Security Architect

Liebherr
Madrid, Spain
2 days ago
Apply on www.adzuna.es
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience required
3 years minimum
Working hours
Regular working hours
Languages
English, French, German
Job source

Tech stack

Kubernetes Security Amazon Web Services Microsoft Azure Cloud Computing Cloud Computing Security Cyber Security DevOps Github Identity and Access Management OAuth Open Web Application Security Systems Development Life Cycle
+15 more
Zero Trust Network Access JSON Web Token Sherwood Applied Business Security Architecture Security Assertion Markup Language (SAML) Software Engineering Google Cloud Software Security Kubernetes Information Technology Devsecops Docker Jenkins Static Application Security Testing Microservices Dynamic Application Security Testing

Job description

Develop and enforce application security architecture frameworks, policies, standards, and best practices to align with compliance requirements (e.g. OWASP, NIST, ISO 27001) Review and approve application security designs while ensuring secure software development and architecture Integrate security into the software development lifecycle (SDLC) by collaborating with development teams and enabling DevSecOps practices Adopt and promote a security-by-design approach with the different stakeholders Conduct threat modeling, security reviews, and risk assessments to proactively identify and mitigate vulnerabilities Evaluate, recommend, and oversee security tools and testing solutions (SAST, DAST, IAST) to strengthen application security Define security strategies for applications (e.g. IAM) and Implement Security Principles such as Zero Trust Actively contribute to the Coporate Information Security architecture community, sharing insights and best practices Collaborate with IT, EA, DevOps amd Engineering Team to align security Objectives

Requirements

Bachelor’s/Master’s in Cybersecurity, Computer Science, or related field 3+ years in cybersecurity, preferably in application security architecture role Following certificates are preferred; CISSP, SABSA as well as Cloud certifications (AWS, Azure, or GCP) English is a Must, German and French are a plus Good understanding of cybersecurity frameworks and standards (ISO 27001, NIST) Expertise in OWASP, SSDLC, and DevSecOps, with strong knowledge of secure software architecture Strong understanding of microservices security, API security, and IAM (e.g. OAuth, SAML, JWT) Knowledge of cloud-native security and CI/CD integration (e.g. Jenkins, GitHub Actions) Experience with container security and cloud platforms (e.g. AWS, Azure, GCP, Docker, Kubernetes)

Benefits & conditions

At Liebherr, we believe people are at the heart of our success. As part of our international team, you’ll enjoy a secure role in a family-owned company that values innovation, collaboration, and long-term career growth: Competitive compensation and benefits package that recognizes your expertise Flexible and hybrid working model Creative freedom and responsibility to shape processes and solutions in our global transformation Continuous learning and development with tailored training and certification opportunities Meal vouchers Life and accident insurance Option to include a premium private health insurance package as part of the flexible remuneration A safe, stable and international workplace within a trusted family business that invests in people Please only use the online application option. Please note that we do not accept applications via recruitment agencies for this position.

About the company

Liebherr is a family-run technology company that is not only one of the largest construction machinery manufacturers in the world, but also offers high-quality, user-oriented products and services in many other areas. The Group employs nearly 50,000 people in more than 140 companies on all continents.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.adzuna.es
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

2:49 min

Adopting OAuth best practices and removing outdated grants

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

2:07 min

Inspecting default bridge architectures and custom Docker networks

Oliver Seitz Oliver Seitz · World Congress 2025

2:17 min

Mapping the maturity roadmap for scaled devops adoption

Dominik Krichbaum Dominik Krichbaum · World Congress 2026 Europe

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

1:34 min

Analyzing vulnerabilities in standard OAuth 2.0 authorization flows

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

Videos

See all

Related articles

See all