Security Architect

Tata Consultancy Services

Philadelphia (Philadelphia County)

On-site

USD 110,000 - 140,000

Full time

4 days ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Benefits offered by this job

Discretionary Annual Incentive
Comprehensive Medical Coverage
Dental & Vision Coverage
Family Support: Leaves
401K Plan
Performance Bonus

Job summary

Tata Consultancy Services is seeking a senior cloud security architect in the United States to design and govern enterprise cloud security architectures and guardrails. You will lead cloud security reviews, drive Zero Trust adoption, and define IAM strategies in AWS with least privilege controls.

The role collaborates with SOC teams, DevOps, and executives to ensure continuous compliance and secure cloud implementations across Kubernetes, serverless, and containerized environments.

Qualifications

  • 8+ years in cybersecurity with 3+ years in cloud security architecture
  • Deep expertise in AWS security services
  • Strong understanding of Zero Trust, network security, IAM and encryption
  • Experience with SIEM/SOAR, CSPM, CIEM, CWPP and container security platforms
  • Proficiency in DevSecOps tooling and IaC (Terraform)
  • Knowledge of NIST, CIS, ISO 27001, SOC 2, PCI compliance
  • Awareness of AWS AI services for threat detection and automation

Responsibilities

  • Develop and maintain enterprise cloud security reference architectures and guardrails
  • Lead architectural reviews for cloud initiatives to ensure security alignment
  • Drive adoption of Zero Trust architecture across cloud platforms
  • Design and enforce IAM frameworks in AWS with least privilege governance
  • Establish federation, SSO, and privileged access strategies
  • Implement and maintain controls aligned with NIST, CIS, ISO 27001, PCI, SOC 2
  • Oversee CSPM, CIEM, and security governance tooling for continuous compliance
  • Collaborate with SOC and incident response to improve threat detection
  • Define monitoring strategies with SIEM/SOAR and cloud-native tools
  • Integrate security into CI/CD pipelines with DevOps teams
  • Promote secure IaC practices using Terraform
  • Automate compliance checks, security scans, and remediation workflows
  • Define data protection standards: encryption, tokenization, key management
  • Ensure secure configurations for cloud storage, databases, and data services
  • Architect secure Kubernetes, serverless, and containerized environments
  • Oversee container scanning, registry governance, and runtime protection
  • Advise business/technical teams on cloud security risks and solutions
  • Support audits, risk assessments, and governance processes
  • Communicate architectural decisions to executives and engineering teams

Skills

Cloud security
Zero Trust
IAM
Encryption
DevSecOps
Compliance frameworks

Education

Bachelor's degree in Computer Science

Tools

AWS security services
Terraform
CloudFormation
CI/CD security
SIEM/SOAR
CSPM
CIEM
CWPP
Kubernetes security
EKS hardening

Job description

  • 8+ years in cybersecurity, with at least 3+ in cloud security architecture.
  • Deep expertise in AWS security services.
  • Strong understanding of Zero Trust, network security, IAM, and encryption.
  • Experience with SIEM/SOAR, CSPM, CIEM, CWPP, and container security platforms.
  • Proficiency in DevSecOps tooling and IaC (Terraform).
  • Knowledge of compliance frameworks (NIST, CIS Benchmarks, ISO 27001, SOC 2, PCI).
  • Exposure to AWS AI services such as AWS Security Hub, Amazon Inspector, Amazon GuardDuty — AI Driven Threat Detection
  • IaC and automation experience using Terraform, CloudFormation, and CI/CD security integration.
  • Kubernetes and container security skills covering EKS hardening, image scanning, and runtime protection
  • Develop and maintain enterprise level cloud security reference architectures, patterns, and guardrails.
  • Lead architectural reviews for cloud initiatives to ensure alignment with security standards.
  • Drive adoption of Zero Trust architecture across cloud platforms.
  • Design and enforce IAM frameworks in AWS.
  • Establish least privilege models, federation, SSO, and privileged access strategies.
  • Implement and maintain controls aligned with frameworks such as NIST, CIS, ISO 27001, PCI, and SOC 2.
  • Oversee CSPM, CIEM, and security governance tooling to ensure continuous compliance and posture management.
  • Collaborate with SOC and incident response teams to enhance cloud threat detection.
  • Define monitoring strategies using SIEM/SOAR and cloud-native capabilities.
  • Integrate security into CI/CD pipelines in coordination with DevOps teams.
  • Promote secure Infrastructure as Code practices using Terraform
  • Automate compliance checks, security scans, and remediation workflows.
  • Define enterprise data protection standards for encryption, tokenization, key management, and data classification.
  • Ensure secure configurations for cloud storage, databases, and data services.
  • Architect secure Kubernetes, serverless, and containerized environments.
  • Oversee container scanning, registry governance, and runtime protection.
  • Act as a senior advisor to business and technical teams on cloud security risks and solutions.
  • Support audits, risk assessments, and enterprise governance processes.
  • Communicate architectural decisions and rationale to executives and engineering teams.
Job Description
  • 8+ years in cybersecurity, with at least 3+ in cloud security architecture.
  • Deep expertise in AWS security services.
  • Strong understanding of Zero Trust, network security, IAM, and encryption.
  • Experience with SIEM/SOAR, CSPM, CIEM, CWPP, and container security platforms.
  • Proficiency in DevSecOps tooling and IaC (Terraform).
  • Knowledge of compliance frameworks (NIST, CIS Benchmarks, ISO 27001, SOC 2, PCI).
  • Exposure to AWS AI services such as AWS Security Hub, Amazon Inspector, Amazon GuardDuty — AI Driven Threat Detection
  • IaC and automation experience using Terraform, CloudFormation, and CI/CD security integration.
  • Kubernetes and container security skills covering EKS hardening, image scanning, and runtime protection
Roles & Responsibilities
  • Develop and maintain enterprise level cloud security reference architectures, patterns, and guardrails.
  • Lead architectural reviews for cloud initiatives to ensure alignment with security standards.
  • Drive adoption of Zero Trust architecture across cloud platforms.
  • Design and enforce IAM frameworks in AWS.
  • Establish least privilege models, federation, SSO, and privileged access strategies.
  • Implement and maintain controls aligned with frameworks such as NIST, CIS, ISO 27001, PCI, and SOC 2.
  • Oversee CSPM, CIEM, and security governance tooling to ensure continuous compliance and posture management.
  • Collaborate with SOC and incident response teams to enhance cloud threat detection.
  • Define monitoring strategies using SIEM/SOAR and cloud-native capabilities.
  • Integrate security into CI/CD pipelines in coordination with DevOps teams.
  • Promote secure Infrastructure as Code practices using Terraform
  • Automate compliance checks, security scans, and remediation workflows.
  • Define enterprise data protection standards for encryption, tokenization, key management, and data classification.
  • Ensure secure configurations for cloud storage, databases, and data services.
  • Architect secure Kubernetes, serverless, and containerized environments.
  • Oversee container scanning, registry governance, and runtime protection.
  • Act as a senior advisor to business and technical teams on cloud security risks and solutions.
  • Support audits, risk assessments, and enterprise governance processes.
  • Communicate architectural decisions and rationale to executives and engineering teams.
TCS Employee Benefits Summary
  • Discretionary Annual Incentive.
  • Comprehensive Medical Coverage: Medical & Health, Dental & Vision, Disability Planning & Insurance, Pet Insurance Plans.
  • Family Support: Maternal & Parental Leaves.
  • Insurance Options: Auto & Home Insurance, Identity Theft Protection.
  • Convenience & Professional Growth: Commuter Benefits & Certification & Training Reimbursement.
  • Time Off: Vacation, Time Off, Sick Leave & Holidays.
  • Legal & Financial Assistance: Legal Assistance, 401K Plan, Performance Bonus, College Fund, Student Loan Refinancing.

Salary Range: $110,000 - $140,000 a year

Qualifications

BACHELOR OF COMPUTER SCIENCE

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Enterprise Cybersecurity Architect
Enterprise Cybersecurity Architect

Tata Consultancy Services • New York (NY)

On-site
USD 120,000 - 140,000
Annual incentive
Medical coverage
Parental leave
+10
Security Engineering
Security Engineering

Tata Consultancy Services • Alpharetta (GA)

On-site
USD 70,000 - 80,000
Discretionary Annual Incentive
Medical Coverage: Medical & Health,…
Maternal & Parental Leaves
+5
Network Security Consultant
Network Security Consultant

Tata Consultancy Services • Waltham (MA)

On-site
USD 110,000 - 130,000
Discretionary annual incentive
Medical coverage
Parental leaves
+2
AWS Infra Architect
AWS Infra Architect

Tata Consultancy Services • Atlanta (GA)

On-site
USD 120,000 - 160,000
Comprehensive Medical Coverage
401K Plan
Certification & Training Reimbursement
+1
Cloud & Infrastructure Engineering / Architect
Cloud & Infrastructure Engineering / Architect

Tata Consultancy Services • Richfield (MN)

On-site
USD 120,000 - 145,000
Discretionary Annual Incentive
Comprehensive Medical Coverage: Health
Family Support: Leaves
+3
Scrum Master
Scrum Master

Tata Consultancy Services • Chicago (IL)

On-site
USD 100,000 - 120,000
Discretionary Annual Incentive
Comprehensive Medical Coverage
401K Plan
+2
Cybersecurity Engineer
Cybersecurity Engineer

OneImaging • Bellevue (WA)

On-site
USD 100,000 - 130,000
Health Care Plan
Retirement Plan
Paid Time Off
+2
Cloud Operations Manager
Cloud Operations Manager

Tata Consultancy Services • Philadelphia

On-site
USD 130,000 - 150,000
Discretionary Annual Incentive
Comprehensive Medical Coverage
Maternal & Parental Leaves
+3
Cyber Security Admin
Cyber Security Admin

Tata Consultancy Services • Plano (TX)

On-site
USD 120,000 - 140,000
Discretionary Annual Incentive
Comprehensive Medical Coverage
Maternal & Parental Leaves
+3
Cloud Engineer
Cloud Engineer

Tata Consultancy Services • New London (NH)

On-site
USD 150,000 - 180,000
Annual incentive
Medical coverage
Parental leave
+6