> Markdown version of [/jobs/ext/3041567-application-architect-with-security-focus](https://www.wearedevelopers.com/jobs/ext/3041567-application-architect-with-security-focus). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Application Architect with Security Focus - **Company:** Keystone Solutions - **Location:** Brussel, Belgium - **Experience:** Experienced - **Contract:** Temporary contract - **Skills:** Java (Programming Language), Agile Methodology, Applications Architecture, Cyber Security, Continuous Integration, Oracle (Applications), Open Web Application Security, Secure Coding, Software Engineering, Software Systems, Web Services, Test-Driven Development (TDD), Software Security, AngularJS, Devsecops, Static Application Security Testing, Dynamic Application Security Testing - **Published:** September 24, 2026 - **Apply:** https://www.adzuna.be/details/5896474543 ## About the Role We are seeking an experienced Application Architect with a strong focus on security for a consultancy mission at a client site representing Keystone Solutions. The role is crucial in ensuring compliance with the new NIS2 directive, which emphasizes security in software development. Profile Description: The ideal candidate will have a solid background in security or application architecture, with proven experience in implementing and analyzing necessary changes in development processes. This role requires the ability to clearly map and document these changes. The candidate must communicate effectively with both highly technical profiles and less specialized collaborators, promoting security and development concepts convincingly. As part of establishing a secure development practice, the candidate will leverage the Software Assurance Maturity Model (SAMM) from OWASP, which aids organizations in enhancing software security through best practices and measurable goals. Familiarity with this framework is a significant advantage., * Demonstrated experience in similar projects within an environment comparable to the client. * Minimum 3 years of experience in security architecture reviews. * Minimum 3 years of experience in implementing SCA, SAST, and DAST tools in a CI/CD pipeline. * Minimum 3 years of experience in DevSecOps. * Knowledge of project management. * Agile / Lean Software Development. * Security frameworks (CyFun, SAMM, etc.). * Quality assurance and testing (test-driven development). * Result-oriented, customer-focused, and responsible. * Planning, organizational, steering, and adjustment capabilities. * Negotiation skills and relationship management. * Ability to build, lead, and supervise a team. Additional Assets: * Knowledge of ITIL. * Knowledge of Java. * Knowledge of Angular. * Knowledge of Oracle. * Knowledge of Web Services and Service Bus technologies. * Familiarity with the SAMM framework. * Familiarity with the CyFun framework. If you are ready to tackle technical and strategic challenges in a dynamic consultancy environment, apply today at Keystone Solutions Career Portal. ## Description The profile will assist existing teams in integrating secure development into their daily activities, laying the groundwork for a Secure Development program. Emphasis will be placed on SecDevOps and the implementation of continuous security practices. By documenting, describing, and training teams on these methodologies, the candidate will actively contribute to enhancing the security of applications developed within and for the client, while increasing the overall security maturity of development teams. The profile will also participate in establishing application security dashboards and defining routines and processes to continuously improve development security. A key outcome of this project will be the creation of a standard directive detailing how to concretely apply secure development, not only for internal projects but also for external suppliers, along with a security matrix for evaluating external projects. Given that this is the project's launch, the candidate must possess the experience and maturity to act as a project lead, participating in follow-up meetings, reporting on planning and progress, and drafting documentation related to chosen methodologies and their implementation. The candidate may also be required to design and deliver training on secure development to the relevant teams. As an expert architect, the candidate should be capable of evaluating and commenting on technical designs, providing advice based on both hardware and software infrastructure as well as working methodologies. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [DevSecOps: Injecting Security into Mobile CI/CD Pipelines](https://www.wearedevelopers.com/videos/273-devsecops-injecting-security-into-mobile-ci-cd-pipelines) - [Developer Time Is Valuable - Use the Right Tools - Kilian Valkhof](https://www.wearedevelopers.com/videos/1792-developer-time-is-valuable-use-the-right-tools-kilian-valkhof) - [How to Stop Choosing JavaScript Frameworks and Start Living](https://www.wearedevelopers.com/videos/118-how-to-stop-choosing-javascript-frameworks-and-start-living) - [DevSecOps: Security in DevOps](https://www.wearedevelopers.com/videos/36-devsecops-security-in-devops) - [DevSecOps culture](https://www.wearedevelopers.com/videos/783-devsecops-culture) ## Related Articles - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [Where To Find Software Engineering Jobs](https://www.wearedevelopers.com/magazine/396-where-to-find-software-engineering-jobs) - [The 12 Best Jobs for Software Engineers](https://www.wearedevelopers.com/magazine/401-the-12-best-jobs-for-software-engineers) - [Where to Find Entry-Level Software Engineering Jobs](https://www.wearedevelopers.com/magazine/397-where-to-find-entry-level-software-engineering-jobs) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Fully Remote Software Engineer Jobs](https://www.wearedevelopers.com/magazine/447-fully-remote-software-engineer-jobs)