Security Architect
About Us
At Basis, we’re not just building a company — we’re building the future. We’re redesigning the electrical systems that power our homes to fight climate change, reduce household costs, and create a better future for generations to come. That means rethinking everything, not just what we build, but how we build it.
To do this, we need incredible people. People who are bold, creative, sharp, and thoughtful. People who care. People who move fast and think differently. That’s where you come in.
The Role
We’re looking for a Security Architect to design and deliver Basis’ end-to-end product security — from the embedded systems in our hardware to the cloud services that connect them. This isn’t a corporate IT security role — it’s about building security into the products themselves, shaping how we design, test, and operate connected energy systems for the home.
You’ll define the security blueprint for Basis products and infrastructure, working with engineering, firmware, and cloud teams to ensure every part of our system is secure by design. You’ll turn compliance frameworks like IEC 62443 and SOC 2 into practical controls that make our systems resilient, auditable, and trusted by our customers.
Some of the things that you might be involved in include:
What you’ll do:
- Design and maintain the end-to-end security architecture across product, firmware, and cloud.
- Lead threat modelling and risk assessments for product designs and software releases.
- Define and maintain our security case and roadmap across product and operations.
- Embed security controls and processes into engineering and manufacturing lifecycles.
- Translate compliance standards (IEC 62443, SOC 2, ISO 27001) into actionable product and process requirements.
- Oversee external testing, vulnerability assessments, and vendor reviews.
- Partner with engineering leads to ensure secure design choices are practical and effective.
- Support readiness for SOC 2 and IEC 62443 certification with the Head of Compliance.
This is a senior role for someone who is credible, adept at managing stakeholder relationships, and has proven experience delivering real outcomes. We are a small, scrappy start-up which means we need someone willing to roll up their sleeves and get stuck into making our products secure help our engineers and wider teams drive real value to our customers.
About You
We think you’ll be a fit for this role if you have the following skills/or traits:
- Background in product or embedded systems security, ideally in IoT, energy, or industrial domains.
- Experience designing security for hardware-software systems (firmware, cloud APIs, user data).
- Proven ability to apply security and compliance frameworks in real engineering contexts.
- Strong communicator who can bridge compliance, engineering, and business.
- Pragmatic and hands-on — you care about impact, not just paperwork.
- Proven track record of working with external consultants (pen testing, audits, tooling) and embedding results into delivery.
- Strategic thinker able to design security roadmaps and balance risk with business priorities.
Research shows that while men apply for jobs when they meet ~ 60% of the job criteria, women and other marginalised groups tend to apply only when they check every box. So if you think you have what it takes, but are not sure you check every box, we still want to hear from you 🙌
Benefits
- A competitive salary and employee share scheme (ESOP)
- A hybrid work culture with a mixture of office days for collaborating with your team, and work from home days for deep focus
- Unlimited annual leave so that you can take the time that you need to re-energise
- Tools of trade, including laptop and headphone allowance
- Flexible hours - we focus on effort and outcomes, so adjust your hours around your children, hobbies, or other commitments
- A schedule of fun team events throughout the year (Lego Battlebots, table tennis, themed Friday drinks, and more!)
- Office dogs + steady supply of fresh fruit and snacks in the office
- Access to Clearhead, our well-being programme which gives you 5x free sessions with a psychologist per year
- A commitment to diversity and inclusion: Pride Committee and partnering with Pride Pledge, DEIB Committee, EEO Policy and well-being strategy!
- Parental leave policy that tops up wages to 100% for the primary caregiver for up to 22 weeks and up to 6 weeks for secondary caregivers (conditions apply)
- The opportunity to learn and develop from some of the best and brightest minds in the industry!
Let's Talk!
We’d love to hear from you! No need to submit a cover letter - just click 'apply' to answer a few short questions of ours (we find this gives us more insight) and attach your CV.
If you have any questions about the role, fire them over to Steph at talent@wearebasis.com
- Department
- Engineering
- Role
- Risk and Compliance
- Locations
- Auckland
- Employment type
- Full-time