Senior Application Security Architect

at Scalable
  • Remote - Germany

Remote

Cybersecurity

Senior

Job description

Company Description

Scalable Capital is a leading digital investment platform in Europe. The company empowers everyone to shape their financial future. Scalable Broker makes it easy and affordable for clients to invest professionally in stocks, ETFs and other exchange-traded products and set up savings plans. Scalable Wealth, the digital wealth management service, offers clients professional investment in ETF portfolios and is also adopted as a white-label solution by renowned B2B partners. With the European Investor Exchange (EIX) Scalable Capital offers a stock exchange for retail investors in Europe. Over 27 billion euro is held on the platform by more than one million clients.

Scalable Capital was founded in 2014 and employs more than 500 people at its offices in Munich, Berlin, Vienna, and London. Together with the founding and management team around Erik Podzuweit and Florian Prucker, they are working on a new generation of financial services.

Visit our finance blog or check out our Social Media channels to find out what our Expert Teams have to say.

Our Company Values guide us every day in how we work and collaborate. To learn more about them, you can find our values here (English).

Job Description

As Application Security Architect you will support the embedding of security into all phases of the SDLC. This includes collaborating with development teams to implement secure coding practices, performing threat modeling, and ensuring that applications are resilient against potential security threats. The role also involves staying abreast of emerging security threats and technologies to continuously enhance the organization’s security posture.​

Key responsibilities

  • Develop and implement security architectures for applications, ensuring alignment with organizational security policies and compliance requirements.​

  • Conduct threat modeling exercises to identify potential security vulnerabilities and recommend mitigation strategies.​

  • Perform in‑depth code and design reviews, delivering actionable remediation guidance.

  • Integrate security practices into the SDLC, including code reviews, static and dynamic analysis, and security testing.​

  • Work closely with cross-functional teams, including developers, QA, and operations, to ensure security is considered at every stage of application development.​

  • Develop and maintain application security standards, guidelines, and best practices.​

  • Evaluate, implement, and manage application security tools such as SAST, DAST, and IAST solutions.​

  • Participate in incident response activities related to application security breaches, including root cause analysis and remediation planning.​

  • Provide training and guidance to development teams on secure coding practices and emerging security threats.​

Qualifications

Qualifications

  • Bachelor’s or Master’s degree in Computer Science, Information Security, or a related field.​

  • Minimum of 5 years in application security, software development, or related roles.​

  • Proven experience with secure coding practices, security assessments, authentication/authorisation design, cryptography, API protection and integrating security into the SDLC.

  • Proven record of facilitating threat‑modelling and delivering risk‑balanced solutions to engineering teams.

  • Experience integrating and tuning security‑testing tools in CI/CD workflows.

  • Strong understanding of application security frameworks and standards (e.g., OWASP ASVS, SAMM, NIST).​

  • Proficiency in programming languages such as Java, Kotlin, or Python.​

  • Exoerience with cloud security principles and securing applications in cloud environments (AWS in particular).​

  • Clear, persuasive communication skills for both technical and non‑technical audiences.

  • Ability to work independently and manage multiple projects simultaneously.​

Additional Information

  • Be part of one of the fastest-growing and most visible Fintech startups in Europe, creating innovative services that have a substantial impact on the lives of our customers
  • Work with an international, diverse, inclusive, and ever-growing team that loves creating the best products for our clients
  • Work from our centrally located offices in the heart of Munich or Berlin, nestled in lively neighborhoods filled with vibrant restaurants, cozy cafés, and a wide range of convenient amenities or choose to work remotely within Germany (if eligible for the job)
  • Be productive with the latest hardware and tools
  • Learn and grow by joining our in-house knowledge sharing sessions and spending your individual Education Budget
  • Learn and experience German culture first hand by joining our free German language classes
  • (International) relocation support
  • Flexible vacation policy and the opportunity to work from abroad
  • Benefit from an attractive compensation package and from the company pension scheme
  • Monthly contribution of 25% for the ‘Deutschland Jobticket’
  • Say goodbye to order commissions and say hello to your complimentary subscription of Scalable Capital’s PRIME+ Broker
Share this job:
Please let Scalable know you found this job on Remote First Jobs 🙏

Benefits of using Remote First Jobs

Discover Hidden Jobs

Unique jobs you won't find on other job boards.

Advanced Filters

Filter by category, benefits, seniority, and more.

Priority Job Alerts

Get timely alerts for new job openings every day.

Manage Your Job Hunt

Save jobs you like and keep a simple list of your applications.

Search remote, work from home, 100% online jobs

We help you connect with top remote-first companies.

Search jobs

Hiring remote talent? Post a job

Frequently Asked Questions

What makes Remote First Jobs different from other job boards?

Unlike other job boards that only show jobs from companies that pay to post, we actively scan over 20,000 companies to find remote positions. This means you get access to thousands more jobs, including ones from companies that don't typically post on traditional job boards. Our platform is dedicated to fully remote positions, focusing on companies that have adopted remote work as their standard practice.

How often are new jobs added?

New jobs are constantly being added as our system checks company websites every day. We process thousands of jobs daily to ensure you have access to the most up-to-date remote job listings. Our algorithms scan over 20,000 different sources daily, adding jobs to the board the moment they appear.

Can I trust the job listings on Remote First Jobs?

Yes! We verify all job listings and companies to ensure they're legitimate. Our system automatically filters out spam, junk, and fake jobs to ensure you only see real remote opportunities.

Can I suggest companies to be added to your search?

Yes! We're always looking to expand our listings and appreciate suggestions from our community. If you know of companies offering remote positions that should be included in our search, please let us know. We actively work to increase our coverage of remote job opportunities.

How do I apply for jobs?

When you find a job you're interested in, simply click the 'Apply Now' button on the job listing. This will take you directly to the company's application page. We kindly ask you to mention that you found the position through Remote First Jobs when applying, as it helps us grow and improve our service 🙏

Apply