About Back Market

We’re here to help make tech reliable, affordable, and better than new. We're a global marketplace for refurbished devices, helping lower our collective environmental impact by providing trustworthy, affordable tech with 92% less carbon emissions than new. Our mission is simple: to do more with what we already have.

The Role

As our Staff Engineer - Cybersecurity Architect, you will translate Back Market Cyber and IT strategy into a global Cybersecurity architecture by connecting the business processes with the application, data and infrastructure layers. Your ultimate goal is to design an organisation-wide secure architectural plan. You will play a crucial role in the digital transformation within Back Market.

You will be the owner for the creation of architecture models that reflect the company's strategies and goals and take responsibility for securing the enterprise architecture within one or more domains. You'll be part of the Platform Dept which covers several squads, including about thirty people working on IT, GRC, SecOps, and other areas.

Key Responsibilities

  • Analyzing business needs from an architectural point of view to translate them into performant and coherent ICT solutions.
  • Developing, implementing, monitoring, evaluating and adjusting the architecture in order to have a coherent framework within projects and developments.
  • Presenting and developing recommendations and translating them into executable roadmaps.
  • Creating secure architecture patterns for complex and large technology environments together with stakeholders.
  • Identifying and specifying implementation modalities of both existing and new technologies.
  • Providing guidance on enterprise architecture and systems processing in the data, application, integration, security and technology areas.
  • Promoting continuous improvement and development of methodologies used.
  • Proposing improvements to optimise the functionality of the IT department with a view to cost efficiency.
  • Building a bridge between IT and business by advising management on complex ICT issues, ensuring decision-making.
  • Reconciling conflicting requirements and functions by finding appropriate technological solutions.
  • Facilitating and leading the substantive decision-making process within the project team.
  • Conducting technical risk analyses to identify, assess, and mitigate security risks across systems, applications, architectures, and technology initiatives.
  • Collaborating closely with IT teams to integrate security best practices into both the design and implementation phases of IT projects.
  • Translating high-level security policies set by the GRC team into detailed technical solutions within project designs and IT changes.
  • Ensuring that all new and existing IT projects are compliant with the latest security standards and practices.
  • Designing and recommending security standards, security architecture principles and technical requirements.

At Back Market, you’ll enjoy impact-driven work with hands-on career development in an innovative, driven, and fast-paced environment. Benefits include: - A mission driven work environment where your day to day makes an impact on the planet. - Hybrid work environment, with 2 remote days a week and 1 remote work week per quarter, plus 3 flex days. - Employee Resource Groups, including mentorship programs, comprehensive accessibility policies, and cultural competency training.

Professional Experience

  • At least 10 years of experience within security and tech.
  • Previous enterprise security architecture experience.
  • Analytical mind to understand complex business models and associated systems.
  • Ability to bring simplicity and transparency to communication.
  • Attentive to technological developments and ability to translate them into business opportunities.
  • Ability to keep in touch with technical implementation aspects.
  • Strong documentation and communication skills.

Technical Skills and Qualifications

  • In-depth knowledge of GCP cloud.
  • Security by design/Zero trust/Defense in depth.
  • IA security (MCP, Claude, Opencode, etc).
  • Security of MAC endpoints.
  • Expertise in IAM (Okta) systems and standards.
  • Familiarity with compliance requirements and industry standards such as GDPR, ISO 27001, NIST frameworks.
Back Market

Back Market