Skip to main content

Search Jobs

View Remote Opportunities

Software QA Engineer 4

Job ID 133880 Date posted 04/14/2026 Location ,

Job Summary

The Secure Development Lifecycle (SDL) Architecture Engineer is a key individual contributor within the Global Security Team, reporting into the Secure Development Lifecycle Architecture function. This role partners closely with the SDL Senior Architect (director-level IC) to design, implement, and scale secure-by-design practices across a hybrid cloud environment.

As an SDL Architecture Engineer, you will operationalize security architecture principles into engineering workflows, ensuring that security is embedded throughout the software development lifecycle—from design through deployment. You will collaborate with product engineering, cloud platform teams, DevOps, and application security stakeholders to drive consistent, measurable, and automated security outcomes across multi-cloud and on-prem environments.

This is a highly technical, hands-on role with strategic influence, requiring a blend of security architecture, software engineering, and cloud-native expertise.

Job Requirements

  • Partner with SDL Senior Architect to define and evolve the organization’s Secure Development Lifecycle strategy, standards, and reference architectures
  • Translate security architecture principles into actionable engineering patterns, guardrails, and reusable frameworks
  • Integrate security controls into CI/CD pipelines, developer tooling, and platform engineering workflows
  • Design and implement scalable solutions for:
    • Application security (SAST, DAST, SCA, secrets detection)
    • Container and Kubernetes security
    • Infrastructure-as-Code (IaC) security
    • API and microservices security
  • Collaborate with engineering teams to embed security requirements into system design, threat modeling, and code development practices
  • Drive adoption of “shift-left” security practices and developer-friendly security tooling
  • Conduct architecture reviews, threat modeling sessions, and security design consultations
  • Develop automation to enforce policy-as-code and continuous compliance across hybrid cloud environments
  • Partner with DevOps and platform teams to implement secure-by-default configurations and golden paths
  • Measure and report on SDL effectiveness using KPIs and risk-based metrics
  • Mentor engineers and champion security best practices across the organization
  • Stay current on emerging threats, vulnerabilities, and industry trends to continuously improve SDL capabilities

Qualifications

Minimum Qualifications

  • Bachelor’s degree in Computer Science, Information Security, or a related technical field (or equivalent experience)
  • 5+ years of experience in application security, cloud security, or secure software engineering
  • Hands-on experience with secure development practices and SDL methodologies
  • Experience integrating security tools into CI/CD pipelines (e.g., GitHub Actions, Jenkins, GitLab CI)
  • Strong understanding of:
    • Secure coding principles and common vulnerabilities (e.g., OWASP Top 10)
    • Cloud platforms (AWS, Azure, or GCP)
    • APIs, microservices, and distributed system architectures

Preferred Qualifications

  • Experience working in a hybrid cloud enterprise environment
  • Deep expertise in one or more areas:
    • Application security engineering
    • Cloud-native security architecture
    • DevSecOps and platform engineering
  • Experience implementing policy-as-code (e.g., OPA, Sentinel)
  • Familiarity with zero trust architecture principles
  • Experience with threat modeling methodologies (e.g., STRIDE, PASTA)
  • Relevant certifications such as:
    • CISSP
    • CSSLP
    • AWS/Azure Security Specialty
    • GIAC certifications
  • Experience building developer enablement programs or security champions initiatives

Equal Opportunity Employer:

NetApp is firmly committed to Equal Employment Opportunity (EEO) and to compliance with all federal, state and local laws that prohibit employment discrimination based on age, race, color, gender, sexual orientation, gender identity, national origin, religion, disability or genetic information, pregnancy, protected veteran status, and any other protected classification.

Did you know...

Statistics show women apply to jobs only when they're 100% qualified. But no one is 100% qualified. We encourage you to shift the trend and apply anyway! We look forward to hearing from you.

Why NetApp?

Why You'll Thrive at NetApp

At NetApp, you won't wait for the perfect moment—you'll make it. The early planning, the extra thought, the bold idea that turns good into great: That's how our people operate and how we continue to push the boundaries of data infrastructure.

NetApp is the trusted partner for organizations transforming data into opportunity. As the only enterprise-grade storage service natively embedded in Google Cloud, AWS, and Microsoft Azure, we empower customers to run everything from traditional workloads to enterprise AI with unmatched performance, resilience, and security.

Our culture

We celebrate mold breakers, bold thinkers, and problem solvers. We reward initiative, impact, and ownership. We provide flexibility so you can balance professional ambition with your personal life. Here, differences are not just welcomed—they drive everything we do.

If you're ready to innovate, rise to the challenge, and own every moment - make your next move your best one. Apply now.

Apply now

NetApp is firmly committed to Equal Employment Opportunity (EEO) and to compliance with all federal, state and local laws that prohibit employment discrimination based on age, race, color, gender, sexual orientation, gender identity, national origin, religion, disability or genetic information, pregnancy, protected veteran status, and any other protected classification. We pledge to take every reasonable step to ensure that our applicants and employees are respected, treated fairly, and with dignity. See the EEO poster. NetApp makes reasonable accommodations, consistent with applicable laws, for religious purposes and for the known physical or mental limitations of an otherwise qualified applicant or employee with a disability, who can perform the essential job functions unless undue hardship would result.

Reasonable accommodation

If you are an applicant with a physical or mental disability that requires reasonable accommodation for any part of our application process, please email accessibility@netapp.com. Each request for reasonable accommodation will be considered on a case-by-case basis, consistent with applicable laws and regulations. Please note, this email address is only for accommodation requests; we do not accept unsolicited resumes.

Data privacy

We care about your privacy and therefore ask that you read our Applicant Privacy Policy before you submit any personal information to us.

Note to agencies

We’re sorry, but we cannot accept unsolicited resumes that are sent to NetApp employees or contractors. We will not compensate for a referral without a current contract on file with our Talent Acquisition team. If you’re interested in helping us with a particular role, please call your partner in Talent Acquisition to discuss.