składający się z rozmowy HR oraz skill interview z managerem projektu
Technology

The Nuclear Company
Staff Application Security Engineer
Senior
On-site
Washington, DC
150,000 - 173,004 USD/yr
🏢 Summary: The role focuses on securing modern applications, APIs, cloud workloads, and developer workflows within a nuclear energy environment. You will embed security into the SDLC, perform threat modeling and code reviews, harden CI/CD pipelines, and collaborate across engineering teams to manage vulnerabilities and protect sensitive data. This position combines hands-on application security, DevSecOps, and cloud security responsibilities in a regulated, mission-critical context. 🗂️ Requirements: 4+ years experience in application, product, or software security, Hands-on experience securing web applications, APIs, distributed systems, or cloud-native services, Strong knowledge of application security risks (authentication, authorization, injection, SSRF, insecure deserialization, secrets exposure, API security), Experience with secure SDLC tools (SAST, SCA, secret scanning, CI/CD security), Ability to read code in at least one language: Python, TypeScript, Go, Java, C#, or C++, Familiarity with AWS security concepts (IAM, encryption, logging, networking, secrets management, infrastructure-as-code), Experience performing threat modeling and security reviews, Understanding of offensive security principles 📃 Skills: Python, TypeScript, Go, Java, C#, C++, AWS, IAM, CodeQL, Dependabot, SAST, SCA, CI/CD, GitHub, OWASP, NIST, SOC2, IEC62443, NERCCIP 🏢 Description: About the role The Nuclear Company is searching for an Application Security Engineer to help secure the software, data systems, and developer workflows that power our Nuclear Operating System, internal platforms, and mission-critical applications. This is a high-ownership role for a builder who is equally comfortable reviewing application architecture, threat modeling APIs, improving GitHub security controls, and partnering directly with engineers to ship secure software quickly. You will work across product engineering, platform engineering, data science, infrastructure, and operations to embed security into the way we design, build, test, and deploy software. You will help define secure development standards, review high-impact product designs, harden CI/CD workflows, and guide teams through vulnerability remediation in a practical, risk-based way. This role reports to the Senior Manager for Application and Product Security. Responsibilities Application & Product Security - Perform security reviews and threat models for NOS modules, internal tools, APIs, data workflows, AI-enabled features, and cloud-connected applications. - Identify and remediate risks across authentication, authorization, tenant isolation, input validation, secrets handling, encryption, logging, and data access. - Review application designs and code changes for security issues before production. - Define reusable security patterns for web applications, APIs, mobile workflows, internal platforms, and data-heavy systems. - Establish secure-by-default approaches for applications supporting regulated, high-consequence infrastructure. Secure SDLC & Developer Enablement - Build and improve DevSecOps practices across the GitHub-based SDLC, including code scanning, dependency review, secret scanning, branch protections, CI/CD hardening, and secure workflows. - Create secure templates, checklists, automation, documentation, and lightweight review processes. - Triage and prioritize findings from SAST, SCA, secret scanning, penetration tests, code reviews, and internal assessments. - Develop vulnerability management workflows, remediation guidance, and engineering metrics. - Support secure coding education through design reviews, documentation, and developer partnership. Platform, Cloud & Data Security - Secure AWS workloads, infrastructure-as-code, service integrations, data pipelines, and deployment workflows. - Review integrations involving Palantir Foundry, partner APIs, internal data platforms, and AI-assisted engineering workflows. - Secure sensitive data flows across application, platform, and operational environments. - Ensure application events, audit logs, and security signals support investigation and response. - Navigate cybersecurity expectations within a regulated nuclear energy environment. Cross-Functional Partnership - Partner with software engineers, product managers, data engineers, infrastructure teams, and stakeholders. - Communicate risk clearly while balancing security and delivery speed. - Contribute to the application and product security roadmap as systems scale. - Help build a culture of ownership, velocity, and technical rigor. Experience - 4+ years in application security, product security, software security, or software engineering with strong security focus. - Experience securing modern software systems including web applications, APIs, distributed systems, or cloud-native services. - Strong understanding of authentication, authorization, access control, injection, insecure deserialization, SSRF, secrets exposure, dependency risk, and API security. - Experience with GitHub Advanced Security, CodeQL, Dependabot, SAST, SCA, secret scanning, and CI/CD security. - Ability to read at least one modern programming language (Python, TypeScript, Go, Java, C#, or C++). - Familiarity with AWS security concepts including IAM, logging, encryption, networking, secrets management, and infrastructure-as-code. - Strong communication skills and offensive security mindset. Preferred Qualifications - Experience securing software in regulated or mission-critical environments. - Familiarity with AI-assisted development tools, LLM-enabled applications, prompt injection risks, and AI supply chain concerns. - Experience with vulnerability management, penetration testing, DAST tools, or incident response. - Familiarity with OWASP ASVS, OWASP Top 10, OWASP API Security Top 10, NIST CSF, NIST 800-53, SOC 2, IEC 62443, or NERC CIP. - Security certifications such as AWS Certified Security – Specialty or OSWE. - Interest in nuclear energy and critical infrastructure. Benefits - Competitive compensation packages - 401k with company match - Medical, dental, vision plans - Generous vacation policy plus holidays Estimated Starting Salary Range The estimated starting salary range for this role is $150,000 - $173,000 annually, less applicable withholdings and deductions, paid on a bi-weekly basis. The actual salary offered may vary based on experience, qualifications, tenure, skill set, availability of qualified candidates, geographic location, certifications, and other relevant factors. EEO Statement The Nuclear Company is an equal opportunity employer committed to fostering an inclusive workplace. Equal employment opportunities are provided without regard to protected characteristics. Discrimination in any aspect of employment is prohibited. Export Control Certain positions may involve access to information and technology subject to U.S. export controls. Compliance requirements may limit consideration of some applicants.
Technology
emagine Polska
Senior Software Engineer (Java // Python)
Senior
Hybrid
Lisbon, Portugal
🏢 Summary: Senior Software Engineer responsible for defining technical standards and architecture, leading backend and frontend development, and ensuring secure, scalable, and observable solutions. The role drives CI/CD, enterprise integrations, and production support while aligning engineering practices with product and operations goals. 🗂️ Requirements: Proven experience defining technical standards and architecture, Experience with CI/CD orchestration, Experience with observability implementation, Experience implementing on-premises, hybrid, and cloud solutions, Experience leading backend and frontend architectural decisions, Experience maintaining CI/CD pipelines, Experience coordinating enterprise integrations, Knowledge of DDD and clean architecture, Expertise in Java and Spring Boot, Expertise in Python and FastAPI, Expertise in React or Angular, Experience with L2/L3 production support, Experience with Spring Security and OAuth 📃 Skills: Java, SpringBoot, Python, FastAPI, React, Angular, CICD, Observability, ServiceNow, Jira, Boomi, DDD, OAuth, SpringSecurity 🏢 Description: To strengthen the team, we are seeking a person for the role of Senior Software Engineer, responsible for defining technical standards and architecture, guiding the development team, ensuring quality practices, security, and CI/CD, and collaborating with product and operations in delivering scalable, business-aligned solutions. Main Responsibilities Define technical standards, architecture, and development practices, ensuring quality, security, performance, and resilience in production environments. Orchestrate end-to-end delivery with CI/CD and observability while promoting responsible autonomy among teams aligned with product and operational objectives. Implement on-premises, hybrid, and cloud solutions with security best practices, observability, and integration with existing systems. Lead architectural decisions in backend and frontend (Java/Spring Boot, Python/FastAPI, React/Angular), ensuring scalability, consistent testing and code reviews. Implement and maintain end-to-end CI/CD pipelines and observability (logs, metrics, distributed tracing). Coordinate enterprise integrations (ServiceNow, Jira, CRMs) and iPaaS (e.g., Boomi), including mapping, validation, and compliance. Apply practices such as DDD, clean architecture, application security, and secrets/IAM management throughout the development lifecycle. Provide technical guidance to the team, elevate quality standards, and align practices with product and operations. Lead L2/L3 support in production: incident triage and resolution, prevention escalation (on call), SLA management, and conducting post-mortems focused on root causes and corrective actions. Operate and evolve applications in on-premises, hybrid, or cloud environments: VMs, networks, VPNs, certificates, Nginx/reverse proxy, load balancing, and enhancing the security of exposed services. Key Requirements Proven ability to define technical standards, architecture, and development practices. Experience with CI/CD orchestration and observability practices. Knowledge of implementing on-premises, hybrid, and cloud solutions with security best practices. Leadership in architectural decisions for backend and frontend technologies. Experience with maintaining CI/CD pipelines and end-to-end observability. Ability to coordinate enterprise integrations and ensure compliance. Mastery of practices such as DDD and clean architecture. Technical expertise in Java/Spring Boot, Python/FastAPI, React/Angular. Experience in providing L2/L3 technical support and leading incident resolution. Expertise in security practices, including Spring Security and OAuth. Nice to Have Experience with Docker, Kubernetes, and cloud environments (Azure/AWS/GCP). Background in data management with PostgreSQL, MongoDB, and Redis. Familiarity with AI models, particularly RAG. Knowledge in security access management and policies based on the principle of least privilege.
Technology
Link Group
Cloud Service Administrator
Senior
Hybrid
Warsaw, Poland
130 - 150 PLN
🏢 Summary: Cloud Engineer role focused on automating and securing global Azure infrastructure by transforming network and security processes into scalable Infrastructure-as-Code. The position bridges Network Infrastructure and DevOps, driving cloud networking architecture, DevSecOps integration, and CI/CD automation. Responsible for ensuring architectural stability, security enforcement, and automated multi-region Azure deployments. 🗂️ Requirements: Expert-level Terraform experience, Deep practical knowledge of Microsoft Azure networking, Experience designing complex network topologies (V-WAN, VNET, BGP), Hands-on experience with CI/CD pipelines (Azure DevOps, GitHub Actions, or Jenkins), Proficiency in scripting (Python, PowerShell, or YAML), Experience implementing Policy-as-Code and security benchmarks (NIST/CIS), Strong knowledge of DevSecOps practices and automated security testing, Experience managing and automating firewall configurations, Experience working in Agile/Scrum/SAFe environments 📃 Skills: Azure, Terraform, V-WAN, VNET, BGP, DevSecOps, CI/CD, AzureDevOps, GitHubActions, Jenkins, Python, PowerShell, YAML, NIST, CIS, Firewall, Agile, Scrum, SAFe 🏢 Description: The Mission We are looking for a highly skilled Cloud Engineer to bridge the gap between Network Infrastructure and DevOps. Your role is to transform manual networking and security tasks into scalable, automated Infrastructure-as-Code (IaC) . You will be responsible for the architectural stability, security enforcement, and automated deployment of our global Azure footprint. Core Responsibilities Infrastructure Automation: Architect and maintain robust IaC patterns using Terraform to ensure consistent, repeatable deployments. Cloud Networking: Design and optimize complex network topologies (V-WAN, VNET, BGP) across multi-region environments. Security Integration (DevSecOps): Implement Policy-as-Code (NIST/CIS benchmarks) to automate security gating and remediation. CI/CD Orchestration: Build and refine end-to-end pipelines (Azure DevOps, GitHub Actions) to automate the lifecycle of cloud resources. Network Security: Manage and automate firewall workflows, ensuring security protocols are integrated directly into the deployment process. Innovation & Troubleshooting: Resolve complex infrastructure bottlenecks and evaluate emerging tools to keep our stack at the cutting edge. Technical Profile Azure Expert: Deep practical knowledge of Microsoft Azure and its networking ecosystem. IaC Champion: Expert-level Terraform skills are non-negotiable. Automation Mindset: Proficient in scripting (Python, PowerShell, or YAML) to drive self-service infrastructure. DevOps Guru: Proven track record of managing environments via CI/CD (ADO, Jenkins, or GitHub). Methodology: Comfortable working in Agile/Scrum/SAFe environments, understanding both the "how" (code) and the "why" (business delivery). Security-First: Solid grasp of DevSecOps, including automated testing frameworks and operational stability controls.
