Your impact.
You ensure our software is secure by design, from architectural choices all the way to the code that is ultimately deployed. Your strength lies in understanding how applications fail: how data flows through complex systems, where trust boundaries lie, and what happens when they are breached. You view the organization through the lens of a security architect and ensure that security is embedded in the way we think, design, and build.
This is what you will do
- Conducting security architecture reviews and secure design assessments for new features, services, and platform capabilities.
- Define and maintain security design patterns, reference architectures, and guardrails for a multi-tenant SaaS environment.
- Assessing trust boundaries, data flows, and authorization models within the platform.
- Leading and guiding teams in threat modeling using methodologies such as STRIDE, PASTA, or attack trees to identify and mitigate risks early in the design phase.
- Identifying and assessing technical risks and translating them into concrete, prioritized
- Promote secure coding practices within engineering teams and improve the quality of security-focused code reviews.
- Promoting the maturity of security testing (SAST, DAST, SCA, secret detection) as an integral part of the development process, rather than as an afterthought.
- Serve as the leading expert in the field of application-related vulnerabilities, such as injection, broken access control, insecure deserialization, API security issues, and more.
- Define and take ownership of ANVA’s security strategy and translate it into a clear, actionable roadmap with measurable results.
- Translating compliance and regulatory requirements into technical measures that teams can actually implement.
- Raising security awareness and fostering a culture in which security is an integral part of engineering quality, rather than a final check at the end.
- Using AI as a catalyst for security innovation and proactive risk detection.
Your milestones
- Develop a clear, actionable security roadmap that is widely understood and supported within the engineering department.
- Make security architecture and secure design reviews a standard part of our development process.
- Systematically integrate threat modeling, secure coding practices, and application security testing into our development lifecycle.
- Demonstrably improve the security maturity of our SDLC and delivery processes.
- Building a security-conscious engineering culture in which security-by-design is the norm.
- Play a key role in strengthening the security posture of ANVA’s multi-tenant SaaS platform.
This is what we offer you.
At ANVA, you get more than just a job. You’ll have the opportunity to grow, the responsibility to make a difference, and colleagues who are working alongside you to shape the future of the insurance industry.
We work hard, but we always look out for one another. We focus on personal growth, on having fun, and on maintaining a healthy work-life balance. Because when you feel good about yourself, you perform better.
Salary and extras
A salary that matches your seniority, experience, and impact. We look at who you are and what you bring to the table. In addition, you will receive extras that make a difference, so that you can fully focus on what you are here to do.
vacation daysYou get 27.5 vacation days to recharge, travel, or just do nothing. Because sustainable performance starts with sufficient rest. We believe it is important that you have time for yourself, your family, or your passions.
non-contributory pensionWe pay your pension contributions in full. This means you automatically build up your pension for later, without it costing you anything now. That gives you peace of mind and security, just as it should be.
Growth
At ANVA, you will be given the opportunity to develop yourself. Through training, coaching, and (international) career opportunities, you can broaden or deepen your role. Your ambition determines the direction.
Workation
Ready for some sun and inspiration? You will have the opportunity to work temporarily from the Caribbean. This allows you to combine productivity with a unique experience at one of our international locations.
’s AI First Tech VisionIn every role, we encourage the use of AI as a smart tool to support your daily work. Not as a replacement, but as a powerful complement to help you work faster, better, and more efficiently. This approach fosters innovation while also valuing your own expertise.
Working from home
Hybrid working is a matter of course for us. You will receive a work-from-home budget of €750 to set up a comfortable and professional workspace. This allows you to work just as comfortably at home as you would in the office.
Food & drink
At the office, you can enjoy barista coffee, fresh juices, and fresh fruit. Our hospitality colleagues ensure that you have everything you need. Small details that make your working day just that little bit better.
Fun!
We regularly organize staff events, ranging from substantive sessions to sporting and social activities. Participation is always voluntary, but having fun together is part of who we are.
Financially Fit
You can make use of independent financial advice for your personal situation. Whether it concerns your pension, mortgage, or other financial questions, we are happy to help you look ahead with confidence.
Who are you?
You are an experienced application security professional or a security architect who bridges the gap between engineering teams and security objectives. You don’t just identify vulnerabilities; you prevent them by influencing how software is designed and built.
- Extensive experience in application security and/or security architecture, working closely with software development and architecture teams.
- Demonstrable experience conducting security architecture reviews, secure design assessments, and threat modeling (STRIDE, PASTA, attack trees, or similar).
- In-depth knowledge of application vulnerabilities, secure coding principles, and common attack patterns.
- Experience integrating security into agile development processes, including security testing, developer enablement, and shift-left practices.
- A strong understanding of authentication, authorization, API security, and data protection patterns in modern web and SaaS architectures.
- Familiarity with security testing tools and methodologies such as SAST, DAST, and SCA, and their integration into CI/CD pipelines.
- The ability to translate compliance requirements (e.g., SOC 2, ISO 27001) into practical, implementable technical measures.
Pre:
- Experience with cloud-native security patterns (AWS or Azure) in a multi-tenant SaaS environment.
- Knowledge of the Dutch insurance sector.
- Experience in establishing or scaling up a security function within a product-driven engineering organization.
Where will you end up?
For over 50 years, we at ANVA have been developing software for the insurance industry. What began as an industry-led initiative has grown into an innovative fintech company used by more than 10,000 professionals every day. With our software, we help insurers, Managing General Agents advisors serve millions of customers more effectively and efficiently.

From our offices in Amersfoort and Bergen op Zoom, our team of around 200 colleagues is shaping the future of financial services. We do this using smart technology; for us, AI isn’t just an experiment, but a core and essential component in the development and continuous improvement of our platform. But beyond smart technology, what really sets us apart is our teamwork: collaborating, taking initiative, and getting a little better every day.
When you walk into ANVA, you’ll notice it right away: there’s a great mix of focus, innovation, and fun here! You’ll be working alongside smart, thoughtful, and curious colleagues who love to get things done but also know how to keep things in perspective. We work hard, brainstorm a lot, learn quickly, and celebrate both small and big successes along the way. Where will you end up? A place where your ideas are welcome, new ideas are valued, your growth is taken seriously, and your colleagues are always willing to brainstorm (or grab coffee)!
Sounds like a place where you could settle down? Great. We'd love to get to know you.
Your future colleagues.
Why this job opening does suit you.
Why this job opening doesn't suit you.
Application process
Ready to make a difference?








