Secure-by-design architecture
Security architecture and solution-design oversight across distributed systems and integrations.
Security built into architecture and decisions
Design security as part of the solution, not as a control added after implementation.
I help organisations connect security risks, regulatory expectations and business continuity with practical architecture decisions across systems, data and integrations.
Business contextSecure design
Protection aligned with purpose
Security architecture translates business risks, regulatory obligations and technical realities into a coherent design for systems, integrations and data.
It defines how security principles and controls work together across the solution lifecycle from identity and access to cryptography, data flows, suppliers, documentation and operational resilience.
The objective is a secure-by-design solution that remains understandable, traceable and practical for engineering and operational teams.
Security from governance to implementation
Security architecture and solution-design oversight across distributed systems and integrations.
Policies, procedures, traceability and audit readiness aligned with regulatory frameworks, including DORA.
Protection of data at rest and in transit, cryptographic controls, keys, certificates and data lifecycle considerations.
SSO, IAM and security integrations across internal platforms and SaaS ecosystems.
Security requirements, vendor discussions, solution assessment and assurance of data flows.
Incident readiness and security measures aligned with business continuity objectives, including RTO and RPO.
Evidence before assumptions
Security decisions begin with understanding the business, the existing environment and the data that needs protection.
Clarify objectives, critical services, stakeholders and continuity needs.
Map systems, integrations, data flows, assets and existing security controls.
Connect technical findings with regulatory, audit and business requirements.
Challenge assumptions and compare controls against technical feasibility and operational impact.
Turn decisions into architecture, requirements and implementation guidance.
Create clear records that support engineering, governance and audit readiness.
Support system owners and engineering teams as security controls are delivered.
Current leadership and hands-on analysis
03/2026–present
Security architecture and design oversight, DORA-aligned governance, data protection strategy, IAM and SSO, third-party risk, audit readiness, and operational resilience.
10/2025–03/2026
Application and infrastructure security analysis covering encryption, transport security, certificates, keys, secrets, logging, stored data and Post-Quantum Cryptography considerations in a regulated banking environment.
Earlier architecture and analysis roles
GDPR-compliant solution architecture, data integrity, security considerations and collaboration with legal, business and technical stakeholders.
Security connected to enterprise delivery
Relevant professional credentials
Start with the risk and business context
Share the systems, integrations, data or regulatory challenge you need to address. We can begin by clarifying the current state and the decisions ahead.
Martin Modl, Kojeticka 611, 250 65 Bast
Company ID: 72458470
The business is registered with the Trade Licensing Office in Brandys nad Labem, ref. no. 45042/2015-Hro/70.
2025 - 2026 - Martin Modl