Key Responsibilities:
- Design and implement security controls and architectures to protect Client’s IT and OT assets (on-premise and cloud).
- Support technical risk assessments, identifying vulnerabilities and recommending mitigations.
- Define security requirements for systems, networks, applications, and cloud environments.
- Embed cybersecurity within change management processes and governance.
- Conduct threat modelling and analyze threat intelligence to prioritize mitigation efforts.
- Provide advanced support for complex security incidents.
- Help build the DevSecOps function and support secure SDLC in IAC and CI/CD pipelines (Ansible, Terraform, Docker, K8s, Jenkins, etc.) within a Zero Trust + SASE model.
- Advise on Azure cloud architecture and security best practices, including Power App development.
- Guide product and project teams on incorporating security architecture requirements.
- Roll out and manage Defender for Cloud Apps.
- Advise teams on security principles across multiple domains: containerization, zero trust, encryption, PKI, database, web applications, secure development, infrastructure, cloud, and IAM.
- Design and oversee IAM, endpoint protection, firewalls, SIEM, and encryption solutions.
- Evaluate emerging cybersecurity technologies and recommend improvements.
- Represent cybersecurity on the Architecture Review Board (ARB).
- Support the development of security documentation, policies, standards, and incident response plans.
- Liaise with internal project teams to ensure secure delivery.
Required Qualifications & Experience:
- Bachelor’s or Master’s in Cybersecurity, IT, Computer Science, or related field.
- 10+ years in cybersecurity architecture, security engineering, or related roles.
- Strong knowledge of frameworks like NIST, CIS Controls, and Zero Trust.
- Hands-on experience with firewalls, SIEM, IDS/IPS, DLP, EDR, and cryptography.
- Cloud security expertise (AWS, Azure, GCP) and DevSecOps experience.
- Familiarity with regulatory compliance (NIS2, GDPR, PCI-DSS, HIPAA, ISO 27001).
- Security certifications (CISSP, CISM, SABSA, TOGAF, CCNA) required.
- Excellent analytical, problem-solving, and communication skills.
Preferred Skills:
- Azure expertise and relevant certifications (e.g., Azure Solutions Architect Expert).
- Experience with AI-driven security solutions and automation.
- Scripting/programming skills (Python, PowerShell).
- Experience in large enterprise or government security environments.