Product Security Architect

SRT Marine Systems plc
Birmingham, UK
7 days ago
Apply on find.jobs
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Compensation
£75,000.0 - £110,000.0
Working hours
Regular working hours
Job source

Tech stack

Software as a Service Cyber Security Continuous Integration Secure Coding Software Engineering Software Vulnerability Management Software Security Vulnerability Analysis

Job description

We are looking for a Product Security Architect to help ensure security is properly built into our products, our engineering decisions, our product priorities and the way our products are deployed for customers.

This is a senior individual contributor role sitting at the intersection of product security, application security and secure delivery. You as a Product Security Architect will work closely with the product, development, network & infrastructure and customer-facing teams to improve the security of what we build, how we build it, and how it is securely implemented in client environments.

The role is focused primarily on influencing product and development decisions, backed by enough technical depth to review designs and code intelligently, assess risk pragmatically,and help drive secure development practices across the business.

The role of Product Security Architect is primarily based from our Bristol office, but you must be willing to travel to our offices in Cardiff and Bath on occasion, with good flexibility for Hybrid working.

Responsibilities - Product Security Architect - not exhaustive:

  • Act as a senior security voice across the product and development teams, ensuring security is properly represented in roadmap, backlog and design decisions.
  • Work with colleagues across product, development, and networks & infrastructure to embed security across the product lifecycle.
  • Carry out threat modelling, secure design reviews and technical risk assessments for new and existing product capabilities.
  • Assign pragmatic risk levels and support sensible prioritisation of remediation alongside feature delivery and other technical work.
  • Help improve secure software development and delivery practices, including CI/CD and related controls.
  • Support vulnerability remediation, including root cause analysis and long-term fixes.
  • Contribute to security standards, metrics and ways of working that improve product security maturity over time.
  • Provide security leadership and architectural guidance for the secure implementation and operation of SRT products in customer environments, including defining the principles, patterns and guidance that customer-facing and implementation teams should follow.
  • Work with internal stakeholders to ensure engineering reality supports the security claims we make to customers, partners and auditors.
  • Contribute to wider assurance and certification activity, including ISO 27001 or other relevant standards.

Requirements

  • Strong experience in product security, application security, secure software engineering, security architecture or a similar role in a software-led environment.
  • Good understanding of how product and development teams operate, including how security considerations are balanced alongside product delivery.
  • Strong experience of threat modelling, secure design review, vulnerability assessment and remediation prioritisation.
  • The judgement to assess exploitability and business impact pragmatically
  • Practical experience applying security across the software development lifecycle, including areas such as threat modelling, secure coding, testing, vulnerability management and secure delivery.
  • Ability to influence product, development and cross-functional stakeholders without direct authority.
  • Strong communication skills, with the ability to turn technical security concerns into clear, actionable decisions.
  • Familiarity with recognised frameworks or certifications such as ISO 27001, NIST CSF or similar would be helpful.
  • Experience in a product, platform or SaaS business.
  • Experience in high-trust, regulated or mission-critical environments would be valuable.

Benefits & conditions

  • Highly Competitive Salary and benefits package
  • 25 days annual leave rising to 28 days with service
  • Real individual development opportunities

About the company

SRT Marine Systems plc (SRT) are a market leader in its domain of international marine surveillance technology and systems. We are respected, established and an ambitious multi-national company headquartered in the UK with a global customer base.

The company has a global impact in the marine domain by leading the next generation of Maritime Domain Awareness ‘MDA’ technologies, products and systems that significantly enhance, security, safety and environment protection and sustainability. Our customers are worldwide and range from the largest national coast guards to individual vessel owners.

SRT is an exciting company where high quality results are rewarded. We are ambitious and are constantly seeking to innovate to deliver better products and services to our customers. We strive to make SRT a rewarding and challenging place to work where talented hard-working individuals have the opportunity to make a real impact across the marine world.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on find.jobs
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:30 min

The universal and shared team responsibility of software security

Julia Wilson Julia Wilson +1 · World Congress 2025

2:59 min

Applying secure coding practices and proactive system monitoring

Mihaela-Roxana Ghidersa · LIVE

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

10:35 min

Teaching and coaching security concepts for lasting impact

Tanya Janca · World Congress 2021

2:47 min

Securing code provenance with digital identity signatures

Marcus Ross Marcus Ross · World Congress 2026 Europe

Videos

See all

Related articles

See all