Cybersecurity Architect
Role details
Job location
Tech stack
Job description
The GCS - Security Architecture function is responsible for the development of technical security design specifications, integration specifications, standards, requirements, and implementation of appropriate technology architectures to mitigate risks to and customer information assets. This position will work with all global brands as a project resource providing guidance and signing off on project implementations, firewall change requests and provide general guidance on Cybersecurity best practices., * Work with brand IT teams and/or Business stakeholders on their projects to ensure that new systems and/or applications meet security best practices, published minimum security requirements, corporate standards, and policies.
- Research, test and implement security tools to scan, monitor and protect computing and networking environments.
- Document and transition security tools to security operations teams.
- Review network designs, applications data flows, system integrations and provide appropriate signoff
- Create high level network designs fS security tools and reference architectures documentation
- Review system design of existing applications/systems utilizing a common framework to identify potential vulnerabilities and gaps in the system, helping to mitigate cyber risks and protect sensitive data by proactively addressing potential threats before they can be exploited.
- Build, support and mature GCS security tools and architectural review process
- Develop hardening standards for networking and computing environments using industry best practices.
Requirements
- Scope: Experience in Security Architecture, designing secure systems and architectures that can withstand cyber threats. Ability to communicate Cyber security architecture in non-technical terms to business stakeholders. Understanding of AI related Cybersecurity risks. Understanding of OT (Operational Technology) Cybersecurity risks.
- Problem solving: Creating, evaluating, and managing security architectures that align with business goals. Translating technical needs for stakeholders to resolve conflicts and gain agreement on solutions that align with Cybersecurity best practices and enterprise standards and policies.
- Impact: Contribute to technical designs that enforce secure, resilient, and compliant technology infrastructures that protect critical data, * Bachelor''s degree in Cyber Security (Master''s degree a plus). Recognized industry Cybersecurity Certifications such as CISSP.
- Cloud environment (Azure, AWS, Google Cloud Platform) security and design. Application/Web/API/Container Security. Extensive knowledge of Windows, Linux, Network and Cloud Security and Cybersecurity best practices. Understanding of IAM and Least Privileged access models.
- 5+ Cyber Security in Large Enterprise setting
- Solid understanding of Cybersecurity risks in architectural designs and recommending mitigating controls. Key experience should includes cloud security (Azure/AWS/Google Cloud Platform), identity and access management (IAM), network segmentation, encryption, threat modeling within Enterprise IT and OT environments.
- Strong communication and strategic leadership skills are vital for aligning security with business goals.