Если вы раньше входили через Google, сбросьте пароль для своей Gmail-почты через кнопку «Забыли пароль?» на экране входа. Затем войдите по email и новому паролю.
Если аккаунта ещё нет, зарегистрируйтесь с Gmail-почтой, после подтверждения почты мы предложим задать пароль.
Что нового
Загружаю обновления...
Что нового
Загружаю обновления...
Работа найдется быстрее с подпискойКандидат найдётся быстрее с подпиской
Чтобы адаптировать резюме под вакансию или составить сопроводительное письмо, загрузите резюме
описание
EPAM develops enterprise software products, open source solutions, and technology accelerators.
задачи
Define and deliver As-Is and Target Security Architecture assessments, High-Level Security Design Documents, and LLDs for major transformation programs;
Design secure integration patterns for REST APIs, microservices, event-driven systems, and batch processing in payment environments;
Assess other architects’ solution designs, identify security gaps, evaluate risks, and recommend mitigations and best practices;
Apply security standards and principles including OAuth2, OIDC, SAML2, mTLS/PKI, encryption, tokenization, HSM, secrets management, network zoning, and firewall configurations;
Track and manage security design decisions, document risk implications, and negotiate options with Technology, Business, and Risk stakeholders;
Collaborate with delivery teams to embed secure-by-design principles across architecture and implementation;
Ensure security design compliance with PSD2, SWIFT CSP, PCI DSS, and local requirements;
Support engineering teams during implementation and resolve security-related technical challenges.
требования
7+ Years of experience in network or security architecture roles, preferably within financial services or large-scale digital transformation;
Proven ability to produce and govern security architecture artifacts, including As-Is/Target states, HLDs, and LLDs;
Expertise in security design for APIs, microservices, system integration, and sensitive data flows;
Strong knowledge of OAuth2, OIDC, SAML2, mTLS/PKI, encryption, tokenization, and secrets management;
Experience addressing risk through secure design patterns and engaging with architecture, compliance, and business stakeholders;
Hands-on familiarity with protocols, data flows, application behaviors, and infrastructure-level security considerations;
Excellent communication skills and ability to influence technical and business teams;
Nice to have: Relevant security or architecture certification such as SABSA or TOGAF, knowledge of payment solutions and platforms such as FIS, ACI, Temenos, and Finastra, previous full-stack engineering experience, infrastructure security architecture experience for high availability and resilience, container security and hybrid cloud platforms, DevSecOps practices, CI/CD security tools, secure software supply chain principles, data security designs, classifications, and migration strategies.