
Network Security Architect - Payments Experience
Primary stack
Nice to have's
Job description
About the Position
We’re looking for a Network Security Architect to join our team in Poland.
In this role, you will lead the design and implementation of secure, resilient network and application security solutions for large-scale digital banking initiatives. You will collaborate with architecture, engineering, and risk teams to ensure compliance with regulatory requirements and delivery of robust, secure-by-design architectures. This is a strategic opportunity to influence security posture across highly regulated environments while working with modern platforms and technologies.
Responsibilities
- Define and deliver As-Is and Target Security Architecture assessments, High-Level Security Design Documents and LLDs for major transformation programs
- Design secure patterns for integration approaches including REST APIs, microservices, event-driven systems, and batch processing in payment environments
- Assess solution designs from other architects, identify security gaps, evaluate risk, and recommend mitigations and best practices
- Apply core security standards and principles (OAuth2, OIDC, SAML2, mTLS/PKI, encryption, tokenization, HSM, secrets management, network zoning and firewall configurations)
- Track and manage security design decisions, document risk implications, and negotiate options with Technology, Business and Risk stakeholders
- Collaborate closely with delivery teams to embed secure-by-design principles across architecture and implementation
- Ensure security design compliance with financial regulations such as PSD2, SWIFT CSP, PCI DSS and local requirements
- Support engineering teams during implementation and resolve security-related technical challenges
Requirements
- 7+ years of experience in network or security architecture roles, preferably within financial services or large-scale digital transformation
- Proven ability to produce and govern security architecture artifacts including As-Is/Target states, HLDs and LLDs
- Expertise in security design for APIs, microservices, system integration and sensitive data flows
- Strong knowledge of key security technologies and standards: OAuth2, OIDC, SAML2, mTLS/PKI, encryption, tokenization, secrets management
- Experience addressing risk through secure design patterns and engaging with architecture, compliance and business stakeholders
- Hands-on familiarity with protocols, data flows, application behaviors and infrastructure-level security considerations
- Excellent communication skills, capable of influencing technical and business teams
- Relevant security or architecture certification (e.g., SABSA, TOGAF) is a plus
Nice to Have
- Knowledge of payment solutions and platforms (FIS, ACI, Temenos, Finastra etc.)
- Previous full-stack engineering experience before moving into Security Architecture
- Experience defining infrastructure security architectures for high availability and resilience (WAF, DDoS, SIEM)
- Familiarity with container security and hybrid cloud platforms (OpenShift, Kubernetes, service mesh)
- Exposure to DevSecOps practices, CI/CD security tools and secure software supply chain principles
- Strong understanding of data security designs, classifications and migration strategies
We Offer
- Opportunity to work in a hybrid role based in Poland
- Be part of a team that influences security posture across highly regulated environments
- Work with modern platforms and technologies
About the Company
[Company description if present]
© EPAM. This job description was sourced from the employer's public career page. TheJob is not the employer — we index the posting and route candidates to the source. All content rights and hiring decisions belong to the employer.
EPAM helps organizations innovate their business processes and rethink the way they manage their businesses so they can remain competitive in this new digital age.