> Markdown version of [/jobs/ext/2724313-c-security-architect](https://www.wearedevelopers.com/jobs/ext/2724313-c-security-architect). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # C Security Architect - **Company:** Airbus - **Location:** Madrid, Spain - **Contract:** Permanent contract - **Skills:** Software System Penetration Testing, Cyber Security, Computer Engineering, Software Design Documents, Information Systems Security Architecture Professional, Cybercrime - **Published:** September 5, 2026 - **Apply:** https://www.adzuna.es/contact-us.html ## About the Role Academic Background: Master's or Bachelor's Degree in Telecommunications, Aerospace/Aeronautical, or Computer Science Engineering. Risk Methodologies: Expert proficiency in at least two of the following methodologies: MAGERIT, PILAR, NIST, EBIOS, or EUROCAE ED202A/203B. Security Clearance: Mandatory NATO/National Security Clearance. Languages: English C1 (Advanced) for technical and business-level liaison. Critical Knowledge Key Technical Expertise: High-Level and Low-Level Security Architectures (HLD/LLD). Pentesting Fundamentals: Strong understanding of penetration testing to validate architectural designs. Compliance Standards: In-depth knowledge of CC/CEM (Common Criteria) and CCN-STIC guidelines. Required Experience Minimum of 4 years of experience in information security or aircraft systems. Required Competencies Technical Competencies Critical Architecture Design: Ability to create complex security frameworks that support aeronautical subsystems. Security-by-Design Advocacy: Proficiency in evangelizing and integrating security principles into the early stages of engineering development. Risk Management: Ability to translate technical threats into Security Risk Assessments (SRA) with business or mission impact. SecOps Definition: Capacity to draft Security Operating Procedures that ensure long-term product maintenance. Technical Consulting: Acting as a subject matter expert (SME) for external clients to defend and explain architectural decisions. Behavioral Competencies Leadership and Stakeholder Management: Ability to influence multidisciplinary teams and negotiate security requirements with Project Managers. Strategic Communication: Proficiency in acting as a "Focal Point," simplifying complex architectures for clients or certification authorities. Holistic Thinking: Global product vision; ability to understand how a vulnerability in a single component affects the overall safety and security of the aircraft. Autonomy and Decision-Making: Decisiveness in validating or rejecting designs based on risk analysis and regulatory compliance. Results and Quality Orientation: Focused on delivering high-quality technical documentation under demanding military or aeronautical standards. This job requires an awareness of any potential compliance risks and a commitment to act with integrity, as the foundation for the Company's success, reputation and sustainable growth. ## Description A vacancy for A/C Security Architect (d/f/m) has arisen within the Defence and Strategic Programmes team of Airbus Cybersecurity in Spain. We provide products, development, concepts, and cybersecurity engineering to internal and external customers in Airbus. As a European specialist, Airbus shields customers, agencies, and critical infrastructures from cyber threats. We are looking for experienced A/C Security Architect with proven experience in the defence and aerospace domains. In the role of A/C Security Architect the main responsibilities are: 1. Leadership and management of product security aspects throughout the entire lifecycle. 2. Promotion of the "Security-by-Design" approach among various project stakeholders. 3. Proactive contribution to architecture design to mitigate risks. 4. Security Risk Analysis (SRA) using methodologies such as MAGERIT, PILAR, NIST, EBIOS, or EUROCAE ED202A/203B. 5. Design of detailed security architectures (High-Level and Low-Level Design) for subsystems and components. 6. Ensuring regulatory compliance (CC/CEM, CCN-STIC). 7. Development of Security Operating Procedures (SecOps) for product maintenance. 8, Security Focal Point for customer liaison and communication. 9. As an integral part of their duties, the candidate must fulfill responsibilities regarding Occupational Health and Safety (OHS), Quality, and Environment. This includes strict compliance with all health and safety regulations and procedures established by the company and current legislation; participating in OHS training; correctly using personal protective equipment (PPE); and reporting any unsafe conditions. Furthermore, they must ensure all activities align with quality standards, contributing to continuous improvement, maintaining accurate records, and participating in quality audits. They shall also engage in sustainability initiatives, promoting efficient resource use and waste reduction, and reporting environmental incidents to guarantee a safe, sustainable, and high-quality work environment. 10. As an AIRBUS SLC employee, the candidate is required to know and comply with established internal policies and procedures, both at the Airbus Group level and specific AIRBUS SLC procedures, committing to: a) Comply with AIRBUS SLC policies, codes, and standards. b) Understand and fulfill assigned roles and responsibilities regarding Information Security, Privacy, and Confidentiality. c) Undergo training, awareness, and capacity building with periodic updates on entity policies and procedures relevant to their position. Act with due diligence to prevent security incidents. In this regard, investigative and disciplinary proceedings may be initiated against those responsible for an incident; such proceedings shall not commence without prior verification that an incident has occurred. ## Related Videos - [Swapping a Data Warehouse at Runtime: Zero-Downtime Migration Without Changing a Single Client](https://www.wearedevelopers.com/videos/100311-swapping-a-data-warehouse-at-runtime-zero-downtime-migration-without-changing-a-single-client) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Fighting the Next Wave of Cybercrime](https://www.wearedevelopers.com/videos/100331-fighting-the-next-wave-of-cybercrime) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [The 12 Best Jobs for Software Engineers](https://www.wearedevelopers.com/magazine/401-the-12-best-jobs-for-software-engineers) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Top Characteristics of a Software Engineer](https://www.wearedevelopers.com/magazine/166-top-characteristics-of-a-software-engineer)