CrawlJobs Logo

Secure by Design Expert

vodafone.com Logo

Vodafone

Location Icon

Location:
Romania , Iasi

Category Icon

Job Type Icon

Contract Type:
Not provided

Salary Icon

Salary:

Not provided

Job Description:

We are seeking a Secure by Design Expert to join our Global Cyber Security UK team. In this role, you will conduct Secure by Design assessments and provide guidance to projects and business-as-usual activities across Vodafone UK’s Consumer, Business, and Internal functions. You will ensure secure delivery of products, services, and solutions, working closely with project teams to align with global and local security standards. This position requires strong technical leadership and collaboration with Cyber Security Champions and specialists, embedding security practices into IT & Digital processes such as Agile, DevSecOps, and CI/CD.

Job Responsibility:

  • Perform Secure by Design assessments and provide consultancy to projects and business areas
  • Embed effective security practices into IT & Digital processes
  • Deliver cyber security guidance, design input, and review/approval of connectivity across Vodafone networks
  • Specify and oversee security testing, ensuring vulnerabilities are remediated
  • Identify and manage cyber security risks, ensuring compliance with Vodafone policies and UK Telecommunications Security Act
  • Influence stakeholders and maintain strong relationships across business functions
  • Provide technical leadership and task direction to Secure by Design Specialists and Cyber Security Champions

Requirements:

  • Degree in telecommunications, computer science, or equivalent
  • Strong understanding of security architecture, risk management principles, and data privacy legislation
  • Hands-on experience with IT & Digital technologies including application security, mobile apps, cloud infrastructure, and network security
  • Ability to scope penetration tests and guide remediation of vulnerabilities
  • Excellent communication skills to explain complex security requirements in simple terms
  • Knowledge of security standards such as ISO27001, TSR, and PCI-DSS is desirable
  • Technical certifications (e.g., CISSP, SCCP) are an advantage

Nice to have:

  • Knowledge of security standards such as ISO27001, TSR, and PCI-DSS
  • Technical certifications (e.g., CISSP, SCCP)
What we offer:
  • Hybrid way of working: 2 days per week/ 8 per month
  • Medical and dental services
  • Life and hospitalization insurance
  • Dedicated employee phone subscription
  • Take control of your benefits and choose any of the below options: MEAL TICKETS/ PRIVATE PENSION/VACATION VOUCHERS/ CULTURAL VOUCHERS within the budget
  • Special discounts for gyms and retailers
  • Annual Company Bonus
  • Ongoing Education – we continuously invest in you to ensure you have everything needed to excel on the job and enhance your skills
  • You get to work with tried and trusted web-technology
  • We let you write your own story by planning vacations: go for a trip, experience new things, have fun and enjoy your 23 days off
  • Special Paternal Program - 4 months of paid paternity leave

Additional Information:

Job Posted:
January 21, 2026

Employment Type:
Fulltime
Work Type:
Hybrid work
Job Link Share:

Looking for more opportunities? Search for other job offers that match your skills and interests.

Briefcase Icon

Similar Jobs for Secure by Design Expert

Global IT Security Expert - IAM

Position of broad specialization, with main area focusing on Identity and Access...
Location
Location
India , Pune
Salary
Salary:
Not provided
https://www.randstad.com Logo
Randstad
Expiration Date
January 26, 2026
Flip Icon
Requirements
Requirements
  • Master’s degree in IT-related field or Security
  • English level B2
  • 5–10 years of relevant experience
  • Understanding concepts and hands-on experience for Endpoint & Infrastructure security, Cloud security (Azure, MS365 stack), DLP, CASB, SIEM, PAM, VM, Security Awareness (KnowBe4)
  • IT Security Certificates (i.e. CEH, CISSP, SCCP, CCSP, CompTia Security+, OCSP, etc.)
  • Knowledge in area of ISO27001, NIST, etc
  • Ability to strategically align global security programs with long-term enterprise risk and business growth objectives
  • Demonstrated success in leading and scaling international security teams, influencing executive and cross-functional stakeholders
  • Evaluating and mitigating multi-dimensional security risks, including geopolitical, supply chain, and emerging threat vectors
  • Deep expertise in designing resilient security architectures, integrating threat intelligence, adversary simulation, and automated incident response
Job Responsibility
Job Responsibility
  • Design, implementation and supervision of IAM system, and ensuring compliance with security policies and global best practices
  • Analyzing and handling access requests, as well as working with various IAM related products such as Single Sign-On (SSO), Multi-Factor Authentication (MFA), and Privileged Access Management (PAM)
  • Hands-on experience with one or more (preferred) IAM systems like OneIdentity, Sailpoint, CyberArk, Savyint
  • Design and govern enterprise-wide security architecture integrating cutting-edge technologies (e.g., zero trust, AI-driven threat detection) to proactively mitigate risks across hybrid environments
  • Lead global security transformation programs, aligning with executive leadership and regulatory bodies to ensure strategic resilience and compliance
  • Drive threat intelligence operations, including predictive analytics, adversary simulation, and coordination to anticipate and neutralize emerging threats
  • Establish and evolve governance frameworks for security and business continuity, embedding risk-based decision-making into enterprise processes
  • Oversee incident response orchestration, ensuring rapid containment, root cause analysis, and executive-level reporting for high-impact events
  • Mentor and develop security thinking across regional and global IT teams
  • Continuously assess and optimize security tooling and platforms, including local and cloud-native controls, ensuring scalability and performance
What we offer
What we offer
  • Being part of a fast-growing, dynamic company, recognized as one of the foremost global packaging manufacturers
  • Great professional growth opportunities
  • Opportunity to work with large scope global projects
  • Fast-paced, challenging environment
  • Collaborative culture with strong quality and innovation focus
  • Hybrid working model 3 days WFO & 2 days remote
  • Fulltime
!
Read More
Arrow Right

Senior Backend Engineer - Container Scanning & Security

Endor Labs is on a mission to enhance developer productivity and accelerate open...
Location
Location
India , Bengaluru
Salary
Salary:
Not provided
https://www.endorlabs.com Logo
Endor Labs
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Expert knowledge of container technologies and container security
  • Bachelor's degree in engineering with at least 5 years of experience in building scalable platforms for product/SaaS companies
  • Previous experience building security tooling
  • At least 3 years of experience in Golang programming with a focus on microservices/distributed architecture
  • Practical experience designing APIs with one or more frameworks (gRPC [preferred], ReST, GraphQL, Thrift, etc.)
  • Ability to build and design technical solutions from scratch
  • Able to work in a fast-paced environment with evolving requirements
  • Ability to solve problems creatively and independently when in uncharted or unfamiliar territory
  • Practical experience in troubleshooting distributed systems and the ability to identify root causes
  • Comfortable with performing and receiving code reviews, providing constructive feedback, and maintaining code quality
Job Responsibility
Job Responsibility
  • Design, develop, and maintain a container security scanning solution that generates Software Bill of Materials (SBOM) and identifies vulnerabilities
  • Implement container image analysis to extract dependencies from package managers
  • Work on container signing and provenance tracking
  • Be part of dependency resolution development team working on a distributed, microservices-based system
  • Build and own features end-to-end including unit and integration tests
  • Have the autonomy and the responsibility to design and implement quality features that will be used by customers
  • Use best practices of observability to ensure that the product and the platform have the best reliability and availability for our customers
  • Generate comprehensive SBOMs for container images
  • Fulltime
Read More
Arrow Right

Digital Web & Mobile Security Senior Analyst

The Digital Web & Mobile Security Senior Analyst is an intermediate level positi...
Location
Location
India , Chennai; Pune
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 5+ years of experience as application security consultant / security expert
  • SME level knowledge of web application vulnerabilities and web application business logic flaws and threats
  • In depth and hands-on understanding and application architectures and technology (including web applications, mobile technology, web 2.0 technology, identity and access management)
  • Demonstrable experience with mobile application security, HTML5, Web Services/API assessment, identity management will be highly regarded
  • Thorough understanding of industry and corporate technology standards for Information Security
  • Expert in latest Internet and Mobile technology with strong architectural and design knowledge
  • Detailed familiarity with security hacking tools and techniques
  • Excellent written and oral English communication skills
Job Responsibility
Job Responsibility
  • Prevent and drive to clear the outstanding safety and soundness items by assessing and predicting the potential risk items before it becomes an issue / escalation
  • Assess priorities across multiple safety and soundness items and drive those critical ones similar like driving high priority production items and never settle until it is closed
  • Drive our outstanding safety and soundness items across all teams to closure and turn it around to become prevention instead of reacting to issues
  • Operate independently including the ability to provide executive summary for safety and soundness issues for executive consumption without a need for a continuous review
  • Review existing security architectures, identify design gaps, and recommend security enhancements
  • Act as an advocate for the application security architecture. Communicates and educates on the IS Architecture and roadmap
  • Develop security design pattern by identifying broader and emerging IS issues
  • Provides architecture consulting across the bank to project teams and other architects
  • Prioritize architecture deliverables, and establish short-term, mid-term and long-range architecture plans. Facilitates the migration to the reference architecture in a way that enables and supports the strategic plan
  • Maintains understanding of business issues, operating procedures and priorities
  • Fulltime
Read More
Arrow Right

Senior Security Architect

Rackspace Technology is looking for a Senior Security Architect to support 'Clou...
Location
Location
Egypt
Salary
Salary:
Not provided
rackspace.com Logo
Rackspace
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Proven track record in security consulting
  • Experience designing and securing Landing Zones (LZs) in cloud environments
  • Experience designing secure platforms on major hyperscalers (AWS, Azure, or GCP - GCP preferred)
  • Demonstrable experience designing secure cloud-native systems
  • Demonstrable experience in relevant legislation, industry regulations and standards (ISR, EU GDPR, HIPAA, ISO27001, ISO 22301, ISO/IEC 20000-1, ISO 22301, NCEMA, NIST CSF, PCI DSS, Cloud Security Alliance CCM, CIS, OWASP, Cyber Essentials)
  • In-depth knowledge of Well-architected frameworks and best practices of major cloud providers
  • Ability to lead engagements and take ownership for successful delivery
  • Specialist cloud security architectural knowledge in: Account governance, Identity and Access Management (IAM), Asset management and data protection, Infrastructure and platform security, Application security including threat modelling and secure CI/CD, Change management practice and detection capabilities, Boundary defence, Cloud Logging and Monitoring, Continues vulnerability and patch management systems, Incident response and threat mitigation, Cloud backup/recovery and disaster recovery (DR)
  • Client-facing consultancy experience within large enterprises
  • Ability to identify and plan to resolve technical and organizational challenges
Job Responsibility
Job Responsibility
  • Advise and guide customers on cloud security journey as Subject Matter Expert (SME)
  • Engage with customers to assess cloud security posture
  • Ensure subsequent cloud design and build is appropriately secured
  • Provide guidance on cloud security roadmap
  • Assist on defining right-size cloud security controls
  • Liaise with customer's architects and engineers
  • Advise, design and deliver innovative cloud security Proof of Concepts
  • Evolve existing Rackspace security services
  • Implement new services under 'Cloud Security Service' banner
  • Establish best-practices for consultancy
  • Fulltime
Read More
Arrow Right

Senior Cybersecurity Engineer

As a Senior Cybersecurity Engineer, you will be at the forefront of driving secu...
Location
Location
United States , Bellevue; Overland Park; Frisco; Herndon
Salary
Salary:
103400.00 - 186400.00 USD / Year
https://www.t-mobile.com Logo
T-Mobile
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor's Degree Computer Science or Information Technology or equivalent work experience
  • 4-7 years Experience in info security technology or related field
  • Experience with incident handling for Security breaches
  • Expert in security subject areas
  • 2-4 years Technical Project Management
  • Experience with high level design architecture, security technologies, Networking, web services and SOA
  • Understanding of encryption, obfuscation, tokenization technologies
  • Medium to advance knowledge of Scripting tools (Python/Perl/Shell/HTML/PHP)
  • Knowledge of federal & compliance regulations e.g. SOX, PCI & CPNI
  • Familiarity with load balancers (ex – A10, F5), firewalls (ex – CheckPoint), Venafi, MDM (ex - Mobile Iron), Cloud (ex - AWS, Azure), Malware Protection (ex -FireEye), Advanced Persistent Threats (ex - Damballa), Privileged Accounts (ex – CyberArk), SIEM (ex – ArcSight), Log & Event (ex – Splunk), Intrusion IDS/IPS (ex – Symantec) , Cloud Platform (ex – PCF, Docker), Scanning (ex – Qualys), AppSec (ex - Veracode)
Job Responsibility
Job Responsibility
  • Leads security, compliance, and risk assessments on projects throughout project lifecycle
  • Improves process efficiency by creating and implementing creative and sustainable changes to existing deployment methodologies
  • Leads the identification of security needs & recommends plans/resolutions
  • Implements, tests & monitors info security improvements
  • Maintains transparency inside & outside of information security at the People management level
  • Communicate with groups such as application support, engineering ops, finance, privacy, risk management, etc
  • Leads information security policy lifecycle throughout, including intake, creation, review, approval, implementation, publishing, communication & maintenance
  • Implements security projects driven by groups both internal and external to info security
  • Mentors peers and junior team members in security technologies, enterprise solution design and facilitation and effective customer interaction
  • Experience with implementation of various threat modeling approaches pertaining to one or more of the following STRIDE, PASTA, TRIKE, ATTACK TREE, DREAD, KILL CHAIN, CAPEC, Mobile Application threat model, Cyber Threat Tree, and data flow diagram
What we offer
What we offer
  • Competitive base salary and compensation package
  • Annual stock grant
  • Employee stock purchase plan
  • 401(k)
  • Access to free, year-round money coaches
  • Medical, dental and vision insurance
  • Flexible spending account
  • Paid time off
  • Up to 12 paid holidays
  • Paid parental and family leave
  • Fulltime
Read More
Arrow Right

Sales Engineering Director - West

We are seeking a skilled, experienced Sales Engineering Director to manage a div...
Location
Location
United States
Salary
Salary:
262000.00 - 328000.00 USD / Year
https://corelight.com/ Logo
Corelight
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Prior management experience
  • Expert written and oral communication skills
  • Expert presentation skills including technical material
  • Network design background and/or security software background preferred
  • Experience with network protocols, firewalls, and/or IDS/IPS is an advantage
  • Experience with Cloud and SaaS solutions
  • Excellent time management, multi-tasking, and prioritization skills
  • Strong interpersonal and organizational skills
  • 10+ years related industry experience
  • 6+ years pre-sales experience
Job Responsibility
Job Responsibility
  • Recruit and hire new sales engineers for the territory and provide them with training on how to deliver technical expertise through Sales presentations, Solution designs, Solution demonstrations, and Proof of Values
  • Manage the Sales Engineering team by setting objectives, measuring performance, and rewarding productivity within the SE team
  • Provide effective technical leadership in customer meetings by sharing security trends, competitive and product information
  • Fill in for absent SE's when necessary
  • Lead the employees to achieve the organization's expectations for productivity, quality, and goal accomplishment
  • Act as an escalation point for pre-sales technical issues from the field
  • Work with the sales teams to strategize on the best sales approach for the business
  • Maintain knowledge of the competitive landscape and share it with the team
  • New business development through strategic and consultative sales approach to deliver value-added business solutions
  • Fulltime
Read More
Arrow Right

Hipaa subject matter expert

The HIPAA Subject Matter Expert supports the Health and Human Services (HHS), Of...
Location
Location
United States
Salary
Salary:
125000.00 - 135000.00 USD / Year
chickasaw.com Logo
Chickasaw Nation Industries, Inc (CNI)
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Preference will be given to candidates with relevant industry certifications from CISSP, CISM, CIPP/CIPT/CIPT
  • Ten (10) years of relevant cybersecurity experience is preferred
  • Experience in auditing and generating audit reports is required
  • Fundamental knowledge of basic systems analysis
  • Knowledge of a broad range of relevant computer systems, applications, and/or related equipment
  • Knowledge of computer security procedures and protocol
  • Basic knowledge of advanced operating system, network, or application management tasks
  • Knowledge of current technological developments/trends in area of expertise
  • Knowledge of federal copyright laws as they pertain to the use of computer software
  • Ability to integrate emerging technologies and applications into current environment and to identify technical specifications to meet user needs including operating system and network or application configuration
Job Responsibility
Job Responsibility
  • Reviews security and privacy complaints, data breach notification and cybersecurity incident reports and other correspondence and evidence to determine whether complaints, self-reported breaches or breach notification reports indicate non-compliance with the HIPAA Security Rule
  • Reviews data provided by the healthcare organizations across the nation to assess the overall impact of security and privacy incidents
  • Evaluates and determines the technical sufficiency of submissions from HIPAA covered entities and business associates in response to data and documentation requests (i.e. Assessing reports related to security baselines, penetration tests, vulnerability assessments, and digital forensics)
  • Documents processes, standard operating procedures and system requirements
  • develops reports summarizing the analysis along with formulating recommendations for OCR to consider for future action
  • Develops written reports with technical security analyses, summaries, and recommendations for action, reports on root causes of problems, efficiency, and support needs
  • Provides expertise in the development and evaluation of health information privacy policies and technologies, specifically regarding protected health information
  • deidentified/re-identified health information
  • limited data sets
  • Provides subject matter expert analysis, evaluation, and recommendations based on national security standards (NIST), industry best practices from the International Organization for Standardization and implementation specifications of the HIPAA Security Rule
What we offer
What we offer
  • Medical
  • Dental
  • Vision
  • 401(k)
  • Family Planning/Fertility Assistance
  • STD/LTD/Basic Life/AD&D
  • Legal-Aid Program
  • Employee Assistance Program (EAP)
  • Paid Time Off (PTO) – (11) Federal Holidays
  • Training and Development Opportunities
  • Fulltime
Read More
Arrow Right

Cybersecurity Subject Matter Expert

We are seeking an experienced Cybersecurity Subject Matter Expert (SME) to join ...
Location
Location
Luxembourg , Leudelange
Salary
Salary:
Not provided
https://www.soprasteria.com Logo
Sopra Steria
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor's or Master's degree in Computer Science, Information Systems, or a related field
  • 5+ years of experience in Cybersecurity Architecture with focus on business continuity and large-scale enterprise environments
  • Proven experience with cloud-native security on Azure and AWS
  • Practical knowledge of Agile and SAFe methodologies and their application to architecture design
  • Familiarity with architecture frameworks such as TOGAF and SABSA
  • Strong problem-solving, analytical, and communication skills
  • Experience in public sector or similarly complex, regulated environments is highly desirable
Job Responsibility
Job Responsibility
  • Provide strategic cybersecurity guidance across infrastructure, cloud, applications, and data
  • Advise on architecture and design, embedding security into all IT and business initiatives
  • Lead risk assessments, security reviews, and mitigation strategies
  • Drive secure deployment of cloud and hybrid solutions (Azure, AWS, GCP) and data protection initiatives
  • Provide IAM expertise and promote zero-trust, least-privilege principles
  • Integrate security into DevOps processes (DevSecOps) and leverage automation (Python) for monitoring and incident response
  • Act as a trusted advisor and mentor, shaping security practices and building organizational capability
What we offer
What we offer
  • Access to Sopra Steria training and personal development academy
  • Leased company car or mobility budget
  • Company laptop and mobile phone
  • Private health insurance
  • Meal vouchers
  • Social security and pension scheme
  • Competitive salary
  • 26 days holiday
  • Fulltime
Read More
Arrow Right