Product Security Architect

Posted 2 Days Ago
Be an Early Applicant
Materiale, Castrocielo, Frosinone, ITA
In-Office
Senior level
3D Printing • Software
The Role
Lead secure architecture across cloud-based medical products, embedding security throughout the product lifecycle. Responsibilities include architecture reviews, IAM and data protection design, threat modeling, risk assessment, secure SDLC integration, vulnerability management, incident support, compliance with cybersecurity and medical device standards, audit documentation, and product security roadmap development.
Summary Generated by Built In

At Materialise Medical, we believe that better healthcare starts with solutions designed around the individual patient. If you’re passionate about bringing personalized care to every patient, you’ll love being a part of this team. Through the technology we develop, researchers, engineers, and clinicians are revolutionizing personalized treatment — helping improve and save lives daily. 


We are looking for a Product Security Architect to lead the design and implementation of secure architectures across our products, including Materialise Mimics Flow — a cloud-based platform operating in a regulated medical device environment. This role ensures that security is embedded throughout the entire product lifecycle, from initial concept and design through development, deployment, and maintenance. 

Job description

Our platform leverages a cloud-native architecture on AWS, with an increasing adoption of containerized workloads orchestrated by Kubernetes and supported by DevOps practices. We are actively progressing the migration of legacy applications and further strengthening our operational and architectural foundations to improve scalability, reliability, and maintainability over time. The platform processes sensitive medical data and operates under strict regulatory requirements, requiring compliance with recognized cybersecurity standards and medical device regulations. You will work closely with engineering, product, and DevOps teams to proactively identify risks, define security requirements, and implement best practices that protect our systems, data, and users. You will also play a key role in supporting audits and regulatory processes, contributing to required documentation, and ensuring that security controls are clearly defined, effectively implemented, and fully traceable.

What you will do
Secure architecture design 
  • Define and review secure system architectures for applications, services, and platforms 
  • Design and guide the implementation of: 
    • Identity and access management (SSO, OIDC, SAML, authorization models) 
    • Tenant isolation and access control 
    • Data protection and privacy-by-design (encryption, key management, PII handling) 
    • Secrets management and network segmentation 
    • Logging, monitoring, and auditability aligned with compliance requirements 
    • Secure CI/CD and software supply chain practices 
Threat modeling and risk assessment 
  • Conduct threat modeling sessions and train the teams to identify potential vulnerabilities early 
  • Perform risk assessments and recommend mitigation strategies
Security integration in development 
  • Embed security practices into SDLC (Secure SDLC) 
  • Guide teams on secure coding standards and design patterns 
  • Support the adoption of SAST, DAST, SCA, and other security tools 
Engineering collaboration 
  • Partner with engineering and product teams to ensure security requirements are clear and actionable 
  • Participate in design reviews and architecture discussions 
Compliance and standards 
  • Ensure adherence to applicable standards (e.g., ISO 27001) and regulations (e.g., GDPR, data protection laws) 
  • Contribute to internal security policies and guidelines 
  • Align product security initiatives with the broader organizational security roadmap 
Vulnerability management and incident support
  • Support vulnerability remediation and coordinate with teams on fixes 
  • Assist in security incident analysis and response
Security strategy and roadmap
  • Define and drive a product security roadmap aligned with business goals 
  • Promote a security-first culture across teams 
Your profile
  • 8+ years of experience in software engineering, system architecture, or application security, including hands-on work in cloud or distributed systems 
  • Experience leading architecture reviews and driving security decisions across teams 
  • Experience designing and implementing security controls (e.g., IAM, encryption, secrets management, network segmentation) in production environments 
Technical skills 
  • Strong understanding of security principles (authentication, authorization, cryptography, secure APIs) 
  • Conducted threat modeling using STRIDE, mapped threats to CAPEC and CWE, and applied CVSS scoring to prioritize remediation efforts
  • Familiarity with security tools (SAST, DAST, SCA, container security, etc.) 
  • Knowledge of cloud security (AWS, Azure, or GCP) 
Standards and frameworks 
  • Strong stakeholder management skills, with the ability to influence engineering, product, and leadership without direct authority 
  • Analytical thinking and problem-solving mindset 
  • Comfortable communicating security risks, decisions, and strategy to senior leadership  
Will be a plus 
  • Security certifications (e.g., CISSP, CISM, CSSLP) 
  • Experience with medical device cybersecurity standards (e.g., ​​IEC81001-5-1, MDCG 2019-16​, section 524B(b)(2) of the FDA act) 
  • Experience with DevSecOps practices and CI/CD integration 
  • Background in regulated industries (e.g., healthcare, finance) 
  • Experience with penetration testing

What’s waiting for you 

Work that matters 
The technology we build at Materialise pushes the boundaries. You’ll find pride in building something that matters, whether you designed it, printed it, or shipped it. No matter your role, we unlock new possibilities to build a better and healthier world every day.  

At Materialise, we expect you to think about the customer, not just the task. You push for better solutions and care about the difference your work makes. 

 

A people-centered space 
When you join Materialise, you join a group of colleagues invested in you, not just your work. From your own team to a department across the world, you’ll find a sense of belonging with people who help without being asked, challenge you, and have your back.  

At the same time, we expect you to invest in the people around you — not just your own work — to make the group stronger than the sum of its parts. 

 

An environment of trust 
As a company of innovators, we know how crucial autonomy is in your work. When we hire you, we trust in your expertise, giving you space to organize your tasks, work flexibly, and make your own calls.  

At Materialise, we expect you to deliver on that trust and keep your commitments. 

 

A career ready to build 
When you see opportunities for your career to grow at Materialise, we encourage you to go for them. People shape a fulfilling career at their own pace here.  

At Materialise, we expect you to take initiative in your own development. Don’t wait for someone else to plan your career. Step into the space and make it count. 


Make a difference together with the Medical team. 

Skills Required

  • 8+ years of experience in software engineering, system architecture, or application security
  • Hands-on experience with cloud or distributed systems
  • Experience leading architecture reviews and driving security decisions across teams
  • Experience designing and implementing production security controls, including IAM, encryption, secrets management, and network segmentation
  • Strong understanding of authentication, authorization, cryptography, and secure APIs
  • Experience conducting threat modeling using STRIDE and mapping threats to CAPEC and CWE
  • Experience applying CVSS scoring to prioritize remediation
  • Familiarity with SAST, DAST, SCA, container security, and related security tools
  • Knowledge of cloud security using AWS, Azure, or GCP
  • Strong stakeholder management and ability to influence engineering, product, and leadership without direct authority
  • Analytical thinking and problem-solving skills
  • Ability to communicate security risks, decisions, and strategy to senior leadership
  • Security certification such as CISSP, CISM, or CSSLP
  • Experience with medical device cybersecurity standards, including IEC 81001-5-1, MDCG 2019-16, or FDA Act Section 524B(b)(2)
  • Experience with DevSecOps practices and CI/CD integration
  • Background in a regulated industry such as healthcare or finance
  • Experience with penetration testing
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Leuven
1,488 Employees
Year Founded: 1990

What We Do

Materialise has over 30 years of experience in providing 3D printing services and software solutions for a variety of industries, including healthcare, automotive, aerospace, consumer goods, and art and design. With our open, flexible solutions and meaningful applications, we strive towards creating a better and healthier world driven by innovation. For additional information, please visit: http://www.materialise.com/.

Similar Jobs

Pfizer Logo Pfizer

Staff Software Engineer

Artificial Intelligence • Healthtech • Machine Learning • Natural Language Processing • Biotech • Pharmaceutical
In-Office or Remote
36 Locations
121990 Employees

Pfizer Logo Pfizer

Sustainability Senior Manager

Artificial Intelligence • Healthtech • Machine Learning • Natural Language Processing • Biotech • Pharmaceutical
Remote or Hybrid
30 Locations
121990 Employees
112K-207K Annually

Zscaler Logo Zscaler

Sales Engineer

Cloud • Information Technology • Security • Software • Cybersecurity
Easy Apply
Remote or Hybrid
Italy
8697 Employees

Pfizer Logo Pfizer

Director, Build Engineer

Artificial Intelligence • Healthtech • Machine Learning • Natural Language Processing • Biotech • Pharmaceutical
In-Office or Remote
30 Locations
121990 Employees
177K-294K Annually

Similar Companies Hiring

Onshore Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
60 Employees
Revel Thumbnail
Aerospace • Hardware • Robotics • Software
Marina Del Rey, California
60 Employees
Blee Thumbnail
Artificial Intelligence • Marketing Tech • Software
New York, New York
30 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account