> Markdown version of [/jobs/ext/2508346-sr-staff-engineer-security-architect](https://www.wearedevelopers.com/jobs/ext/2508346-sr-staff-engineer-security-architect). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Sr Staff Engineer, Security Architect - **Company:** Dover Fueling Solutions - **Location:** Austin, TX, United States - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Kubernetes Security, Application Programming Interfaces (APIs), Software as a Service, Cloud Computing, Cyber Security, Continuous Integration, Network Security, Network Architecture, Routing, Open Web Application Security, PCI Data Security Standards, Remote Access Technology, Secure Coding, Cloud Platform System, Delivery Pipeline, Software Security, Firewalls (Computer Science), Information Technology, Enterprise Integration, CIS Benchmarks, Devsecops - **Published:** August 11, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=91a686c08e988551 ## About the Role Bachelor's degree in computer science, Information Security, Engineering, or a related field with a minimum of 10 years of relevant experience, or an equivalent combination of education and experience. * Minimum of 5 years of experience in security architecture, application security, infrastructure security, or closely related security discipline. * Experience partnering with cross-functional solution and engineering teams to influence technical decisions without direct reporting authority. * Comfortable leading customer discussions on solution security and network security architecture, including security risks, controls, and trade-offs. * Practical experience in the following: * Security architecture for cloud and on-premises applications, platforms, and infrastructure. * PCI, PCI DSS, PCI Software Security Framework (SSF), and security standards or practices relevant to the fueling industry. * DevSecOps practices, CI/CD security controls, software composition analysis, static and dynamic testing, container security, and infrastructure-as-code security. * Vulnerability and CVE management, including triage, prioritization, remediation planning, and risk acceptance. * Network architecture and security, including segmentation, routing, firewalls, identity, encryption, and secure remote connectivity. * Threat modeling, security design reviews, secure coding practices, and security requirements definition. * Security frameworks and standards such as NIST, ISO 27001, CIS Controls, and OWASP. * Excellent written and verbal communication skills, including the ability to explain security risks and solutions to technical and non-technical audiences. * Demonstrated leadership, strong analytical and problem-solving skills, and a results-oriented work ethic. * Relevant certifications such as CISSP, CCSP, or PCI ISA are a plus. * Experience in a global environment is a plus. Essential Functions: * International and domestic travel may be required. * Ability to sit for extended periods of time, including during long international flights. * Ability to work in excess of 8 hours per day as business needs require. * Ability to effectively and clearly communicate. * Customer-centric mindset. * Technology leadership mindset. * Ability to work both independently and in a team. * Ability to work with limited direction to attain project goals according to set timelines. ## Description The Security Architect partners with solution teams to define and drive the security architecture strategy across cloud platform and SaaS Solutions, Fueling dispensers, POS Platforms, Edge gateways, platforms, and delivery processes. This role defines security architecture, roadmaps, standards, and practical guidance; embeds secure-by-design and DevSecOps practices into delivery pipelines; and serves as the liaison between engineering teams and security specialists to prioritize and address CVEs. The successful candidate brings strong knowledge of fueling-industry security requirements, PCI and PCI DSS, PCI Software Security Framework (SSF), and cloud, on-premises, and network architectures., Define and maintain the security architecture roadmap across cloud, edge, applications, APIs, network, connected devices, third party integrations. * Partner with solution, product, infrastructure, and engineering teams to assess architecture and identify security gaps, risks, and remediation priorities. * Engage directly with customers to discuss solution security and network security architecture, clearly communicate risks and controls, and build confidence in proposed approaches. * Define target-state security architecture, roadmaps, reference patterns, and implementation guidelines for cloud and on-premises environments. * Embed secure-by-design principles, threat modeling, security requirements, and design reviews throughout the delivery lifecycle. * Establish and continuously improve DevSecOps processes, including security controls and quality gates in CI/CD pipelines. * Work with security specialists, application teams, and platform owners to triage CVEs, assess risk and exploitability, and drive timely remediation or risk acceptance. * Define vulnerability-management expectations for software, containers, infrastructure as code, third-party components, and build artifacts. * Guide teams on secure network architecture, including segmentation, identity and access controls, encryption, firewalling, remote connectivity, and monitoring. * Ensure architectures and controls align with PCI, PCI DSS, PCI Software Security Framework (SSF), applicable fueling-industry security standards, and internal policies. * Translate regulatory, customer, and security requirements into actionable engineering standards, patterns, and backlog items. * Support security assessments, audits, customer due diligence, and evidence collection through clear architecture and control documentation. * Develop security metrics and report that communicate risk posture, remediation progress, and roadmap outcomes. * Provide security guidance and technical mentorship to architects, developers, and engineering leaders. * Engage on special projects as required. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [DevSecOps: Injecting Security into Mobile CI/CD Pipelines](https://www.wearedevelopers.com/videos/273-devsecops-injecting-security-into-mobile-ci-cd-pipelines) - [How to Cause (or Prevent) a Massive Data Breach- Secure Coding and IDOR](https://www.wearedevelopers.com/videos/39-how-to-cause-or-prevent-a-massive-data-breach-secure-coding-and-idor) - [Creating a routing app with Google Maps API from scratch](https://www.wearedevelopers.com/videos/831-creating-a-routing-app-with-google-maps-api-from-scratch) - [DevSecOps culture](https://www.wearedevelopers.com/videos/783-devsecops-culture) - [DevSecOps: Security in DevOps](https://www.wearedevelopers.com/videos/36-devsecops-security-in-devops) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Why Attend a Developer Event in 2026?](https://www.wearedevelopers.com/magazine/688-why-attend-a-developer-event-in-2026) - [Highest Paying Tech Companies for Developers](https://www.wearedevelopers.com/magazine/220-highest-paying-tech-companies-for-developers) - [The 12 Best Jobs for Software Engineers](https://www.wearedevelopers.com/magazine/401-the-12-best-jobs-for-software-engineers)