Application Security Architect

Posted 5 Days Ago
Be an Early Applicant
4 Locations
Hybrid
32K-50K Annually
Mid level
Other • Security
The Role
Advise engineering, product, and business teams on application security throughout the software development lifecycle. Lead threat modeling, security requirements, architecture and code reviews, security testing, vulnerability remediation, risk assessments, and compliance support across cloud, mobile, embedded, and connected products. Translate regulatory and cybersecurity requirements into practical controls while promoting security-by-design and collaborating with stakeholders to improve product resilience.
Summary Generated by Built In

What you will do

At Johnson Controls, you'll help secure the technologies behind intelligent buildings, connected products, and smart cities. As an Application Security Architect, you'll partner with engineering, product, and business teams to embed security and privacy throughout the product lifecycle, shape security strategy, lead risk assessments, and drive continuous improvements that strengthen cybersecurity resilience and customer trust.

Working as a trusted security advisor, you'll guide teams on secure software development, threat modeling, security architecture, and security-by-design practices across cloud, mobile, embedded, and connected products. You'll lead key security activities including architecture reviews, security testing, vulnerability management, and compliance support while translating security requirements into practical solutions that help teams deliver secure, resilient products.

How you will do it

  • Act as a trusted security advisor throughout the software development lifecycle.

  • Guide development teams on secure coding, threat modeling, security architecture, and security-by-design principles.

  • Lead secure SDLC activities, including security requirements definition, architecture reviews, code reviews, security testing, and remediation planning.

  • Translate regulatory, customer, and cybersecurity requirements into practical security controls and development practices.

  • Collaborate with security champions, architects, engineers, and product leaders to balance security, usability, and business objectives.

  • Partner with teams across cloud, mobile, embedded, and connected product environments to address evolving security challenges.

  • Stay current with emerging threats, vulnerabilities, and industry best practices, sharing knowledge and recommendations across the organization.

What we look for

Required

  • Minimum 3 years in cybersecurity, governance, risk, compliance, product security, or a related security function.

  • Experience working with cybersecurity and compliance frameworks NIST 800-53 and also ISO 27001 or SOC 2.

  • Experience evaluating cybersecurity risks and implementing or recommending appropriate security controls.

  • Ability to translate security requirements into actionable technical guidance.

  • Strong stakeholder management skills, with the ability to build trusted relationships and establish credibility with customers, engineering teams, business leaders, and other key stakeholders.

Preferred

  • Bachelor's degree in Cybersecurity, Computer Science, Engineering, or a related technical discipline.

  • Professional cybersecurity certifications such as CISSP, GSEC, Security+, or equivalent.

  • Knowledge of compliance frameworks such as ISA/IEC 62443, GDPR, EU CRA, or similar.

  • Experience utilizing AI technologies and ensuring the secure design, implementation, and operation of AI capabilities within products.

  • Familiarity with Operational Technology (OT), industrial controls, building management systems, or IoT ecosystems.

Our salary and benefits

The initial basic salary for this position will be in the range of € 2,700 – € 4,200 per month, plus a 13th month salary applied after your first 6 months in the job. The final package will reflect your experience, skills, and qualifications relevant to the role. We are committed to fair, equitable, and gender-neutral pay practices.

  • At Johnson Controls, your work comes with benefits that support both your career and your wellbeing.

  • Meal vouchers fully covered by the company.

  • Flexible benefits budget with access to 3,500+ options, including a MultiSport card, medical and wellness services.

  • Extra savings through retail and lifestyle discounts (Benefit+).

  • Allowance for the private kindergarten or nursery to support your family.

  • Flexible working hours and home office days.

  • Allowance for language courses, professional development support, and wellbeing support.

  • On site benefits: massages, distribution of fruits, yoga, psychologist, health month, various events with supporting groups (volunteering activities, branding activities).

  • Seniority benefits - extra monthly financial allowance, medical care and support, wellbeing day.

  • Relocation support with housing allowance if moving to Slovakia

About Us

Johnson Controls, a global leader in thermal management, mission-critical building systems, energy efficiency, and decarbonization, helps customers use energy more productively, reduce carbon emissions, and operate with the precision and resilience required in rapidly expanding industries such as data centers, healthcare, pharmaceuticals, advanced manufacturing, and higher education.

For more than 140 years, Johnson Controls has delivered performance where it really matters. Backed by advanced technology, lifecycle services and an industry-leading field organization, we elevate customer performance, turn goals into real-world results and help move society forward.

We are committed to diversity and inclusion and believe that different perspectives make us stronger. By encouraging open dialogue and valuing individuality, we strive to be one of the most desirable places to work.

#LI-BB1

#LI-Hybrid

Skills Required

  • Minimum 3 years of experience in cybersecurity, governance, risk, compliance, product security, or a related security function
  • Experience with NIST 800-53 and ISO 27001 or SOC 2 frameworks
  • Experience evaluating cybersecurity risks and implementing or recommending appropriate security controls
  • Ability to translate security requirements into actionable technical guidance
  • Strong stakeholder management and relationship-building skills
  • Bachelor's degree in Cybersecurity, Computer Science, Engineering, or a related technical discipline
  • Professional cybersecurity certification such as CISSP, GSEC, Security+, or equivalent
  • Knowledge of ISA/IEC 62443, GDPR, EU CRA, or similar compliance frameworks
  • Experience securing AI technologies and capabilities
  • Familiarity with operational technology, industrial controls, building management systems, or IoT ecosystems

Johnson Controls Compensation & Benefits Highlights

The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Johnson Controls and has not been reviewed or approved by Johnson Controls.

  • Retirement Support Retirement support is positioned as a meaningful part of the package through employer 401(k) matching, repeatedly framed as a strong pillar of the overall rewards mix. The matching contribution is described with specific match levels in multiple places, reinforcing perceived value for long-term saving.
  • Leave & Time Off Breadth Time off is presented as comparatively robust, with multiple paid holiday categories, vacation time, and sick time described as generous or “amazing” in places. Paid time off breadth appears to be a consistent contributor to total rewards attractiveness beyond base pay.
  • Flexible Benefits Benefits are described as broad and customizable, spanning standard medical/dental/vision plus optional add-ons like pet insurance, identity protection, and legal support. Tuition reimbursement is repeatedly highlighted as a high-value option supporting professional development.

Johnson Controls Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Chennai
100,000 Employees
Year Founded: 1885

What We Do

At Johnson Controls, we transform the environments where people live, work, learn and play. From optimizing building performance to improving safety and enhancing comfort, we drive the outcomes that matter most. Dedicated to protecting the environment, we deliver our promise in industries such as healthcare, education, data centers and manufacturing. With a global team of 100,000 experts in more than 150 countries and over 130 years of innovation, we are the power behind our customers’ mission. Our leading portfolio of building technology and solutions includes some of the most trusted names in the industry, such as Tyco®, York®, Metasys®, Ruskin®, Titus®, Frick®, Penn®, Sabroe®, Simplex®, Ansul® and Grinnell®.

Similar Jobs

Johnson Controls Logo Johnson Controls

Architect

Other • Security
Hybrid
Budapest, HUN
100000 Employees

Ericsson Logo Ericsson

Senior Verification Engineer

Cloud • Information Technology • Internet of Things • Machine Learning • Software • Cybersecurity • Infrastructure as a Service (IaaS)
In-Office
Budapest, HUN
88000 Employees

Ericsson Logo Ericsson

Architect

Cloud • Information Technology • Internet of Things • Machine Learning • Software • Cybersecurity • Infrastructure as a Service (IaaS)
In-Office
6 Locations
88000 Employees

Wise Logo Wise

Associate Product Manager

Fintech • Mobile • Payments • Software • Financial Services
Hybrid
Budapest, HUN
9000 Employees
14M-14M Annually

Similar Companies Hiring

Milestone Systems Thumbnail
Artificial Intelligence • Security • Software • Analytics • Big Data Analytics
Lake Oswego, OR
1500 Employees
Rosendin Thumbnail
Other • Manufacturing
San Jose, CA
6219 Employees
OmniCable Thumbnail
Other
Houston, Texas
815 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account