NextRaiseNextRaiseFind jobs
Sign inSign up free
Jobs
5 days ago
Apply with autofill
Apply with autofill
Johnson Controls·Manufacturing·5 days ago
5 days ago

Application Security Architect

Prague, Czech RepublicMid · 3+ yearsArchitect

Sign up free to see how well your resume matches this role.

Boost your chances at Johnson Controls

How you compare FREE

?
Your scoreYour score: not yet known

Must-have skills for this role

  • cybersecurity
  • product security
  • nist 800-53
  • threat modeling

PDF or DOCX · no account needed

Apply faster with autofill FREEThe NextRaise extension autofills your application in one click.careers.example.com/applyAutofillingFull namePriya SharmaEmailpriya.sharma@example.comPhone+49 30 1234567LocationBerlGet the extension

What you'll do

  • Act as a trusted security advisor throughout the software development lifecycle.
  • Guide development teams on secure coding, threat modeling, security architecture, and security-by-design principles.
  • Lead secure SDLC activities, including security requirements definition, architecture reviews, code reviews, security testing, and remediation planning.
  • Translate regulatory, customer, and cybersecurity requirements into practical security controls and development practices.
  • Collaborate with security champions, architects, engineers, and product leaders to balance security, usability, and business objectives.
  • Partner with teams across cloud, mobile, embedded, and connected product environments to address evolving security challenges.
  • Stay current with emerging threats, vulnerabilities, and industry best practices, sharing knowledge and recommendations across the organization.

What they're looking for

  • Minimum 3 years in cybersecurity, governance, risk, compliance, product security, or a related security function.
  • Experience working with cybersecurity and compliance frameworks NIST 800-53 and also ISO 27001 or SOC 2.
  • Experience evaluating cybersecurity risks and implementing or recommending appropriate security controls.
  • Ability to translate security requirements into actionable technical guidance.
  • Strong stakeholder management skills, with the ability to build trusted relationships and establish credibility with customers, engineering teams, business leaders, and other key stakeholders.

Nice to have

  • Bachelor's degree in Cybersecurity, Computer Science, Engineering, or a related technical discipline.
  • Professional cybersecurity certifications such as CISSP, GSEC, Security+, or equivalent.
  • Knowledge of compliance frameworks such as ISA/IEC 62443, GDPR, EU CRA, or similar.
  • Experience utilizing AI technologies and ensuring the secure design, implementation, and operation of AI capabilities within products.
  • Familiarity with Operational Technology (OT), industrial controls, building management systems, or IoT ecosystems.
  • Overview of tools such as SD Elements, FiniteState, ArmorCode, jFrog and Jira.

Summarised by NextRaise from the employer’s description, which follows in full below.

Full description from employer

What you will do

At Johnson Controls, you'll help secure the technologies behind intelligent buildings, connected products, and smart cities. As an Application Security Architect, you'll partner with engineering, product, and business teams to embed security and privacy throughout the product lifecycle, shape security strategy, lead risk assessments, and drive continuous improvements that strengthen cybersecurity resilience and customer trust.

Working as a trusted security advisor, you'll guide teams on secure software development, threat modeling, security architecture, and security-by-design practices across cloud, mobile, embedded, and connected products. You'll lead key security activities including architecture reviews, security testing, vulnerability management, and compliance support while translating security requirements into practical solutions that help teams deliver secure, resilient products.

How you will do it

  • Act as a trusted security advisor throughout the software development lifecycle.

  • Guide development teams on secure coding, threat modeling, security architecture, and security-by-design principles.

  • Lead secure SDLC activities, including security requirements definition, architecture reviews, code reviews, security testing, and remediation planning.

  • Translate regulatory, customer, and cybersecurity requirements into practical security controls and development practices.

  • Collaborate with security champions, architects, engineers, and product leaders to balance security, usability, and business objectives.

  • Partner with teams across cloud, mobile, embedded, and connected product environments to address evolving security challenges.

  • Stay current with emerging threats, vulnerabilities, and industry best practices, sharing knowledge and recommendations across the organization.

What we look for

Required

  • Minimum 3 years in cybersecurity, governance, risk, compliance, product security, or a related security function.

  • Experience working with cybersecurity and compliance frameworks NIST 800-53 and also ISO 27001 or SOC 2.

  • Experience evaluating cybersecurity risks and implementing or recommending appropriate security controls.

  • Ability to translate security requirements into actionable technical guidance.

  • Strong stakeholder management skills, with the ability to build trusted relationships and establish credibility with customers, engineering teams, business leaders, and other key stakeholders.

Preferred

  • Bachelor's degree in Cybersecurity, Computer Science, Engineering, or a related technical discipline.

  • Professional cybersecurity certifications such as CISSP, GSEC, Security+, or equivalent.

  • Knowledge of compliance frameworks such as ISA/IEC 62443, GDPR, EU CRA, or similar.

  • Experience utilizing AI technologies and ensuring the secure design, implementation, and operation of AI capabilities within products.

  • Familiarity with Operational Technology (OT), industrial controls, building management systems, or IoT ecosystems.

  • Overview of tools such as SD Elements, FiniteState, ArmorCode, jFrog and Jira.

About Us

Johnson Controls, a global leader in thermal management, mission-critical building systems, energy efficiency, and decarbonization, helps customers use energy more productively, reduce carbon emissions, and operate with the precision and resilience required in rapidly expanding industries such as data centers, healthcare, pharmaceuticals, advanced manufacturing, and higher education.

For more than 140 years, Johnson Controls has delivered performance where it really matters. Backed by advanced technology, lifecycle services and an industry-leading field organization, we elevate customer performance, turn goals into real-world results and help move society forward.

We are committed to diversity and inclusion and believe that different perspectives make us stronger. By encouraging open dialogue and valuing individuality, we strive to be one of the most desirable places to work.

#LI-BB1

#LI-Hybrid

Manufacturing

Company

Johnson ControlsManufacturing
Prague, Czech Republic

Company facts come from this company's own listings. We only show what the postings themselves carry.

Sourced from Johnson Controls's careers site·first seen 17 Sept 2026·last verified 17 Sept 2026·How we source jobs

Similar jobs

  • Associate Director - HPC Infrastructure Architect at NovartisPrague, Czech Republic–match not yet calculated
  • Associate Director - AI Infrastructure Architect (AI Factory) at NovartisPrague, Czech Republic–match not yet calculated
  • Senior Architect - MyExpress - CFR at DHLPrague, Czech Republic–match not yet calculated
  • Principal Architect (EXPRESS - Customs Transformation) at DHLPrague, Czech Republic–match not yet calculated
  • AI Architect at capcoBrno, Czech Republic–match not yet calculated

Browse more jobs

  • Architect jobs in United States
  • Architect jobs in India
  • Architect jobs in United Kingdom
  • Retail Sales Associate jobs in United States