Senior Security Engineer (Software Engineering)

Bertrandt US Inc
Charlotte, NC, United States
about 2 months ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
10 years minimum
Working hours
Regular working hours
Job source

Tech stack

Access Network Artificial Intelligence Amazon Web Services Microsoft Azure Cloud Computing Security Cyber Security Data Security Software Design Documents Software Design Patterns Domain Name System Security Extensions Federated Identity Management Network Architecture
+14 more
Network Connections Network Planning and Design Software Architecture Remote Access Technology Zero Trust Network Access Sherwood Applied Business Security Architecture Software Engineering Istio Large Language Models Software Security Mitre Att&ck Multi-Cloud Information Technology Virtual Agents

Job description

This is more than producing diagrams and design documents. You will lead security architecture reviews of proposed solutions before they enter the engineering pipeline, identify security requirements that engineering teams can execute, and own architectural decisions that compound over years., * Design enterprise network and infrastructure security architecture, including segmentation strategy, zero-trust network design, ZTNA implementation, DNS security, firewall strategy, network detection and response, and remote access architecture.

  • Lead cloud security architecture across primary cloud platforms, making multi-cloud decisions on identity federation, network connectivity, data security posture management, and cloud-native application security patterns.
  • Conduct structured security architecture reviews of proposed solutions, technology selections, and major capability initiatives entering the engineering pipeline, identifying security requirements and documenting findings before implementation.
  • Partner with the cryptographic architecture function on areas of overlap including TLS strategy, certificate-based network access, and mutual TLS architecture, and with identity architecture on network-aware identity decisions including conditional access and ZTNA-identity integration.
  • Support OT and vehicle security architecture in coordination with domain leads, providing enterprise network and cloud security perspective where the domains intersect.
  • Contribute to emerging security architecture for AI and ML systems within the function, with focus on LLM application security and AI agent boundary design as the discipline matures.
  • Document reference architectures, design patterns, and architectural decision records that engineering and platform teams adopt as part of standard practice.
  • Mentor other architects and engineers on architectural reasoning through review, working sessions, and contribution to security architecture standards.

Requirements

Do you have experience in Zero trust architecture design?, * Bachelor’s degree in Computer Science, Information Technology, Engineering, or a related field, or equivalent work experience.

  • 10+ years of hands-on experience in security architecture, with network and infrastructure security architecture as a primary career discipline.
  • Working depth in zero-trust network architecture, ZTNA, microsegmentation, and secure access service edge concepts, with the ability to make vendor-agnostic architectural decisions.
  • Multi-cloud security architecture experience. Hands-on design depth in at least one of AWS or Azure required; both preferred.
  • Comfortable across modern cloud-native network architectures, including transit gateways, hub-and-spoke patterns, mesh patterns, and service mesh implementations.
  • Demonstrated ability to lead security architecture reviews with cross-functional stakeholders, including engineering, business, and executive audiences.
  • Familiarity with security architecture frameworks such as SABSA, NIST CSF, or MITRE ATT&CK applied to architectural analysis.
  • Familiarity with AI and ML security architecture concepts such as LLM application security or AI agent boundary design is preferred.
  • Comfortable designing within enterprise architectural standards set in coordination with broader corporate IT. Effective at making strong design decisions where some constraints originate externally to the function.
  • Excellent problem-solving and troubleshooting skills. Effective communication and collaboration skills, with the ability to translate complex security architecture into engineering and business language. You treat colleagues with respect and have a desire for clean implementations.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on indeed.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:38 min

Using language models to self-detect and flag software vulnerabilities

Julian Totzek-Hallhuber Julian Totzek-Hallhuber · WWC Europe 2026

3:00 min

Connecting multi-cloud services for automated data preparation

Linda Mohamed · LIVE

2:53 min

Configuring dynamic proxy updates with Istio Pilot

Jan Mensch Jan Mensch · WWC Europe 2026

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

2:15 min

Avoiding lock-in across multi-cloud and autonomous setups

Wei Hu Wei Hu · WWC 2025

7:50 min

Prioritizing cybersecurity and zero trust in development

Ash Ryan Arnwine Ash Ryan Arnwine +3 · WWC 2024

Videos

See all

Related articles

See all