Senior Security Architect (m/f/d)
Nordland, Norway · Andenes, NorwayPosted Jun 16, 2026
Back to jobsSenior Security Architect (m/f/d)Andenes, Nordland, NorwayApplyMission Brief
You are the guardian and the challenger of our security posture. At Isar Aerospace, the systems that build our rockets are mission critical, and protecting them takes more than good design. It takes someone who will attack their own work to be sure it holds.
We are looking for a deeply hands-on Senior Security Architect. You will be in the environment, building and testing our defenses yourself, not directing from the sidelines. You wear two hats: the Defender who designs and operates the controls that keep us safe, and the Adversary who continuously attacks those controls the way a real threat would. You own your work end to end and turn what you find under attack into stronger defenses, sharper detection, and faster response.
This is a senior role with one of the broadest mandates on the team. You are the kind of expert who can pick up almost anything we throw at you, from architecture to incident response to offensive testing, and go deep where it matters. A versatile generalist with real depth, not a narrow specialist, and a technical anchor others lean on.
Your Role in Our Space Mission:
Design the Defense: Lead the design and implementation of security architecture across our systems, networks, and applications, building in resilience from the start.
Attack What We Build: Run realistic adversary emulation and attack-path analysis against our own environment, prove whether our controls and detections actually fire, and convert every finding into a fix, a new detection, or a hardened design.
Own the Detection: Develop and operationalize our detection and response capability, tune monitoring to separate signal from noise, and keep our coverage honest against how attackers actually operate.
Direct the MSSP: Own the technical relationship with our managed security provider. Set the detection and use-case backlog, hold them to escalation and response-quality standards, run service reviews, and make sure we get the protection we pay for.
Lead the Response: Develop and maintain incident response plans, and lead the handling of incidents from day-to-day alerts through to high-profile events.
Hunt and Reduce Risk: Run risk and vulnerability assessments across business-critical infrastructure, then work with stakeholders to prioritize and close the gaps that matter most.
Stay Ahead of the Threat: Track emerging threats and tactics, and use threat intelligence to anticipate how an adversary would target us and harden accordingly.
Embed Security with Engineering: Partner with IT and engineering teams to implement and validate controls, and produce clear documentation and standards others can execute against.
Qualification Checklist
Experience: 10+ years in information security, with hands-on depth across both defending and attacking systems.
Dual Mindset: You can both build secure architecture and break it under controlled, agreed scope, and you know how to feed one into the other.
Versatile Range: Comfortable operating across the full security stack and switching context fast, from design to detection to active testing, while still going deep where the problem demands it.
Security Architecture: Proven experience designing and implementing security architecture across networks, cloud, identity, and endpoints.
Operational Depth: Strong capability in detection, incident response, and vulnerability management, not just advisory or paper work.
Foundations: In-depth knowledge of networking protocols, systems architecture, and core security principles and best practices.
Frameworks: Familiarity with industry standards such as ISO 27001 and NIST.
Autonomy: Operates with very high autonomy as an internal expert, taking full ownership of their work and guiding others.
Communication: Excellent communication and collaboration skills, able to translate technical risk for a range of audiences.
Education: Bachelor’s or Master’s...