Cybersecurity Architect
Role details
Job location
Tech stack
Job description
Cybersecurity Architect specialized in cloud, infrastructure, and network security, with extensive experience designing and securing complex hybrid and multi-cloud environments. Proven expertise in defining secure architectures, network segmentation models, and cloud-native security controls across AWS, Azure, GCP, and on-prem platforms. Skilled in aligning security architectures with Zero Trust principles, regulatory requirements, and operational resilience, while collaborating closely with infrastructure, cloud, and network teams to deliver secure and scalable enterprise solutions. Who You Are
Cybersecurity Architect specialized in cloud, infrastructure, and network security, with extensive experience designing and securing complex hybrid and multi-cloud environments. Proven expertise in defining secure architectures, network segmentation models, and cloud-native security controls across AWS, Azure, GCP, and on-prem platforms. Skilled in aligning security architectures with Zero Trust principles, regulatory requirements, and operational resilience, while collaborating closely with infrastructure, cloud, and network teams to deliver secure and scalable enterprise solutions., * Design and maintain secure cloud, infrastructure, and network architectures across hybrid and multi-cloud environments
- Define network security models, including segmentation, trust boundaries, and secure connectivity patterns
- Architect and oversee the implementation of Zero Trust and identity-driven security architectures
- Lead security architecture reviews for cloud platforms, infrastructure services, and network designs
- Define security reference architectures, standards, and patterns for infrastructure and communications
- Collaborate with cloud, infrastructure, and network engineering teams to embed security controls by design
- Ensure secure implementation of encryption, key management, and data protection mechanisms
- Support risk assessments and threat modeling related to infrastructure and cloud attack surfaces
- Align security architectures with business continuity, disaster recovery, and resilience requirements
- Integrate cloud and infrastructure security with SOC, logging, and monitoring capabilities
- Provide architectural guidance during cloud migrations and modernization programs
- Ensure alignment with regulatory, compliance, and audit requirements
- Continuously assess emerging threats and technologies to evolve cloud and infrastructure security architectures
Being You
Diversity is a whole lot more than what we look like or where we come from, it's how we think and who we are. We welcome people of all cultures, backgrounds, and experiences. But we're not doing it single-handily: Our Kyndryl Inclusion Networks are only one of many ways we create a workplace where all Kyndryls can find and provide support and advice. This dedication to welcoming everyone into our company means that Kyndryl gives you - and everyone next to you - the ability to bring your whole self to work, individually and collectively, and support the activation of our equitable culture. That's the Kyndryl Way. What You Can Expect
Requirements
Bachelor's or Master's degree in Computer Science, Information Security, Engineering, or related field.
Certifications:
- CISSP
- CISM
- CISA
- CSSLP
Experience
6+ years in cybersecurity services. Languages
Spanish and English (B2 level or higher). Skills and Knowledge
- Deep expertise in cloud security architectures (AWS, Azure, GCP) and shared responsibility models
- Strong knowledge of hybrid and multi-cloud environments, including connectivity and inter-cloud networking
- Advanced understanding of network security and communications (firewalls, WAF, IDS/IPS, VPN, SD-WAN)
- Experience with network segmentation and microsegmentation strategies
- Strong background in infrastructure security (compute, storage, virtualization, hypervisors)
- Expertise in Zero Trust architectures and identity-centric security models
- Solid understanding of identity and access management (IAM), privileged access, and federation
- Knowledge of cloud-native security services (AWS Security Hub, Azure Defender / Microsoft Defender for Cloud)
- Experience with encryption, key management, and secrets management (KMS, HSM, PKI)
- Familiarity with Infrastructure as Code (IaC) and security controls for Terraform, ARM, CloudFormation
- Understanding of resilience, availability, and disaster recovery from a security architecture perspective
- Knowledge of network monitoring, logging, and traffic inspection in cloud and hybrid environments
- Strong understanding of security frameworks and standards (NIST CSF, NIST 800-53, ISO 27001)