As a leading financial services and healthcare technology company based on revenue, SS&C is headquartered in Windsor, Connecticut, and has 27,000+ employees in 35 countries. Some 20,000 financial services and healthcare organizations, from the world's largest companies to small and mid-market firms, rely on SS&C for expertise, scale, and technology.
Job Description
Cloud Security Architect
Get To Know Us:
SS&C is leading the way. We continue to look for today's and tomorrow's brightest talent, those that embody a spirit to improve not only their lives, but those around them. From college students to seasoned and experienced professionals, we encourage you to apply. SS&C prides itself on hiring diverse, honest, dynamic individuals, who value collaboration, accountability, and innovation to name a few.
The Cloud Security Architect is a strategic change agent and cybersecurity ambassador responsible for implementing, maintaining , and enhancing security controls across multi-cloud environments ( Azure and AWS ). This role focuses on identifying and assessing security threats and risks, defining secure configurations, leading security automation initiatives, and ensuring compliance with industry frameworks ( ISO 27001, SOC 2, NIST CSF, CIS Controls ).
The Cloud Security Architect will collaborate with DevOps, Platform Engineering, and Product teams to embed security throughout the software development lifecycle.
Why You Will Love It Here!
- Flexibility: Hybrid Work Model
- Your Future: Professional Development Reimbursement including access to SS&C University
- Work/Life Balance: Competitive holiday scheme
- Your Wellbeing: Competitive benefits designed to support the wellbeing of our staff
- Diversity & Inclusion: Committed to Welcoming, Celebrating and Thriving on Diversity
- Training: Hands-On, Team-Customised throughout your career
What You Will Get To Do:
Cloud Security Operations
- Design, implement, and maintain security controls across Azure and AWS cloud platforms .
- Conduct continuous security control testing and monitoring of cloud security events and alerts through optimization and automation.
- Triage, validate , and investigate security alerts; esc ...
Security Engineering & Automation
- Develop and implement Infrastructure as Code ( IaC ) security standards using tools such as Terraform, CloudFormation, and ARM templates .
- Integrate security automation into CI/CD pipelines using tools such as GitHub Actions, Azure DevOps, Jenkins, or GitLab CI .
- Build and maintain security tooling for vulnerability scanning, secrets management, and compliance monitoring.
- Create and maintain secure design patterns, reference architectures, and security guardrails.
- Implement policy-as-code using tools such as Open Policy Agent (OPA), Azure Policy, or AWS Config .
Collaboration & Security Enablement
- Partner with DevOps, SRE, and Engineering teams to embed security best practices.
- Provide security consultation during architecture reviews and design phases.
- Reduce security vulnerabilities through security awareness training and knowledge sharing.
- Document security procedures, runbooks, and standards.
- Mentor junior security team members and promote security culture across the organization.
Risk Management & Compliance
- Assess and manage cloud security risks using industry-standard frameworks including NIST and CIS Benchmarks .
- Develop and track security risk metrics to enable data-driven decision-making.
- Support compliance activities for ISO 27001, SOC 2, PCI-DSS, GDPR , and other relevant standards.
- Conduct security assessments of cloud architecture and configurations.
- Facilitate and coordinate internal and external penetration tests and vulnerability assessments.
Dimensions of the Role
- Cross-functional collaboration with Engineering, DevOps, Compliance, and Product teams.
- Internal and external stakeholder management across multiple geographic regions.
- Problem-solving and troubleshooting during security incidents with distributed teams.
- Ability to operate under pressure while providing clear status updates to leadership.
- Capability to work independently and as part of a global virtual team.
- Participation in an on-call rotation for security incident response .
What You Will Bring:
- Cloud Security Expertise - AWS
- Strong understanding of AWS security services including AWS Security Hub, GuardDuty , AWS Config, CloudTrail, and EKS .
- Proficiency with AWS security features including KMS, Secrets Manager, Security Groups, NACLs, WAF, Shield, and CloudFront .
- Experience with AWS identity and access management including IAM policies, roles, SCPs, AWS SSO, and Cognito .
- Knowledge of AWS infrastructure including VPC, Transit Ga