CrawlJobs Logo

Cra Lead – Secure Software Development

India, Hyderabad · Job Posted June 03, 2026
Apply Position
Job Link Share

Job Responsibility

  • Execute the vision, strategy, and operating model for a CRA-aligned secure development and certification practice
  • Build and lead a high-performing team across secure development, compliance testing, and DevSecOps
  • Collaborate with product, legal, and security teams to interpret CRA requirements and embed them into engineering workflows
  • Establish secure-by-design principles across diverse technology stacks (e.g., web, mobile, embedded, cloud-native, edge)
  • Drive adoption of secure SDLC practices including threat modeling, secure architecture reviews, and secure coding standards
  • Ensure integration of security controls across heterogeneous environments and third-party components
  • Operationalize CRA-aligned testing and documentation processes across all software delivery pipelines
  • Lead the implementation of automated compliance checks, SBOM generation, and vulnerability management
  • Ensure traceability, audit readiness, and conformity assessment support for CRA and related regulations (e.g., NIS2, ISO 27001)
  • Implement a technology-agnostic toolchain for secure development, testing, and compliance automation
  • Integrate security and compliance tooling into CI/CD pipelines across multiple platforms and languages
  • Promote reuse of security patterns, templates, and automation assets across teams
  • Act as the technical authority on CRA compliance for internal teams, partners, and clients
  • Support pre-sales, solutioning, and proposal development for CRA-related services
  • Represent the practice in regulatory, industry, and standards forums

Requirements

  • 7-10 years of experience in software engineering, cybersecurity, or compliance, with at least 2 years in a lead/senior role
  • Proven experience in secure software development across multiple platforms (e.g., cloud, mobile, embedded, edge)
  • Good understanding of cybersecurity regulations including CRA, NIS2, and global standards
  • Hands-on experience with secure SDLC, DevSecOps, and software composition analysis (SCA) tools
  • Familiarity with SBOM standards (e.g., SPDX, CycloneDX) and vulnerability disclosure processes
  • Excellent communication, leadership, and stakeholder management skills

Nice to have

  • Bachelor’s or Master’s degree in Computer Science, Cybersecurity, or related field
  • Experience working in regulated industries (e.g., MedTech, Industrial, Automotive, Fintech)
  • Exposure to open-source governance, third-party risk management, and secure supply chain practices

Looking for more opportunities?

Search for other job offers that match your skills and interests.

Similar Jobs for

Cra Lead – Secure Software Development

8 matching positions

New

CRA Practice Lead – Secure Software Development & Certification

We are seeking a CRA Practice Lead to establish and scale a cross-platform, cros...
Location
Location
India , Remote
Salary
Salary:
Not provided
Codvo AI
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 10+ years of experience in software engineering, cybersecurity, or compliance, with at least 3 years in a leadership role
  • Proven experience in secure software development across multiple platforms (e.g., cloud, mobile, embedded, edge)
  • Strong understanding of cybersecurity regulations including CRA, NIS2, and global standards (e.g., ISO/IEC 27001, ENISA guidelines)
  • Hands-on experience with secure SDLC, DevSecOps, and software composition analysis (SCA) tools
  • Familiarity with SBOM standards (e.g., SPDX, CycloneDX) and vulnerability disclosure processes
  • Excellent communication, leadership, and stakeholder management skills
Job Responsibility
Job Responsibility
  • Define the vision, strategy, and operating model for a CRA-aligned secure development and certification practice
  • Build and lead a high-performing team across secure development, compliance testing, and DevSecOps
  • Collaborate with product, legal, and security teams to interpret CRA requirements and embed them into engineering workflows
  • Establish secure-by-design principles across diverse technology stacks (e.g., web, mobile, embedded, cloud-native, edge)
  • Drive adoption of secure SDLC practices including threat modeling, secure architecture reviews, and secure coding standards
  • Ensure integration of security controls across heterogeneous environments and third-party components
  • Operationalize CRA-aligned testing and documentation processes across all software delivery pipelines
  • Lead the implementation of automated compliance checks, SBOM generation, and vulnerability management
  • Ensure traceability, audit readiness, and conformity assessment support for CRA and related regulations (e.g., NIS2, ISO 27001)
  • Define and implement a technology-agnostic toolchain for secure development, testing, and compliance automation
What we offer
What we offer
  • Lead a pioneering practice at the intersection of cybersecurity, compliance, and software engineering
  • Work on high-impact projects across industries and platforms
  • Collaborate with a world-class team across AI, Edge, Cloud, and IoT domains
  • Be part of a mission to build resilient, compliant, and trustworthy digital systems
  • Fulltime
Read More
Arrow Right

Software Security & Assurance Engineer

As our first Software Assurance Engineer, you are the hands-on architect of our ...
Location
Location
Germany , Ottobrunn
Salary
Salary:
Not provided
isaraerospace.com Logo
Isar Aerospace
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 5+ years of hands-on experience in a technical role that blends Software Development, Quality Assurance, or Application/Product Security
  • Proven track record of building and implementing a secure SDLC
  • Hands-on experience selecting, deploying, and integrating AppSec tools (SAST, DAST, SCA) into a modern CI/CD pipeline (e.g., GitLab CI, Jenkins)
  • Demonstrable experience in designing, building, and managing automated QA testing frameworks (e.g., Selenium, Playwright, pytest, Robot Framework)
  • Proficiency in at least one programming language (like Python, Go, C++, or C#) and extensive scripting experience
  • Fluent and professional communication skills in English are mandatory
  • Proficiency in German is a significant plus
Job Responsibility
Job Responsibility
  • Architect our Secure SDLC: Design, implement, and operate our technical Secure Software Development Lifecycle (SSDLC) framework
  • Build the DevSecOps Pipeline: Lead the selection, implementation, and integration of our Application Security (AppSec) toolchain (SAST, DAST, SCA)
  • Build the Quality Framework: Architect, build, and maintain the frameworks for automated functional and regression testing
  • Manage Software Vulnerabilities: Lead the technical vulnerability management process for all in-house and third-party code
  • Drive Secure Coding Practices: Serve as the 'Security Champion' within engineering, providing expert consultation, training, and documentation
  • Support Product Security Compliance (CRA): Act as the technical lead for our compliance with the EU Cyber Resilience Act (CRA)
What we offer
What we offer
  • Employee Participation Program: Share in our success through our virtual company share program
  • 30 days of vacation
  • Company pension plan: Secure your future with our company pension plan, featuring a 20% employer contribution after the probation period
  • Subsidised lunch: Stay energised with delicious, subsidised lunches every day
  • Public transport ticket: Commute with ease using a fully financed Deutschlandticket
  • Sport Clubs membership: Stay fit with our sponsored sports club memberships (EGYM Wellpass)
  • Individual learning allowance: Grow your skills with an individual learning budget granted after the probation period
  • Childcare allowance: Receive a childcare allowance for your non-school-age children
Read More
Arrow Right

Senior Product Manager - CoreAI

Microsoft’s mission is to empower every person and every organization on the pla...
Location
Location
United States , Redmond
Salary
Salary:
119800.00 - 234700.00 USD / Year
https://www.microsoft.com/ Logo
Microsoft Corporation
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor's Degree AND 5+ years experience in product/service/program management or software development OR equivalent experience
  • Ability to meet Microsoft, customer and/or government security screening requirements are required for this role
  • Microsoft Cloud Background Check: This position will be required to pass the Microsoft Cloud background check upon hire/transfer and every two years thereafter
  • 4+ years of product management experience in security, compliance, or developer tooling domains
  • Domain knowledge of software supply chain security, including risks associated with open source package consumption
  • Hands‑on experience with AI models applied to security risk detection and remediation
  • Understanding of DevOps lifecycle and modern engineering practices
  • Track record of delivering complex, cross‑company initiatives with measurable impact
  • Communication and collaboration skills, with the ability to influence senior stakeholders across engineering and compliance
  • Experience of using and managing security aspects of MCP servers
Job Responsibility
Job Responsibility
  • Drive product vision and strategy for software supply chain security within 1ES, specifically for securing AI agents, MCP servers, and ensuring alignment with Microsoft’s compliance and security goals
  • Lead AI‑assisted risk remediation across Microsoft repositories, defining requirements and guiding engineering execution
  • Develop deep insights into open source consumption patterns, specifically across NuGet, NPM, PyPI, Maven, Cargo, and Go ecosystems, to inform risk mitigation strategies
  • Collaborate across engineering, security, compliance, and legal teams to ensure solutions meet both technical and regulatory requirements
  • Define success metrics and outcomes, track progress, and iterate based on data‑driven insights
  • Champion secure DevOps practices, integrating supply chain security into the full lifecycle of software development
  • Fulltime
Read More
Arrow Right
New

Application Security Engineer (Code & Refactoring Specialist)

We are hiring an Application Security Engineer to work hands-on with client and ...
Location
Location
India , Hyderabad
Salary
Salary:
Not provided
Codvo AI
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 5–8 years in Application Security + Software Development
  • Strong coding experience in C/C++/.NET/Java/Python
  • Hands-on with tools like SonarQube, Semgrep, Snyk, Checkov, Trivy, GitHub Advanced Security
  • Knowledge of secure coding standards (OWASP, MISRA, CERT)
  • Familiarity with IEC 62443, SOC 2, ISO 27001 requirements in industrial contexts
Job Responsibility
Job Responsibility
  • Conduct static and dynamic code reviews (C/C++, .NET, Java, Python) for CRA/SOC2/ISO compliance gaps
  • Run and tune SAST/SCA/Secrets/IaC scanners to identify vulnerabilities with low false positives
  • Build secure code remediation patterns (crypto, auth, logging, PII handling)
  • Collaborate with client developers to merge secure fixes quickly and efficiently
  • Work with the CRA Practice Lead to maintain compliance-aligned secure coding playbooks
  • Support generation of compliance evidence (audit-ready artifacts)
  • Fulltime
Read More
Arrow Right

Product & Information Security Architect

We are looking for a motivated Product & Information Security Architect to stren...
Location
Location
Korea, Republic Of , Seoul
Salary
Salary:
Not provided
ericsson.com Logo
Ericsson
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor's degree or higher in Computer Science, Information Technology, Information Security, or a related field, or equivalent practical experience in software/IT and security
  • 10+ years of experience in a security-related or software/IT engineering role, with practical exposure to product and application security, such as: Handling security requirements from customers and partners
  • Supporting security design, review, or validation for software products or platforms
  • Contributing to Enterprise information security and cyber security
  • Good understanding of network, system, and application security fundamentals including: Vulnerability types and mitigation approaches
  • Network configuration and related security risks
  • Encryption, key management, and secure protocol usage
  • Good understanding of major security and privacy regulations (e.g., GDPR, CCPA, HIPAA or similar) and how they influence product and information security
  • Intermediate or higher level of English, both written and spoken
Job Responsibility
Job Responsibility
  • Own and improve product security across the lifecycle (design, implementation, testing, and deployment including security standards, directions)
  • Design security architecture to address increasing security threats and global regulations and compliance requirements
  • Assess and advise on network architecture risks, encryption choices, and secure protocol selection in collaboration with development teams
  • Perform and support security risk assessments, threat modelling, and security reviews for products
  • Support vulnerability management: identify, analyze, and track remediation of vulnerabilities, follow up on verification and closure
  • Understand security requirements from external partners and customers, translate them into concrete actions, and help prioritize them based on risk and business impact
  • Lead and coordinate Cyber Resilience Act (CRA) readiness and compliance activities for relevant products and services
  • Contribute to and improve information security policies, standards, and guidelines collaborating with Business Area’s stakeholders to drive information security adaptation
  • Lead type approval activities for relevant products
  • Fulltime
Read More
Arrow Right

Mountain Planning Manager

The Mountain Planning Manager will oversee the planning and design of capital im...
Location
Location
Canada , Whistler
Salary
Salary:
61568.00 - 86673.00 CAD / Year
vailresorts.com Logo
Vail Resorts
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Equivalent to a bachelor’s degree from an accredited college or university with major course work in planning or landscape architecture
  • Ability to manage multiple tasks with changing priorities, and present information in a clear and concise manner
  • Ability to establish and maintain effective working relationships with all company departments, WB employees, and management at all levels in the organization
  • Ability to translate technical ideas and terminology into understandable terms to company leaders
  • Ability and experience using Adobe and AutoCAD software
  • Strong communication skills
  • Project management and budgeting
  • BC Driver’s License
Job Responsibility
Job Responsibility
  • Ensure that support from First Nations is a key component of every planning project conducted on Crown land
  • Secure entitlements and approvals of resort improvements through the Mountain Resorts Branch (MRB) of the British Columbia Ministry of Tourism, Arts, Culture and Sport, BC Provincial Parks, Resort Municipality of Whistler (RMOW), and other jurisdictions
  • Serve as the critical liaison between regulatory agencies and the resort
  • Lead WB teams throughout the company’s capital planning process
  • Coordinate resort improvements with 3rd party contractors and Vail Resorts construction project managers
  • Work with the WB team and consultants to deliver project plans that meet the needs of the project and prepare internal and external teams for successful project implementation
  • Manage the budgets, schedules, and deliverables of consultants such as planners, architects, and engineers
  • Lead resort master plan amendments and approval processes in compliance with the Master Development Agreements between the province and the resort
  • Ensure that MRB land tenures are secured in the Development Area for all new and existing resort infrastructure such as lifts and utilities
  • Support WB’s efforts in maintaining compliance with environmental regulations and working in sensitive habitats when planning and constructing resort improvements
What we offer
What we offer
  • Ski/Mountain Perks! Free passes for employees, employee discounted lift tickets for friends and family AND free ski lessons
  • MORE employee discounts on lodging, food, gear, and mountain shuttles
  • RSP Options (after 12 months or 2000 cumulative hours of service)
  • Employee Assistance Program
  • Excellent training and professional development
  • Referral Program
  • Health Insurance
  • Medical Insurance, Dental Insurance, and Vision Insurance plans (for eligible seasonal employees after working 500 hours)
  • Free ski passes for dependents
  • Critical Illness and Accident plans
  • Fulltime
Read More
Arrow Right
New

Pharmacy Intern - Grad

You’ve invested a lot of time and energy in your education. Now you want the cha...
Location
Location
United States , Kent
Salary
Salary:
19.75 - 42.00 USD / Hour
https://www.cvshealth.com/ Logo
CVS Health
Expiration Date
July 10, 2026
Flip Icon
Requirements
Requirements
  • PharmD graduate of a U.S. accredited program prior to beginning the Post-Graduate Training Program at CVS Health
  • Ability to obtain required pharmacist licensure within the required timeframe, per state guidelines. Failure to obtain required Pharmacist licensure within 120 days of graduation will result in separation of employment.
  • Must possess, or be in the process of obtaining, valid intern and/or technician licensure as required
Job Responsibility
Job Responsibility
  • Living our purpose by following all company SOPs at each workstation to help our Pharmacists and Technicians manage and improve patient health
  • Following pharmacy workflow procedures at each pharmacy workstation (i.e., production, pick-up, drive-thru, and drop-off) for safe and accurate prescription fulfillment
  • Contributing to positive patient experiences by showing empathy and genuine care: creating heartfelt and personalized moments while serving patients at pick-up, drive-thru, and over the phone
  • keeping patients healthy by offering immunizations and other services at the register and over the phone
  • and demonstrating compassionate care by solving or escalating patient problems
  • Offering to counsel, fielding medical questions, and soliciting information on a patient’s medical history to provide optimal care, when appropriate under the direct supervision of a licensed pharmacist
  • Taking telephonic prescriptions from the prescriber, and calling the prescriber to clarify prescriptions or facilitate medication changes, where allowed by state regulation
  • Maintaining the highest level of self-awareness and providing in-the-moment coaching, training, and mentoring to pharmacy team members while sharing best practices
  • Completing basic inventory activities, as permitted by law, and as directed by the pharmacy leadership team, such as accurately putting away medication deliveries and completing cycle counts, returns-to-stocks, waiting bin inventories, etc.
  • Contributing to a high-performing team, embracing a growth mindset, and being receptive to feedback
What we offer
What we offer
  • dental
  • vision
  • wellness resources
  • employee discounts
  • access to certain voluntary benefits
  • other programs
  • Parttime
Read More
Arrow Right
New

Pharmacy Intern - Grad

You’ve invested a lot of time and energy in your education. Now you want the cha...
Location
Location
United States , Fayetteville
Salary
Salary:
Not provided
https://www.cvshealth.com/ Logo
CVS Health
Expiration Date
July 10, 2026
Flip Icon
Requirements
Requirements
  • PharmD graduate of a U.S. accredited program prior to beginning the Post-Graduate Training Program at CVS Health
  • Ability to obtain required pharmacist licensure within the required timeframe, per state guidelines. Failure to obtain required Pharmacist licensure within 120 days of graduation will result in separation of employment.
  • Must possess, or be in the process of obtaining, valid intern and/or technician licensure as required
Job Responsibility
Job Responsibility
  • Living our purpose by following all company SOPs at each workstation to help our Pharmacists and Technicians manage and improve patient health
  • Following pharmacy workflow procedures at each pharmacy workstation (i.e., production, pick-up, drive-thru, and drop-off) for safe and accurate prescription fulfillment
  • Contributing to positive patient experiences by showing empathy and genuine care: creating heartfelt and personalized moments while serving patients at pick-up, drive-thru, and over the phone
  • keeping patients healthy by offering immunizations and other services at the register and over the phone
  • and demonstrating compassionate care by solving or escalating patient problems
  • Offering to counsel, fielding medical questions, and soliciting information on a patient’s medical history to provide optimal care, when appropriate under the direct supervision of a licensed pharmacist
  • Taking telephonic prescriptions from the prescriber, and calling the prescriber to clarify prescriptions or facilitate medication changes, where allowed by state regulation
  • Maintaining the highest level of self-awareness and providing in-the-moment coaching, training, and mentoring to pharmacy team members while sharing best practices
  • Completing basic inventory activities, as permitted by law, and as directed by the pharmacy leadership team, such as accurately putting away medication deliveries and completing cycle counts, returns-to-stocks, waiting bin inventories, etc.
  • Contributing to a high-performing team, embracing a growth mindset, and being receptive to feedback
What we offer
What we offer
  • dental
  • vision
  • wellness resources
  • employee discounts
  • access to certain voluntary benefits
  • Parttime
Read More
Arrow Right