{"id":1807365,"url":"https://alion.io/job/capgemini-lead-software-engineer-cybersecurity-specialist","title":"Lead Software Engineer (Cybersecurity Specialist)","company":{"id":145,"name":"Capgemini","domain":"capgemini.com","url":"https://alion.io/company/capgemini","size_band":"5000+","is_staffing_agency":false,"employer_type":"services","is_intermediary":false,"listed_via":null,"ats_vendor":"Career site","truth_index":{"grade":"B","score":75,"open_postings":932,"ghost_share":0,"stale_share":0.996,"repost_share":0,"time_to_fill_p50_days":26,"computed_at":"2026-10-06T05:45:30Z"}},"role":"Security","role_family":"Security","seniority":"lead","employment_type":"full_time","work_mode":"on_site","remote_scope":null,"remote_scope_basis":null,"remote_working_hours":null,"hiring_geo_confidence":"structured","locations":["Singapore"],"countries":["SG"],"hiring_countries":[],"hiring_countries_total":0,"salary":null,"salary_estimate":{"min_usd":46000,"max_usd":109000,"period":"year","method":"role_seniority_country_remote_cell","sample_n":12},"experience_years_min":10,"visa_sponsorship":false,"relocation_package":false,"has_equity":false,"technologies":[{"name":"Agile","optional":false},{"name":"Bash","optional":false},{"name":"CI/CD","optional":false},{"name":"CIS Benchmarks","optional":false},{"name":"ISO 27001","optional":false},{"name":"Kotlin","optional":false},{"name":"MITRE ATT&CK","optional":false},{"name":"Python","optional":false},{"name":"TypeScript","optional":false},{"name":"Zero Trust","optional":false}],"status":"live","first_seen_at":"2026-08-05T08:34:37Z","employer_posted_date":"2026-08-05","last_verified_at":"2026-10-06T23:51:23Z","board_verified":true,"closed_at":null,"days_open":62,"trust":{"level":"ok","repost_count":null,"flags":[],"days_open":62},"description":"About Capgemini\n Capgemini is a global business and technology transformation partner, helping organizations to accelerate their dual transition to a digital and sustainable world, while creating tangible impact for enterprises and society. It is a responsible and diverse group of 340,000 team members in more than 50 countries. With its strong over 55-year heritage, Capgemini is trusted by its clients to unlock the value of technology to address the entire breadth of their business needs. It delivers end-to-end services and solutions leveraging strengths from strategy and design to engineering, all fueled by its market leading capabilities in AI, generative AI, cloud and data, combined with its deep industry expertise and partner ecosystem. The Group reported 2024 global revenues of €22.1 billion.\nResponsibilities\nSecure and Resilient Architecture (Core Mandate)\nOwn the reference security architecture: trust boundaries, identity architecture, segmentation and trust-zone strategy, east-west controls, encryption and key management, and blast-radius containment.\nEmbed secure-by-design controls by working inside product and engineering teams throughout the delivery lifecycle, at design, solutioning, and implementation stages rather than as post-build validation.\nMaintain a living threat model for systems and trust boundaries, referenced to MITRE ATT&CK and relevant adversary classes (including supply-chain threats), and use it to drive architecture and segmentation decisions rather than solely remediation prioritization.\nResilience and Business Continuity\nEngineer platform recoverability and graceful degradation, including degraded-mode operation, recovery objectives, and containment designs that preserve critical business operations during cyber incidents.\nMap and manage dependency and concentration risk across the ecosystem, including customers, partners, third-party providers, and supply-chain integrations.\nDesign for and participate in cyber resilience exercises, incorporating lessons learned into the architecture.\nDefensive Terrain\nPartner with security leadership as the technical design authority to define digital architecture and security boundaries using multi-layered defence, translating security and regulatory requirements into practical architecture decisions.\nCo-develop defensible architecture and resilience strategies to support stakeholder, audit, and regulatory engagements.\nPlatform Leverage and Control Inheritance\nDetermine and document which security controls are inherited from enterprise platforms and shared services (e.g., cloud platforms, centralized monitoring, CI/CD guardrails, baseline security controls) versus those that application teams must build and maintain.\nMaintain shared responsibility models as architectural artefacts to clearly define ownership and audit boundaries.\nContinuous Assurance and Secure Delivery\nExpress security control intent as code through pipeline guardrails, policy-as-code, and continuous control monitoring so conformance can be observed continuously.\nChampion secure SDLC and agile security practices within engineering teams, enabling teams rather than creating delivery bottlenecks.\nTransitional / Day-2 Scope (Explicitly Secondary)\nThe following are transitional and not the primary remit. Operational validation of architecture designs should be performed by an independent assurance function to preserve control independence. The role provides engineering guidance rather than self-validation:\nAdvisory and incident response engineering support in coordination with security and operational stakeholders.\nScoping and engineering guidance for external security assessments and penetration testing, with validation of remediation performed independently.\n Requirements\n10+ years in Cybersecurity as a Software Engineer and not just in the capacity of auditing, pen-testing, operational triage, etc.\nWe need someone that is hands on where the ideal candidate is someone that can design systems to be secure and can sit down to write code if they need to, someone that can coach our engineering teams on how to write better and more secure code, and someone that understands the cybersecurity tooling landscape to help us choose the right tools, we are not looking for a high level theorist / academic.\nDemonstrated experience with designing security architecture into regulated / critical systems and platforms at the national or whole enterprise level, not just providing testing and assurance but actually designing and implementing.\nWorking command of Singapore regulatory frameworks for critical systems: e.g. WOG IM8 (Reform), with the ability to translate obligation into architecture and to delineate control inheritance for audit scoping.\nStrong systems thinking: able to reason about a national platform as an interdependent whole - boundaries, failure modes, recoverability, and concentration risk - not as a checklist of controls.\nDepth across cloud and platform security architecture (IaaS/PaaS/SaaS), identity, encryption and key management, segmentation and zero-trust patterns, and secure SDLC / policy-as-code.\nFluency with architectural and adversary frameworks (MITRE ATT&CK, NIST, ISO 27001, CIS benchmarks) used to drive design decisions.\nAbility to operate as a technical design authority alongside a CISO, clearly within the first line, and to produce architecture that withstands regulatory and audit scrutiny.\nProficiency in at least one scripting/automation language (e.g. Python, TypeScript, Shell/Bash, et) for policy-as-code and tooling.\nPreferably proficient in both Kotlin/JVM stack and TypeScript.\nArchitecture-leaning certifications are advantageous (e.g. CISSP / CISSP-ISSAP, SABSA, cloud security architecture). Incident-response and offensive certifications are useful but not the primary signal for this role.\nSubject to the nature of the role, onsite presence during fixed hours may be required.\nLet's talk about what's in it for you!\n\nPassionate people are Capgemini's Ace of Spades - join us to discover a career that will challenge, support and inspire you. Working at Capgemini you'll find the rewards are more than just financial. You will work alongside some very smart and inspiring people on exciting projects and you will also enjoy incredible benefits. We offer flexible work practices and 40 hours of self-development every year with a huge selection of learning opportunities to choose from.\nAs 'Architects of Positive Futures', Capgemini actively supports the community in 3 ways:\nDiversity and Inclusion - we believe diversity of thought fuels excellence and innovation, which is why we positively encourage applications from suitably qualified candidates regardless of their gender identity, ethnicity, sexual orientation, religion, ability, intersex status or age. To support our commitment to diversity and inclusion, we celebrate special events and days of significance that are important to our employees such as Diwali, Bastille Day, Pride, IDAHOBIT, IWD and International day of people with Disabilities. Our Employee Resource Groups Women@Capgemini and OutFront support the grassroots passion of employees to drive our diversity agenda and effect change.\nDigital inclusion - at Capgemini we are using our skills to drive social impact initiatives focusing on helping society address the impact of the digital and automation revolution. We also provide employees with opportunities to give back to the community through charity projects and volunteer days.\nEnvironmental Sustainability - Capgemini joined the CDP's (Carbon Disclosure Project) prestigious 'A list' for its commitment to the Net-Zero economy. We are focusing on helping our clients transform towards more sustainable business models and committing to reduce our own carbon emissions (GHG) by 20% per employee by 2020.\n\nRecognized by Ethisphere as one of the World's Most Ethical Companies for the last 8 years in a row, ethics and values are at the heart of Capgemini's corporate culture and business. Embedded in our DNA, our seven values - Honesty, Boldness, Trust, Team Spirit, Freedom, Fun and Modesty - have remained the same since company inception in 1967. To see how we bring these values to life, click here to listen to some of our employee’s stories.\nCome join us, bring your whole self to work, create new possibilities for you, your customers and your community and help us to be Architects of Positive Futures.","description_format":"text","description_chars":8450,"description_truncated":false,"requirements":{"experience_years_min":10,"management_years_min":null,"team_size_min":null,"manages_managers":false,"education":null,"security_clearance":false,"languages":[]},"benefits":["Flexible schedule"],"hiring_locations":[],"hiring_excludes":[],"relocation_offered":false,"industries":["Cybersecurity","Information Security","Government","Research Institutes"],"lifecycle":[{"event":"open","at":"2026-10-03T19:29:46Z"}],"visa":[],"liveness":{"score":11,"band":"cold","label":"Long shot","p_open":1,"p_active":0.39,"p_room":0.28,"age_days":61,"expected_fill_days":26,"reasons":["conf:1","stale_co","velocity","win:tail","crowd:brand"],"computed_at":"2026-10-06T05:45:30Z"},"pay":null,"html_url":"https://alion.io/job/capgemini-lead-software-engineer-cybersecurity-specialist","json_url":"https://alion.io/job/capgemini-lead-software-engineer-cybersecurity-specialist.json","meta":{"generated_at":"2026-10-07T01:12:06Z","cache_seconds":300,"methodology":"https://alion.io/methodology","terms":"https://alion.io/terms","contact":"https://alion.io/contact","api":"https://alion.io/developers","about":"Alion is a live layer of people, companies and AI agents: who they are, whether they are real and active right now, what they do and how to work with them, readable by people and by agents and paid per call.","catalog":"https://alion.io/catalog.json","usage":{"tier":"crawler","counted_by":"address","units_charged":1,"used_today":1999,"day_limit":5000,"remaining_today":3001,"minute_limit":60,"resets_at":"2026-10-08T00:00:00Z"}},"offers":[{"id":"company.slices","title":"One company in depth, by slice","status":"live","price":{"credits":0.02,"usd":0.002,"plus_per_slice":{"credits":0.05,"usd":0.005}},"unit":"per company, plus each slice with data","note":"the employer in depth","call":{"mcp_tool":"get_company","arguments":{"id":145},"rest":"https://alion.io/mcp/rest/get_company?id=145"},"human":"https://alion.io/catalog?offer=company.slices&for=job%2Fcapgemini-lead-software-engineer-cybersecurity-specialist"},{"id":"market.stats","title":"A market slice: pay, demand and time to fill","status":"live","price":{"credits":1,"usd":0.1},"unit":"per slice","note":"pay, demand and time to fill for this role and place","call":{"mcp_tool":"market_stats"},"human":"https://alion.io/catalog?offer=market.stats&for=job%2Fcapgemini-lead-software-engineer-cybersecurity-specialist"},{"id":"job.search","title":"Open jobs by role, technology, place, pay and visa","status":"live","price":{"credits":0.02,"usd":0.002},"unit":"per posting in a list","note":"similar open postings","call":{"mcp_tool":"search_jobs"},"human":"https://alion.io/catalog?offer=job.search&for=job%2Fcapgemini-lead-software-engineer-cybersecurity-specialist"},{"id":"company.verify","title":"Is this company real and active right now","status":"pilot","price":null,"unit":"per company","request":{"url":"https://alion.io/catalog/request","method":"POST","body":"{\"offer\": \"company.verify\", \"for\": \"job/capgemini-lead-software-engineer-cybersecurity-specialist\", \"note\": \"what you need it for\"}"},"human":"https://alion.io/catalog?offer=company.verify&for=job%2Fcapgemini-lead-software-engineer-cybersecurity-specialist"}]}