Staff Security Architect

1 Week ago • 5 Years + • Cyber Security

Job Summary

Job Description

As a Staff Security Architect at Fortis Games, you'll design and implement security architecture for games and data infrastructure. Collaborate with engineering, data, compliance, and product teams to integrate Shift-Left Security practices, conduct threat modeling, and ensure GDPR, NIST, and industry standard compliance. Responsibilities include privacy by design, secure software development lifecycle (SSDLC) implementation, mobile app security architecture, and risk management. You'll integrate security tools into CI/CD pipelines, mentor teams, and ensure alignment with regulatory frameworks. Experience with threat modeling, data flow diagrams, and secure coding practices is essential.
Must have:
  • 5+ years security architecture experience
  • Expertise in threat modeling & SSDLC
  • Strong data flow diagram knowledge
  • Experience integrating security tools into CI/CD
  • Understanding of secure coding practices and mobile security standards
  • Familiarity with GDPR, NIST, and ISO 27001
Perks:
  • Work on impactful projects
  • Grow with a seasoned team
  • Contribute to a diverse and inclusive environment

Job Details

Who we are

At Fortis Games we aspire to make great games that bring people together while redefining how game companies work. We believe in building a sense of belonging through our games, their communities, and how we operate and treat each other. Through our game communities, we will create powerful connections and lasting memories. We will foster a culture of diversity, equity and belonging where together our diverse skills, experiences and backgrounds impact the games we make.

We are an early but mighty organization with a leadership team of game industry veterans. There are many opportunities for you to have a big impact on the products we'll be making as well as the overall direction of the company. If you're passionate about tackling difficult problems with direct and thoughtful communication and team first mentality, we may be the right place for you.

About the role

As a Staff Security Architect at Fortis Games, you will play a pivotal role in designing and implementing security architecture to protect our games and data infrastructure. You’ll work closely with engineering, data, compliance, and product teams to integrate Shift-Left Security practices, conduct threat modeling, and ensure compliance with GDPR, NIST, and industry standards. Your expertise will be key in securing third-party publishing, mergers, and acquisitions, as well as shaping security strategies in an agile, fast-paced development environment.

What you will achieve

  • Privacy by Design: Integrate privacy principles into the software development lifecycle, ensuring that personal data collection, storage, and processing are compliant with privacy regulations such as GDPR, CCPA, and other applicable regulations.
  • Shift-Left Security: Embed security into every phase of the development lifecycle, from initial design to post-launch, ensuring proactive identification and mitigation of risks.
  • Threat Modeling: Administrate threat modeling efforts for mobile applications, APIs, and backend systems to identify potential attack vectors and propose actionable mitigations.
  • Data Flow Diagram Expertise: Collaborate with engineering teams to create and review data flow diagrams (DFDs) specific to mobile app architectures, ensuring security and privacy are accounted for throughout.
  • Risk Management: Identify gaps in security controls, provide reasonable solutions, and mandate implementation of measures to resolve or mitigate risks.
  • Security Testing Integration: Partner with QA and DevOps to implement SAST, DAST, IaC, and API security tools into CI/CD pipelines for continuous security validation.
  • Collaboration and Guidance: Work closely with cross-functional teams, including engineering, product, data, and infrastructure, to deliver secure and scalable solutions while navigating ambiguity.
  • Compliance and Governance: Ensure solutions align with industry and regulatory standards (e.g., GDPR, NIST 800-53, ISO 27001) and Fortis’s security policies.
  • Mobile Security Leadership: Design and implement secure architectures for mobile applications, protect against runtime vulnerabilities, and validate the security of third-party SDKs.
  • Security Awareness: Act as a security advocate, mentoring teams on best practices and optimize a culture of security-first development

What you will need to be successful 

  • Bachelor’s degree in Computer Science, Information Security, or a related field (or equivalent work experience).
  • 5+ years of experience in security architecture, application security, or mobile app development.
  • Expertise in privacy by design, threat modeling, and secure software development lifecycle (SSDLC).
  • Strong familiarity with data flow diagrams and their application in mobile app development.
  • Hands-on experience with integrating security tools (e.g., SAST, DAST, IaC) into CI/CD pipelines.
  • Deep understanding of secure coding practices, common vulnerabilities (e.g., OWASP Top 10, CWE), and mobile security standards (e.g., OWASP MASVS).
  • Ability to identify security gaps and provide actionable, practical solutions while balancing business and security needs.
  • Comfortable navigating ambiguity with a proactive, solutions-oriented approach, while assertively mandating necessary security controls.
  • Familiarity with regulatory and compliance frameworks (e.g., GDPR, ISO 27001, NIST 800-53).
  • Excellent problem-solving, communication, and collaboration skills.

Why join us

There are many reasons to join us, but here are a few:

  • We strongly believe we are changing how games studios operate and at the core of what we do is making great games that create a connected community
  • We're not just about making Games Where You Belong. We're also about building communities where our people belong. That's why Fortis is a thriving environment that celebrates diversity, embraces inclusivity, and fosters growth.
  • Build and grow with a seasoned team of accomplished talent who have left an impactful mark in their disciplines, both in and out of gaming

Fortis is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, gender expression, national origin, protected veteran status, or any other basis protected by applicable law, and will not be discriminated against on the basis of disability.

Similar Jobs

PwC - Senior Associate_Azure Data Engineer_Data & Analytics_Advisory_PAN  India

PwC

Bengaluru, Karnataka, India (On-Site)
4 Months ago
Blizzard Entertainment - Associate Software Engineer, Production Technology

Blizzard Entertainment

Irvine, California, United States (Hybrid)
3 Months ago
Barracuda Networks  Inc  - Senior Machine Learning Engineer

Barracuda Networks Inc

Bengaluru, Karnataka, India (On-Site)
3 Months ago
PwC - Senior Software Developer (.NET)

PwC

Qormi, Malta (On-Site)
4 Months ago
Equivalent Jobs - MLOPS ENGINEER

Equivalent Jobs

(Remote)
3 Months ago
InMobiInMobi - Senior Cloud Security Engineer

InMobiInMobi

Bengaluru, Karnataka, India (On-Site)
13 Hours ago
Ubisoft - Analyste en sécurité Physique

Ubisoft

Montreal, Quebec, Canada (On-Site)
1 Month ago
Saviynt - Sr. Principal Software Engineer - Privileged Access Management (PAM)

Saviynt

El Segundo, California, United States (Hybrid)
4 Months ago
PwC - Forensic Manager

PwC

Toronto, Ontario, Canada (On-Site)
4 Months ago
Netflix - Engineering Manager, Identity & Authentication Security

Netflix

United States (Remote)
4 Days ago

Get notifed when new similar jobs are uploaded

Similar Skill Jobs

ByteDance - Machine Learning Engineer Intern

ByteDance

San Jose, California, United States (On-Site)
3 Weeks ago
PlayStation Global - Sr. IT Programmer Analyst

PlayStation Global

Carlsbad, California, United States (Hybrid)
1 Month ago
Microsoft - Linux security and Release Management Engineer

Microsoft

Bengaluru, Karnataka, India (On-Site)
1 Month ago
DNEG - Lead Software Developer, Ziva Realtime

DNEG

Toronto, Ontario, Canada (Hybrid)
4 Months ago
Lululemon - Senior Engineer I - Performance Testing [T500-11941]

Lululemon

Bengaluru, Karnataka, India (On-Site)
5 Months ago
PENN Interactive - Senior Data Scientist, NBA

PENN Interactive

Philadelphia, Pennsylvania, United States (Hybrid)
1 Month ago
Ubisoft - DevOps Linux Administrator

Ubisoft

Saint-Mandé, Île-de-France, France (Hybrid)
3 Weeks ago
Gaming Innovation Group  - DevOps Engineer

Gaming Innovation Group

St. Julian's, Malta (Hybrid)
2 Months ago
GT - QE Automation Engineer | Feeld, UK

GT

(Remote)
1 Month ago
Globalization Partners - Mobile Architect (AI Domain)

Globalization Partners

(Remote)
1 Month ago

Get notifed when new similar jobs are uploaded

Jobs in Canada

Epic Games - Programmeur sénior de moteurs, Fortnite Tech

Epic Games

Montreal, Quebec, Canada (On-Site)
1 Month ago
ION - Markets Platform Security Engineer - US

ION

Toronto, Ontario, Canada (On-Site)
4 Months ago
Voldex - Future Opportunities - Developer

Voldex

Canada (Remote)
6 Months ago
Amber - Localization Quality Assurance with Arabic

Amber

Montreal, Quebec, Canada (On-Site)
7 Months ago
Hitachi - D365 CE CRM Technical Architect

Hitachi

Toronto, Ontario, Canada (Remote)
4 Months ago
IGG - Game Designer (Mobile Game)

IGG

Vancouver, British Columbia, Canada (On-Site)
2 Months ago
Keywords Studios (Player Support) - Global Facilities and Leasing Manager

Keywords Studios (Player Support)

Canada (Remote)
1 Month ago
Sledgehammer Games - Lead Systems Designer

Sledgehammer Games

Toronto, Ontario, Canada (On-Site)
6 Months ago
Offworld - Co-op Programmer

Offworld

British Columbia, Canada (Hybrid)
1 Week ago
PwC - PwC Private, Tax, Manager

PwC

Calgary, Alberta, Canada (On-Site)
4 Months ago

Get notifed when new similar jobs are uploaded

Cyber Security Jobs

CloudLinux - Middle/Senior Python Developer with Security Expertise (worldwide remote)

CloudLinux

Warsaw, Masovian Voivodeship, Poland (Remote)
3 Months ago
PwC - Cyber Incident & Crisis Management | Manager | Cyber Security | Technology Consulting

PwC

Dublin, County Dublin, Ireland (On-Site)
4 Months ago
Tencent - Senior Client-Side Security Engineer

Tencent

Shenzhen, Guangdong Province, China (On-Site)
2 Months ago
Nagarro - Information Security Consultant

Nagarro

Germany (Remote)
1 Month ago
ION - Information Security Manager - London

ION

London, England, United Kingdom (On-Site)
4 Months ago
Trend Micro - (Sr.) Backend Engineer

Trend Micro

Taipei City, Taiwan (On-Site)
4 Months ago
Fortis Games - Staff Security Operations Engineer

Fortis Games

United Kingdom (On-Site)
1 Month ago
Barracuda Networks  Inc  - Senior Machine Learning Engineer

Barracuda Networks Inc

Bengaluru, Karnataka, India (On-Site)
3 Months ago
ByteDance - Backend Engineer(Distributed System) - Network Security - San Jose

ByteDance

San Jose, California, United States (On-Site)
3 Months ago
Ubisoft - Vulnerability Management Specialist

Ubisoft

Saint-Mandé, Île-de-France, France (Hybrid)
1 Month ago

Get notifed when new similar jobs are uploaded

About The Company

Fortis is a global game studio with a mission to create worlds that matter — that challenge minds, build connections, and inspire communities. Founded by industry veterans, Fortis believes games have the ability to create a positive impact on society and culture, and now more than ever, those are the experiences players are looking for. With team members already in the US, UK, Canada, Romania, Portugal and Brazil, Fortis is growing and seeks the best of the best from around the world in order, regardless of location, to create a best-in-class games studio. Join us!

Canada (On-Site)

Brazil (On-Site)

United Kingdom (On-Site)

United Kingdom (On-Site)

Canada (On-Site)

Canada (Remote)

United Kingdom (On-Site)

View All Jobs

Get notified when new jobs are added by Fortis Games

Level Up Your Career in Game Development!

Transform Your Passion into Profession with Our Comprehensive Courses for Aspiring Game Developers.

Job Common Plug