The Enterprise Cyber Security Architect will establish and lead Iarnród Éireann's Cyber Security Architecture capability, ensuring secure, resilient, and compliant IT and OT environments. The role will provide strategic security leadership, embed security into project delivery, and support the organisation's cyber risk management objectives.
Key Responsibilities:
- Develop and maintain the enterprise Cyber Security Architecture roadmap, standards, principles, and reference architectures to ensure secure, resilient, and compliant technology solutions across the IT and OT environments.
- Provide security architecture guidance and assurance across strategic projects and change initiatives.
- Lead security assessments, risk reviews, and threat modelling activities for critical IT and OT assets.
- Collaborate with various stakeholder (project teams, solution architects, OT security experts, etc) to embed security requirements within solution designs.
- Support the development of secure cloud, DevSecOps, and Zero Trust architectures.
- Design and oversee enterprise security solutions, including IAM, SIEM, endpoint security, encryption, and network security controls.
- Evaluate emerging technologies and recommend security improvements.
- Support major cyber incident investigations by providing architectural guidance and identifying opportunities to strengthen security controls and resilience.
- Define security controls for data protection, classification, encryption, retention, and secure information sharing.
- Represent Cyber Security on the Architecture Review Board (ARB).
Required Qualifications & Experience:
- Bachelor's or Master’s degree in Cybersecurity, Information Technology, Computer Science, or a related field.
- 10+ years of experience in security architecture, engineering, or a related role.
- Strong knowledge of NIST, CIS Controls, ISO 27001, Zero Trust, and security best practices.
- Experience with cloud security (particularly Azure), DevSecOps, and enterprise security technologies.
- Knowledge of relevant regulatory frameworks including NIS2 and GDPR.
- Excellent communication, stakeholder management, and problem-solving skills.
- Relevant certifications such as CISSP, CISM, SABSA, TOGAF, or equivalent.
Preferred Skills:
- Experience in Azure and cloud environments.
- Experience working in an OT Environment / Critical National Infrastructure.
- Understanding of AI-driven security solutions and automation.
- Familiarity with programming or scripting languages (e.g., Python, PowerShell).