About the Role
We are looking for a Senior Security Architect to strengthen our Security Engineering & Architecture capability
In this role, you will work closely with Technology, Infrastructure, Cloud, Application, and Cybersecurity teams to embed security into the design and delivery of technology solutions. You will define security architecture and standards, lead security design reviews, evaluate security technologies, and ensure security controls are effectively designed, implemented, and continuously improved across the technology environment
This is a hands-on technical role for someone who can translate security principles into practical architecture, engineering requirements, and scalable security controls
Job Description
- Own and continuously evolve security reference architectures, security standards, patterns, and capability maps across the technology environment
- Lead the security design-review gate for new projects, technology changes, integrations, and in-house applications before go-live
- Assess solution architecture, technology designs, data flows, integrations, and proposed implementations to identify security risks and define appropriate security requirements and controls
- Lead technical evaluations, Proofs of Concept (PoC), and technical tender assessments for security technologies and platforms, such as SSE, SAST, cloud security, and other security capabilities
- Coordinate with Security Engineers, Infrastructure, Cloud, Network, Application, and other Technology teams to design, implement, integrate, and operationalize security controls and solutions
- Define and continuously improve security controls across endpoint, SDLC, cloud, network, identity, and data, including security hardening and technical remediation
- Evaluate the effectiveness, reliability, scalability, and operational performance of security controls and drive continuous improvement.
- Identify opportunities to improve security engineering through automation, standardization, reusable security patterns, and security-by-design practices
- Provide technical guidance to engineering and technology teams on security architecture, implementation trade-offs, and remediation of security gaps
- Contribute to the development of the organization's overall security engineering roadmap and capability maturity
- Stay current with emerging security technologies, architectural patterns, and evolving technology risks
Requirements
- Bachelor's degree in Computer Science, Information Technology, Computer Engineering, Cybersecurity, or another relevant STEM field
- 3–5+ years of experience in cybersecurity, security engineering, security architecture, application security, cloud security, infrastructure security, or related technical security functions
- Strong understanding of security architecture principles, security controls, secure-by-design practices, and technical risk assessment
- Experience conducting or contributing to security design reviews for applications, systems, infrastructure, cloud environments, or technology projects
- Experience designing, implementing, integrating, or improving security controls across areas such as cloud, network, endpoint, identity, SDLC/application, and data security
- Strong understanding of several programming languages, particularly JavaScript, Go (Golang), and Python, with proven experience in system development using these languages
- Understanding of Rust is an advantage
- Experience working closely with Software Engineering, Infrastructure, Cloud, Network, DevOps, or Technology teams to implement and operationalize security controls
- Experience evaluating security technologies, conducting technical assessments or PoCs, and translating security requirements into practical technical solutions
- Familiarity with modern technology environments, including cloud platforms, APIs, CI/CD, microservices, containers, and enterprise applications
- Strong analytical and problem-solving skills, with the ability to translate security risks into practical technical recommendations and solutions
- Strong communication and stakeholder management skills, with the ability to work effectively across cybersecurity and technology teams