Principal – Workspace Security Architecture and Engineering

Dyson Institute

Singapore

On-site

SGD 250,000 - 360,000

Full time

31 hours ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Dyson Institute is seeking a Principal Workspace Security Architect to define and drive the end-to-end workplace security strategy, architecture, and governance across end-user computing, collaboration, identity, and communications platforms globally.

You will lead Zero Trust adoption, serve as the technical authority for security controls, and own security roadmaps and investments, partnering with platform engineering to ensure secure-by-design IT delivery at scale.

Qualifications

  • Bachelor's degree in cyber security, IT, computer science, or equivalent practical experience.
  • Minimum 7–10 years of cybersecurity experience focusing on vulnerability management, security operations, or risk management in enterprise settings.
  • Experience running vulnerability management programs at scale with governance and remediation outcomes; CISSP/CISM/CRISC/GIAC desirable.

Responsibilities

  • Define and drive end-to-end workplace security strategy, architecture, and governance.
  • Lead Zero Trust adoption across end-user computing and related platforms.
  • Act as Technical Design Authority for workplace security controls and patterns.
  • Own security roadmaps, technology selections, and risk-reduction investments.
  • Collaborate with platform engineering to embed secure-by-design principles.

Skills

Vulnerability mgmt
Security ops
Risk management
Zero Trust
Governance
Stakeholder mgmt
Security architecture
Automation

Education

Bachelor's degree in Cyber Security
Equivalent practical experience

Tools

Qualys
Tenable
Rapid7
ServiceNow

Job description

Principal – Workspace Security Architecture and Engineering Role

Principal Workspace Security Architecture and Engineering

Reporting to: Chief Information Security Officer

Role type: Manager

Role Purpose: As the Principal Workplace Security Architect, you are accountable for defining and driving the end-to-end workplace security strategy, architecture, technology roadmap, and governance across end-user computing, collaboration, identity, and communications platforms globally. Operating as a strategic Individual Contributor and Technical Design Authority, you will lead the adoption of Zero Trust principles across workforce technologies. By establishing robust security standards and reference architectures, you will proactively reduce cyber risk, guide platform engineering execution, and ensure that workplace capabilities are secure-by-design. In this role, you will lead and manage the following domains:

  • Workplace Security Strategy & Governance: Defining enterprise-wide workplace security policies, architectural standards, and governance frameworks.
  • Zero Trust & Target Architecture: Designing reference architectures and driving Zero Trust adoption across all end-user technologies.
  • Technical Design Authority: Serving as the final technical authority for workplace security controls, architectural patterns, and design reviews.
  • Security Roadmap & Investment: Owning long-term security roadmaps, technology selections, and risk-reduction investment plans.
  • Cross-Functional Security Alignment: Partnering with platform engineering teams to embed secure-by-design principles throughout IT delivery.
Key Skills & Qualifications

Bachelor's degree in cyber security, Information Technology, Computer Science, or a related discipline (or equivalent practical experience). A minimum of 7–10 years’ experience in cybersecurity, with a strong focus on vulnerability management, security operations, or risk management within enterprise environments. Demonstrated experience operating and improving vulnerability management programmes at scale, including ownership of tooling, governance, and remediation outcomes. Relevant industry certifications (e.g. CISSP, CISM, CRISC, GIAC) are highly desirable, along with proven experience engaging senior stakeholders, managing cross functional delivery, and aligning security outcomes to business risk and priorities.

Vulnerability Management & Security Expertise: Strong understanding of the end to end vulnerability management lifecycle, including discovery, assessment, prioritisation, remediation, and validation. Strong grasp of remediation assurance activities of common vulnerabilities (e.g. CVEs, OWASP, configuration weaknesses) and how they manifest across infrastructure, cloud, endpoint, and application environments, with the ability to apply risk based thinking to reduce exposure.

Tooling & Technical Proficiency
  • Hands on experience with vulnerability management platforms such as Qualys, Tenable, or Rapid7, including asset discovery, agent based and network scanning, and scan optimisation.
  • Ability to interpret scan outputs, manage false positives, tune scan policies, and integrate with CMDB and ITSM platforms (e.g. ServiceNow) to ensure accurate and actionable results.
Risk Management & Prioritisation
  • Ability to assess, quantify, and articulate cyber risk in business terms, leveraging frameworks such as NIST or ISO.
  • Skilled in risk based prioritisation that combines asset criticality, exploitability, and threat intelligence to ensure remediation efforts are focused on the highest impact vulnerabilities.
Governance, Process & Control Design
  • Experience designing and embedding scalable vulnerability management policies, standards, and procedures aligned to audit and compliance expectations.
  • Strong understanding of control frameworks, with the ability to manage exceptions, risk acceptance, and compensating controls in a structured and defensible manner.
Service Delivery & Operational Management
  • Proven capability in running a large scale security service, including managing SLAs, KPIs, backlog, and remediation workflows.
  • Able to drive consistent service performance, ensure high scan coverage and quality, and enforce accountability across distributed engineering and infrastructure teams.
Data Analysis, Reporting & Insight
  • Strong analytical skills to interpret vulnerability data, identify trends, and generate actionable insights.
  • Ability to develop clear reporting and dashboards for both technical and executive audiences, using metrics such as MTTR, SLA adherence, and exposure windows to drive continuous improvement.
Stakeholder Management & Influence
  • Highly effective communicator with the ability to engage, influence, and challenge both technical and non technical stakeholders.
  • Skilled in translating technical findings into business impact, driving remediation accountability, and building strong relationships across infrastructure, product, and risk domains.
Threat Intelligence Integration
  • Understanding of how to integrate cyber threat intelligence into vulnerability management processes, including awareness of actively exploited vulnerabilities and attacker tactics.
  • Ability to collaborate with CTI teams to ensure prioritisation reflects real world threat activity and emerging risks.
Leadership & People Management
  • Experience leading and developing teams, setting priorities, and managing competing demands.
  • Strong decision making capability, with a focus on building team capability, improving performance, and fostering a culture of accountability and continuous improvement.
Continuous Improvement & Automation
  • A continuous improvement mindset with a focus on optimising processes, increasing automation, and reducing manual effort.
  • Experience identifying opportunities to enhance workflows, tooling integration, and efficiency through scripting, APIs, or process redesign.
Success Measures
  • Workplace Security Strategy & Governance: 100% alignment of workplace technology designs with enterprise Zero Trust architecture patterns; high compliance and zero major architectural non-conformances during audit reviews.
  • Technical Design Authority & Architecture Review: All major workplace technology changes reviewed and approved through the technical design authority process; zero high-risk unmitigated architectural flaws introduced into production.
  • Secure-by-Design & Platform Alignment: Measurable structural reduction in workplace vulnerability and misconfiguration surface area; high satisfaction and strong operational alignment scores from partner platform engineering teams.
  • Security Roadmap & Investment Management: Delivery of key security roadmap milestones on schedule and within budget; quantifiable reduction in global workplace cyber risk posture.

Dyson is an equal opportunity employer. We know that great minds don't think alike, and it takes all kinds of minds to make our technology so unique. We welcome applications from all backgrounds and employment decisions are made without regard to race, colour, religion, national or ethnic origin, sex, sexual orientation, gender identity or expression, age, disability, protected veteran status or other any other dimension of diversity.

At Dyson we are focused on solving the problems that others have ignored; solving them first using our technology and ingenuity. In order to achieve this we need to pioneer technologies that are different and authentic. This is the core of what we do and who we are. We must strive to create the future, every single day by developing new things, different things, things that go against the grain with a diverse and global team of ingenious minds.

Dyson employs 14,000 people and is present in more than 80 countries. And while we are growing fast we want Dyson to remain a start-up in spirit with the freedom of experimentation and learning, constantly reinventing our products as well as reinventing how we work, how we sell and how we support our owners. At the same time we are working through the James Dyson Foundation, James Dyson Award and Dyson Institute to inspire future engineers and pioneering a new approach to engineering education.

Underlining everything we do in this diverse environment is the need to always show respect, supporting each other as one team to overcome whatever challenges we encounter. We drive empowerment, development and equality in an inclusive environment for our people around the world. The future doesn't just happen, we look to make it happen, to achieve leaps through pioneering new ideas.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Principal Security Solution Architect (IAM)
Principal Security Solution Architect (IAM)

Dyson Institute • Singapore

On-site
SGD 120,000 - 180,000
Software Test Manager
Software Test Manager

Dyson Institute • Singapore

On-site
SGD 180,000 - 240,000
Senior BI Innov. & Analytics Manager
Senior BI Innov. & Analytics Manager

Dyson Institute • Singapore

On-site
SGD 180,000 - 240,000
Senior BI specialist
Senior BI specialist

Dyson Institute • Singapore

On-site
SGD 150,000 - 210,000
Head of Service Operations
Head of Service Operations

Dyson Institute • Singapore

On-site
SGD 180,000 - 280,000
Lead Software Quality Engineer
Lead Software Quality Engineer

Dyson Institute • Singapore

On-site
SGD 120,000 - 180,000
Principal/Associate Principal Engineer - Requirements, Verification & Validation
Principal/Associate Principal Engineer - Requirements, Verification & Validation

Dyson Institute • Singapore

On-site
SGD 140,000 - 200,000
Senior Manager, PLM Programme & Change
Senior Manager, PLM Programme & Change

Dyson Institute • Singapore

On-site
SGD 180,000 - 240,000
Design Engineer
Design Engineer

Dyson Institute • Singapore

On-site
SGD 80,000 - 120,000
Global Retail Operations Manager
Global Retail Operations Manager

Dyson Institute • Singapore

On-site
SGD 180,000 - 280,000