Senior Solution Architect - Cybersecurity & IT Risk

Workplace Safety and Insurance Board

$116K — $145K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • 7+ years of experience in solution, enterprise, or security architecture design in complex environments.
  • Hands-on expertise in cybersecurity, technology risk, and risk-based decision-making.
  • Experience with cloud platforms like Microsoft Azure, AWS, or Google Cloud, focusing on security and governance.
  • Proven leadership in architecture governance and executive-level discussions.
  • Familiarity with enterprise architecture frameworks, preferably TOGAF.
  • Knowledge of cybersecurity frameworks such as NIST, ISO 27001, and Zero Trust Architecture.

Responsibilities

  • Lead the development and enhancement of security architecture strategies aligned with business goals.
  • Design secure, resilient enterprise solutions supporting operational and disaster recovery needs.
  • Embed security principles throughout the architecture decision-making process.
  • Evaluate emerging technologies for security risks and compliance, recommending secure adoption strategies.
  • Conduct architecture governance reviews and manage governance artifacts.
  • Build collaborative relationships with stakeholders to inform architecture direction and prioritization.
  • Mentor teams on secure architecture principles and lead architecture workstreams for transformation initiatives.

Benefits

  • Opportunity to shape technology direction in a pivotal role within the organization.
  • Engage in large-scale transformations and modernization projects.
  • Collaborate with a variety of teams and stakeholders in a comprehensive architecture environment.
  • Gain exposure to emerging technologies and innovative practices.
  • Participate in a community of practice focused on architecture and secure development.
Full Job Description
Job Description

This role requires the successful applicant to commit to an in-office work arrangement up to 5 days a week beginning in 2027.

Salary Grade: N09 From: $116,000.00 To: $145,000.00

Senior Solution Architect - Cybersecurity and IT Risk

At WSIB, technology helps us serve millions of Ontarians and support recovery from workplace injury and illness. As a Senior Solution Architect, you will apply architecture, cybersecurity, and technology risk expertise to shape enterprise decisions, strengthen critical systems, and design secure, future-ready solutions for a modern public-sector organization.

We are looking for an experienced Senior Solution Architect with hands-on expertise in cybersecurity, IT security, cloud security, and technology risk to design and govern complex enterprise solutions. You will define security expectations, partner across business and technology teams, shape architecture roadmaps, evaluate emerging technologies, and embed security, privacy, risk, compliance, and architecture considerations across delivery. The role connects business strategy, enterprise architecture, technology risk, cloud platforms, and cybersecurity governance, ensuring required security controls are applied across WSIB solutions.

What You'll Be Doing

Lead Secure Enterprise Architecture

  • Define and advance security architecture strategy by aligning controls, policies, technologies, business goals, risk tolerance, and enterprise technology direction.
  • Design scalable, secure, and resilient enterprise solutions aligned to business priorities, enterprise architecture, and technology strategy, including architecture models and solution blueprints that support cyber resilience, operational resilience, business continuity, and disaster recovery.
  • Ensure architecture decisions address security, privacy, compliance, risk management, and operational requirements across the solution lifecycle.
  • Lead technology evaluations, proof-of-concepts, and architecture assessments to determine strategic fit, viability, integration considerations, enterprise alignment, risks, vulnerabilities, architectural gaps, and mitigation strategies.
  • Support cloud governance, cloud operating models, FinOps principles, and cloud risk management practices.
  • Develop, maintain, and promote reference architectures, security roadmaps, patterns, standards, guardrails, guidelines, and controls for enterprise maturity, emerging technologies, heterogeneous cloud platforms, application portfolio consistency, and enterprise technology standards.


Embed Security by Design

  • Embed cybersecurity, IT security, and risk management principles into architecture decisions to deliver secure-by-design outcomes.
  • Evaluate solution and architecture designs against security strategy, standards, policies, patterns, compliance, regulatory, quality, scalability, and maintainability expectations; identify technology risks, vulnerabilities, architectural gaps, and remediation recommendations.
  • Provide practical architecture guidance to help solution architects and delivery teams translate security requirements into detailed solution designs and implementation approaches across cloud security, identity and access management, data protection, application security, and infrastructure security.
  • Collaborate with security, vendor, and delivery teams to validate requirements, address design risks, and meet security objectives.
  • Ensure security, privacy, responsible AI, and AI risk considerations are incorporated throughout the solution lifecycle, including risks related to data leakage, model misuse, model poisoning, prompt injection, privacy concerns, and third-party AI service exposure.


Guide Secure Adoption of Emerging Technologies

  • Evaluate AI, Agentic AI, Generative AI, Machine Learning, Automation, Quantum Computing, and other emerging technologies from architecture, security, privacy, and risk perspectives; recommend adoption options; and establish standards, guardrails, guidelines, and security expectations for responsible, secure use.
  • Align AI adoption with responsible use, security, privacy, enterprise architecture, and business, delivery, data, and security stakeholder needs.
  • Monitor emerging technology trends and assess their impact on enterprise architecture, cybersecurity posture, technology risk, business outcomes, technology investment, modernization, and enterprise roadmap decisions.


Strengthen Architecture Governance

  • Lead architecture governance, including review forums, solution checkpoints, and decision processes across initiatives, programs, and portfolios.
  • Assess solution alignment with approved strategies, principles, standards, patterns, guardrails, guidelines, controls, and reference architectures; prepare and review governance artifacts such as architecture assessments, decision records, solution options, risk summaries, exception requests, and remediation plans.
  • Manage governance decisions, including security deviations, exceptions, remediation actions, and risk acceptances, while presenting recommendations, options, trade-offs, and decision points to governance committees and senior leadership.
  • Maintain traceability between governance decisions, architecture conditions, delivery plans, and implementation outcomes.


Partner Across Business and Technology

  • Build trusted stakeholder relationships to understand priorities, shape architecture direction, and support informed decisions.
  • Develop business-aligned technology roadmaps that support priorities, modernization, and reduce technology and security risk.
  • Provide strategic guidance on technology strategy, architecture direction, modernization, emerging technologies, cybersecurity trends, evolving threats, regulatory developments, and technology risk.
  • Partner with security, privacy, data governance, and enterprise architecture teams to advance modernization and align with standards and governance expectations.


Provide Architecture Leadership

  • Lead architecture workstreams for large-scale transformation across programs and portfolios.
  • Facilitate architecture workshops and design sessions to align stakeholders on solution direction, trade-offs, and implementation considerations.
  • Promote architecture best practices, secure development principles, continuous improvement, knowledge sharing, advanced methods, and consistent secure architecture practices through architecture communities of practice.
  • Provide architecture input to RFP evaluations, business cases, technology assessments, and strategic planning.
  • Mentor architects and technical teams on secure architecture, emerging technologies, and risk-based decision-making.


What You Bring

Required Qualifications

  • 7+ years of senior-level solution, enterprise, or security architecture experience designing secure, cloud-enabled enterprise solutions in complex, heterogeneous, or regulated environments.
  • Experience applying cybersecurity, technology risk, and risk-based decision-making practices to balance business value, security, compliance, operational resilience, and delivery outcomes.
  • Experience with cloud platforms such as Microsoft Azure, AWS, or Google Cloud Platform, including cloud security, governance, and risk considerations.
  • Experience leading architecture governance, solution reviews, and executive-level discussions to support decisions, exceptions, remediation, and risk acceptance.
  • Experience evaluating emerging technologies and translating security, privacy, and risk considerations into architecture standards, patterns, guardrails, and solution designs.
  • Experience with enterprise architecture methods and practices, including TOGAF or similar frameworks.


Cybersecurity, Technology Risk, and Framework Expertise

Candidates should bring practical experience applying cybersecurity, cloud security, application security, DevSecOps, SSDLC, privacy, technology risk, and governance practices to enterprise architecture and solution delivery. Experience with frameworks and approaches such as NIST CSF, NIST AI RMF, ISO 27001, CIS Controls, COBIT, and Zero Trust Architecture is expected.

Preferred Certifications

  • Relevant security, architecture, risk, or cloud certifications such as CISSP, CISM, CRISC, CCSP, TOGAF, Azure, AWS, or Google Cloud certifications are considered assets.


Why Join WSIB

If you are passionate about secure architecture, technology strategy, cloud transformation, and enterprise-scale problem solving, we invite you to help shape WSIB's future technology direction while advancing security, risk management, and innovation.

To apply for this position, please submit your application by the closing date.

Similar Jobs

More Jobs at Workplace Safety and Insurance Board

More Information Technology Jobs

Find similar Senior Solution Architect - Cybersecurity & IT Risk jobs: