Security ArchitectJob Title Security Architect
Job Summary We are seeking an experienced Security Architect to design, implement, and oversee secure enterprise architectures that protect applications, infrastructure, networks, and data. The ideal candidate will define security standards, evaluate emerging technologies, conduct risk assessments, and collaborate with engineering, infrastructure, cloud, and compliance teams to build secure, scalable, and resilient systems. This role plays a key part in embedding security throughout the software development lifecycle and enterprise technology landscape.
Key Responsibilities - Design and maintain enterprise security architecture for cloud, on-premises, hybrid, and multi-cloud environments.
- Define security principles, standards, reference architectures, and technical roadmaps.
- Conduct security architecture reviews, threat modeling, and risk assessments for applications, infrastructure, and cloud services.
- Develop secure solutions for identity and access management (IAM), network security, endpoint security, application security, and data protection.
- Collaborate with software engineering, DevOps, infrastructure, and cloud teams to integrate security into the software development lifecycle (DevSecOps).
- Evaluate new technologies, cloud services, and third-party solutions for security risks and compliance.
- Implement and recommend security controls aligned with industry standards and regulatory requirements.
- Support vulnerability management, penetration testing remediation, and security incident response initiatives.
- Guide encryption, key management, secrets management, and certificate lifecycle strategies.
- Prepare architecture documentation, security policies, and technical standards.
- Provide technical leadership, mentoring, and security guidance across engineering teams.
Required Qualifications - Bachelor's degree in Computer Science, Information Security, Cybersecurity, Information Technology, Software Engineering, or a related field.
- 5-10 years of experience in cybersecurity, security engineering, cloud security, or enterprise architecture, with at least 2 years in a security architecture role.
- Strong understanding of security architecture frameworks and secure system design principles.
- Experience securing cloud platforms such as AWS, Microsoft Azure, or Google Cloud.
- Strong knowledge of Identity and Access Management (IAM), Zero Trust architecture, encryption, PKI, and secrets management.
- Experience with network security, firewalls, VPNs, web application firewalls (WAFs), intrusion detection/prevention systems (IDS/IPS), and endpoint security.
- Familiarity with application security practices including secure coding, threat modeling, SAST, DAST, and software supply chain security.
- Knowledge of security standards and frameworks such as NIST Cybersecurity Framework, ISO/IEC 27001, CIS Controls, OWASP Top 10, and MITRE Telecommunication&CK.
- Strong understanding of networking protocols, operating systems, virtualization, and container security.
Preferred Qualifications - Experience with Kubernetes, Docker, and cloud-native security.
- Familiarity with Infrastructure as Code (IaC) security using Terraform, AWS CloudFormation, or Pulumi.
- Experience with SIEM, SOAR, and security monitoring tools such as Microsoft Sentinel, Splunk, QRadar, or Elastic Security.
- Knowledge of DevSecOps pipelines and CI/CD security.
- Experience with data governance, privacy regulations, and compliance frameworks such as GDPR, HIPAA, PCI DSS, or SOC 2.
- Experience performing cloud security posture management (CSPM) and vulnerability management.
Technical Skills - AWS / Microsoft Azure / Google Cloud
- Identity and Access Management (IAM)
- Zero Trust Architecture
- Kubernetes
- Docker
- Terraform
- CloudFormation
- Python
- PowerShell
- Bash
- Git
- SIEM (Splunk, Microsoft Sentinel, QRadar)
- WAF
- IDS/IPS
- PKI
- Encryption Technologies
- HashiCorp Vault
- SAST / DAST Tools
- OWASP
- NIST CSF
- ISO/IEC 27001
Soft Skills - Strong analytical and strategic thinking abilities.
- Excellent communication and stakeholder management skills.
- Leadership and mentoring capabilities.
- Strong problem-solving and decision-making skills.
- Ability to balance security, usability, and business objectives.
- Commitment to continuous learning and staying current with emerging cybersecurity threats.
Nice to Have - Experience with AI/ML security, LLM security, or cloud AI platforms.
- Knowledge of container runtime security and Kubernetes policy enforcement.
- Familiarity with Secure Access Service Edge (SASE), Software-Defined Perimeter (SDP), and Confidential Computing.
- Experience supporting security audits and regulatory assessments.
- Professional certifications such as CISSP, CCSP, SABSA, AWS Certified Security - Specialty, Google Professional Cloud Security Engineer, Microsoft Certified: Cybersecurity Architect Expert, or TOGAF.
Benefits - Competitive salary and performance-based incentives.
- Comprehensive health and wellness benefits.
- Flexible or hybrid work arrangements.
- Learning, certification, and conference sponsorship opportunities.
- Opportunity to lead enterprise security initiatives and influence strategic technology decisions.
- Collaborative, innovative, and security-first work environment.