About this role
Job title: Security Architect
About the Role The Security Architect will design the organisation's computer and network security infrastructure and protect systems and sensitive information from cyber threats. This role will develop and execute enterprise cybersecurity strategy and architecture aligned with business goals and regulatory requirements.
What You'll Do
- Design and develop enterprise cyber security strategy and architecture
- Understand security requirements by evaluating business strategies and conducting system security vulnerability and risk analyses
- Identify risks, communicate security threats, and design architecture elements to mitigate them
- Identify security design gaps in existing and proposed architectures and recommend changes or enhancements
- Provide product best-fit analysis for end-to-end security across layers such as Layered security, Zoning, Integration, API, Endpoint security, Data security, and Compliance
- Conduct security assessments against frameworks like NIST, SANS, CIS
- Provide support during deployment, configuration, integration and administration of security technologies
- Apply ITIL or related processes (incident, configuration, change, problem management)
- Assist with disaster recovery in case of security incidents
- Develop solutions for RFPs and ensure design assurance
- Manage portfolio of to-be-solutions across systems, shared infrastructure, applications and hardware to match business outcomes
- Analyze technology environments and client requirements to define a collaboration design framework/architecture
- Create complete RFPs when required by client standards and technology stacks
- Provide technical leadership in design, development and implementation of custom solutions
- Define current state and target state solutions, identifying improvements, options and tradeoffs
- Articulate architectural targets, recommendations and reusable patterns; propose investment roadmaps
- Evaluate and propose solutions to integrate with the overall technology ecosystem
- Track industry trends and relate them to current and future IT needs
- Coordinate with stakeholders and assist with audits; maintain risk registers
- Liaise with stakeholders on cyber security issues and provide timely support and recommendations
- Support audits of security practices and implementation of security principles
- Create, maintain and deliver cyber security awareness training for team members and customers
- Train employees on issues such as spam and phishing emails
What We're Looking For
- Functional Competencies: Knowledge of current and upcoming security technologies (firewalls, IPS, DDoS, SIEM, WAF, Endpoint) and compliance requirements (PCI DSS, HIPAA)
- Expert Systems Thinking and Master Technical Knowledge: CISSP, Cloud Architect Certifications (AWS and Azure), TOGAF or SABSA
- Behavioral Competencies: Effective communication, Managing complexity, Client centricity, Technology acumen, Innovation, Problem solving, Collaboration, Execution excellence
- Experience in security risk management, audits, and collaboration across stakeholders
- Ability to provide leadership across design, development and implementation of security solutions
Nice to Have
- Familiarity with disaster recovery planning and incident response
- Prior experience in security awareness training and regulatory compliance programs
Compensation & Benefits
- Not disclosed