> Markdown version of [/jobs/ext/1989394-security-architect-hibrido](https://www.wearedevelopers.com/jobs/ext/1989394-security-architect-hibrido). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Security Architect, hibrido - **Company:** Michael Page - **Location:** Spain - **Contract:** Permanent contract - **Skills:** Software System Penetration Testing, Architectural Patterns, Cloud Computing Security, Control Objectives for Information and Related Technology (COBIT), Cyber Security, Information Security Management, Information Systems Security Architecture Professional, Network Security, Software Maintenance, Togaf, CIS Benchmarks - **Published:** August 8, 2026 - **Apply:** https://www.empleate.gob.es/empleo/#/oferta/1856532542 ## About the Role posture of existing technology platforms and services. High visibility and business impact Opportunity to grow as a strategic Security Architect Required experience: 5+ years of experience working in a specialist IT/technical/architect role. 3+ years of experience in an information security-focused role. Experience working in a multi-vendor environment. Experience securing and working with enterprise-grade systems and applications. Good IT security background, including knowledge of security architectures, cloud security, network security, information security best practices, and best-practice operating models and processes. Preferred experience: 2+ years delivering security risk assessments in a global IT environment. Detailed technical knowledge relating to hardware and software. Experience performing threat modelling using recognised methodologies (e.g. STRIDE). Experience conducting architecture risk assessments and security design reviews. Experience supporting security assurance activities, including penetration testing and findings remediation. Familiarity with NIST Cybersecurity Framework, CIS Controls and ISO 27001. Experience operating within formal architecture governance processes. Knowledge of principles and practices involved in the development and maintenance of software solutions, architectures and service delivery. Experience with regulatory compliance and information security management frameworks (e.g., ISO 27001, NIST, GDPR). Experience deploying and operating information security risk management processes. Familiarity with standard IT process and control frameworks, such as ITIL, IT4IT, COBIT and TOGAF. Skills: Great communication skills, capable of engaging effectively from engineering levels to C-Level executives. Analytical thinking and problem-solving abilities, including troubleshooting and adapting to significant project cha ## Description Security Architect Responsibilities: Support the development of security architectures, including target states, transition plans and roadmaps aligned to business objectives, IT strategy and security risk appetite. Provide risk-based security architecture guidance to engineering, infrastructure, application, architecture, project and business teams. Review solution, application, infrastructure and integration designs to ensure secure-by-design principles, appropriate technology selection and alignment with PageGroup security policies and standards. Support security architecture activities across BAU services, projects, programmes and material change initiatives, ensuring security requirements are identified, designed, implemented and governed. Perform threat modelling, threat analysis and architecture risk assessments to identify threats, attack paths, vulnerabilities, security weaknesses and appropriate mitigating controls. Define, document and maintain security requirements, control specifications, architectural patterns, standards, baselines and implementation guidance, ensuring alignment with business risk appetite and applicable security standards. Conduct security architecture reviews and implementation assurance activities to validate that agreed security controls and requirements have been effectively implemented. Review remediation plans and support the closure of security findings, defects and design issues. Participate in architecture governance forums, change reviews and security assurance activities, providing advice on security risks and compliance with security standards. Conduct independent security reviews and produce technical reports, recommendations and supporting documentation, including working with third parties where required. Maintain awareness of emerging technologies, threats and security trends, recommending updates to standards, controls and guidance where appropriate. Support continuous improvement activities that strengthen the security ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [A practical guide to writing secure Dockerfiles](https://www.wearedevelopers.com/videos/109-a-practical-guide-to-writing-secure-dockerfiles) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [We (don't) need a software architect!?!](https://www.wearedevelopers.com/videos/663-we-don-t-need-a-software-architect) - [OPA for the cloud natives](https://www.wearedevelopers.com/videos/713-opa-for-the-cloud-natives) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) ## Related Articles - [The 12 Best Jobs for Software Engineers](https://www.wearedevelopers.com/magazine/401-the-12-best-jobs-for-software-engineers) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Top-Paying Tech Jobs (with Salaries)](https://www.wearedevelopers.com/magazine/372-top-paying-tech-jobs-with-salaries) - [The Most Popular IT Jobs on the Market](https://www.wearedevelopers.com/magazine/376-the-most-popular-it-jobs-on-the-market) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking)