Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Cybersecurity Architect

Jacobs

Job ID: 40548Location: Krakow, All PL Regions, PolandCapabilities: Information TechnologyOffice Setup: HybridCompany: JacobsAt Jacobs, we're challenging today to reinvent tomorrow by solving the world's most critical problems for thriving cities, resilient environments, mission-critical outcomes, operational advancement, scientific discovery and cutting-edge manufacturing, turning abstract ideas into realities that transform the world for good. Your impact We are an international engineering company providing services in the field of technical consulting, design, and investment project management. Global Business Services center located in Krakow provide global support for our line of business and corporate teams in the following areas:FinanceAccountingHRITProcurementPayrollProject ManagementGBS centralizes some of the processes across Jacobs and focuses on process excellence while also advancing the transformation initiative through additional work migration.The Cybersecurity Architect is responsible for designing, governing, and continuously improving enterprise security architecture across infrastructure, applications, data, and cloud domains. This role bridges strategy and execution, ensuring security controls are risk-based, scalable, compliant, and aligned with business objectives. The architect acts as a trusted advisor to engineering, IT, compliance, and leadership, translating security requirements into practical, implementable architectures.Key Responsibilities:Define and maintain enterprise security architecture standards and reference architectures.Design secure solutions across on-prem and cloud infrastructure, SaaS and custom applications, identity, access, and privileged access, data protection and encryption.Translate regulatory and contractual requirements into technical controls, including ISO/IEC 27001Define minimum security baselines for: endpoints and servers, virtual machines and containers, cloud workloads and platforms.Review software packages for vulnerabilities and cybersecurity compliance.Perform structured third-party software reviews.Define and enforce Secure Software Development Lifecycle (SSDLC) standards across engineering teams, integrating security gates into CI/CD pipelines (e.g., Azure DevOps, GitHub Actions).Oversee threat modeling practices (e.g., STRIDE, PASTA) for new and existing applications, ensuring risks are identified and mitigated prior to production deployment.Govern use of SAST, DAST, SCA, and IAST tooling; evaluate findings and drive remediation prioritization in collaboration with engineering leads.Establish API security standards including OAuth 2.0/OIDC flows, API gateway policies, and secrets management patterns for both internal and external-facing services.Define container and Kubernetes security standards (image scanning, pod security policies, runtime protection) for containerized application workloads.Architect secure usage of public cloud (IaaS, PaaS), SaaS platforms and low-code tools, with primary focus on Microsoft Azure environments.Define guardrails for: network segmentation, logging and monitoring, identity federation and conditional access, with deep expertise in Azure Active Directory (Entra ID), Conditional Access policies, and Privileged Identity Management (PIM).Ensure shared-responsibility boundaries are understood and enforced.Design and govern Azure-native security controls including Microsoft Defender for Cloud, Azure Security Center, Azure Sentinel (SIEM/SOAR), Azure Policy, and Azure Key Vault.Act as a consultative partner to engineering and application teams, infrastructure and cloud teams, and procurement and vendor management.Produce and maintain architecture standards and patterns, reference diagrams, security decision records. Here's what you'll need Bachelor’s degree in computer science, Information Security, or related field (or equivalent experience).7+ years of experience in cybersecurity engineering, architecture, or infrastructure roles.Strong understanding of network, identity and access management, security monitoring and incident response concepts.Significant experience with Application Security and Cloud Security is required, including hands-on expertise with SAST/DAST/SCA tooling, threat modeling, SSDLC integration, and secure API design.Deep proficiency with Microsoft Azure security services, including Microsoft Defender for Cloud, Azure Entra ID (formerly AAD), Azure Key Vault, Azure Firewall, and Azure Policy. Experience with Cloud Security Posture Management (CSPM) and Cloud Workload Protection Platforms (CWPP); familiarity with Zero Trust architecture principles applied in hybrid and cloud-native environments.Familiarity with securing AI/ML systems, including prompt injection risks, agentic AI workflows, LLM access controls, and applying the OWASP LLM Top 10 framework.We offer:Rewarding employment - full-time employment with a salary that matches your qualificationsHybrid work model - enjoy the flexibility of working from home, with just several office days per monthFlexible hours - start your day anytime between 7:30 and 10:00 AMShort Fridays - we work 6h on FridayComprehensive benefits, including Lux Med medical care, psychological support, life insurance, My Benefit cafeteria system, Multisport card co-financing, and a car/bike park sharing systemCo-financed holidays - enjoy "Wczasy pod Gruszą" for a well-deserved breakGlobal projects - engage in exciting international projectsInclusive networks - join our diverse employee networks like Women's Network, OneWorld, PRISM, Careers Network, Green Team, SpeakUp, Collectively, and moreContinuous learning - participate in our Graduate Development Program, Learners’ Community, and self-learning platformsWe know that if we are inclusive, we’re more connected, and if we are diverse, we’re more creative. We accept people for who they are. Find out more about life at Jacobs. As a Disability Confident employer, we will interview all disabled applicants who meet the criteria for a vacancy. If you require further support or reasonable adjustments with regards to the recruitment process (for example, you require the application form in a different format), please contact the team View email address on click.appcast.io#LI-MP3Your application experience is important to us, and we’re keen to adapt to make every interaction even better. If you require further support or reasonable adjustments with regards to the recruitment process (for example, you require the application form in a different format), please contact the team via Careers Support. Locations CityStateCountryKrakowAll PL RegionsPoland

Vacancy posted 3 days ago
Similar jobs that could be interesting for youBased on the Cybersecurity Architect in Krakow, Shawano County, WI vacancy
  • Job ID: 42495Location: Krakow, All PL Regions, PolandCapabilities: Architecture and InteriorsOffice Setup: Office/OnsiteCompany: JacobsAt Jacobs, we're challenging today to reinvent tomorrow by solving the world's most critical problems for thriving cities, resilient environments...
    Suggested
    Full time
    Work at office
    Local area
    Monday to Friday

    Jacobs

    Krakow, Shawano County, WI
    4 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Cybersecurity Architect. Be the first to apply!