Senior Security Architect
Psybergate (Pty) Ltd · JHB - Northern Suburbs
Posted 5 August 2026
Stop applying one at a time.
JobAlertsZA auto-applies to South African jobs like this one for you, overnight. Upload your CV once — we do the applying.
Start free — we apply for you →Reference: PR000870-RN-1
Psybergate is an IT company that builds bespoke software solutions and provides highly skilled resources to its clients. We are looking for a Senior Security Architect – Mobile Banking Platforms to join our financial services client based in Sandton for a 12-month contract role.
The Senior Security Architect will be responsible for defining, governing, and evolving the end-to-end security architecture of a large-scale, customer-facing mobile banking platform. The successful candidate will provide architectural leadership across mobile applications, APIs, identity platforms, cloud infrastructure, backend services, DevSecOps pipelines, and shared platform services, ensuring world-class security, resilience, regulatory compliance, and customer trust. Duties & Responsibilities
What you will be doing
- Own the end-to-end security architecture for enterprise mobile banking platforms.
- Define and govern security across mobile applications, APIs, cloud infrastructure, backend services, identity platforms, and DevSecOps pipelines.
- Design secure authentication and authorisation models using biometrics, PIN authentication, OAuth 2.0, OpenID Connect, PKCE, and device-bound credentials.
- Define security architectures for mobile applications on iOS and Android, including secure storage, hardware-backed keystores, and Secure Enclave technologies.
- Lead threat modelling for customer journeys including onboarding, authentication, payments, and account servicing.
- Develop security architecture patterns aligned with Zero Trust principles.
- Design and govern API security, Backend-for-Frontend (BFF) security, certificate pinning, mutual TLS, and secure communication models.
- Define cloud-native security controls across Azure, AWS, or GCP environments, including Kubernetes and container security.
- Embed Security-by-Design and Privacy-by-Design principles into solution architecture and delivery.
- Establish DevSecOps security guardrails including SAST, DAST, dependency scanning, container security, secrets management, and secure CI/CD pipelines.
- Design fraud prevention capabilities including device binding, transaction risk scoring, adaptive authentication, and behavioural analytics.
- Support penetration testing, vulnerability remediation, incident readiness, forensic readiness, and cyber resilience initiatives.
- Govern software supply chain security, including signed artefacts, SBOM, dependency management, and secure build pipelines.
- Define AI security controls, responsible AI guardrails, prompt injection prevention, and data protection for AI-enabled platforms.
- Provide architectural leadership across engineering, cybersecurity, fraud, compliance, privacy, operations, and executive technology teams.
What we are looking for
- Bachelor's Degree in Computer Science, Information Security, Information Technology, Engineering, or a related field.
- Extensive experience as a Security Architect within banking, financial services, fintech, or other highly regulated industries.
- Proven experience designing security architectures for enterprise mobile banking or digital platforms.
- Strong knowledge of mobile application security for iOS and Android.
- Expertise in OAuth 2.0, OpenID Connect (OIDC), PKCE, identity and access management, and secure session management.
- Strong understanding of cryptography, HSMs, enterprise key vaults, secure enclaves, and hardware-backed key management.
- Experience with API security, Zero Trust Architecture, API Gateways, certificate pinning, and mutual TLS.
- Hands-on experience with DevSecOps practices including SAST, DAST, container security, IaC security, and software supply chain security.
- Experience securing cloud environments across Microsoft Azure, AWS, or Google Cloud Platform.
- Strong understanding of Kubernetes, container security, and cloud-native security architecture.
- Experience conducting threat modelling and secure architecture reviews.
- Knowledge of banking security standards including PCI DSS, POPIA, NIST, ISO 27001, OWASP MASVS, OWASP ASVS, and OWASP API Security Top 10.
- Relevant certifications such as CISSP, CCSP, CISM, SABSA, TOGAF, Azure Security Engineer, or AWS Security Speciality will be advantageous.
- Excellent stakeholder engagement, communication, leadership, and decision-making skills.
Please note that if you do not hear from us within 3 weeks, consider your application unsuccessful.
Please note that most of our positions are remote; however, candidates should reside within travelling distance of the client site, as the working arrangements may change depending on business requirements.
Follow for the Latest Vacancies Join Psybergate Careers Channel here: Psybergate Careers