Lead Security Architect - Cloud Database Platforms
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
+12 more
Job description
On behalf of our client, a global financial services enterprise running a large-scale, highly regulated cloud data platform - weâre looking for a Lead Security Architect to own the security of their Oracle (OCI) and PostgreSQL database landscape.ÂżTiene su CV preparado?Si es asĂ y confĂa en que este es el puesto ideal para usted, asegĂşrese de enviar su solicitud lo antes posible.Why this role is different Most security architect roles hand you the rules and expect someone else to build the control.Most DBA/security-engineering roles hand you a ticket and expect someone else to have already decided what âsecureâ means.This role is neither.You will own the full chain: understand what EU regulation (DORA, BaFin, GDPR, and internal group security standards) actually requires, translate that into concrete architecture for the cloud database estate, and then get hands-on with the implementation yourself.Youâll also be the person who sits across the table from auditors and regulators and can explain, in plain language, why the architecture is built the way it is and youâll lead a small squad of engineers who help you deliver it.Our client is entirely cloud-native, working in Kanban, as a pure delivery team fully decoupled from line management - you organize and prioritize the work.What youâll own End-to-end secure architecture for Oracle Database on OCI and PostgreSQL: encryption, key management, hardening, and secure-by-design patterns.Zero Trust network security for cloud database environments - private endpoints, segmentation, certificate lifecycle management.Threat modelling that turns into real engineering controls, not slide decks.Identity and access integration with Microsoft Entra ID, OAuth/OIDC, Conditional Access, Privileged Identity Management for database access.Vulnerability management and DevSecOps practices across the platform.Being the primary point of contact for security audits and annual pentests - prepping, guiding, and converting findings into remediation.Leading and mentoring a 3-person security engineering squad - priorities, incidents, stakeholder communication (including customer-facing conversations).Defining the concept and continuous improvement of audit record collection and SIEM integration for database security alerting.A growing mandate: today itâs mostly Oracle, but PostgreSQL is expanding fast (especially with an upcoming data lake product), and other providers are on the radar.Youâll need to grow the security model with the platform, not just maintain what exists.An open field almost nobody is properly covering yet: security of AI tooling as it gets embedded into the platform.If you want to make this your signature project, thereâs real room to do it.What you bring and why weâre specific about it Strong, hands-on experience securing Oracle Database (including Advanced Security) - experience with Oracle on OCI is a must, not a nice-to-have.Solid PostgreSQL security experience, and genuine openness to extending into Snowflake and other data platforms.Real OCI security and networking expertise, plus working comfort in Azure - the surrounding tech landscape is mostly Azure-based, so you need to operate across both clouds.Deep, practical knowledge of Microsoft Entra ID and identity-based database access.Working knowledge of security and compliance frameworks such as ISO *****, SOC 2, GDPR, CIS Benchmarks, and DORA Certificate lifecycle and secrets management experience.Previous experience leading or tech-leading a team, ideally shaped by a DevOps career path, in agile/Kanban environments.Excellent communication skills - you can explain a complex control decision to an engineer and to a non-technical compliance stakeholder in the same afternoon.xsgfvud If youâre this rare mix of architect, hands-on implementer, and regulatory translator and the idea of owning security for a large-scale cloud database platform (with room to shape how AI security gets handled next) excites you, weâd love to hear from you.Apply directly or reach out to to learn more.
Requirements
What you bring and why weâre specific about it Strong, hands-on experience securing Oracle Database (including Advanced Security) - experience with Oracle on OCI is a must, not a nice-to-have. Solid PostgreSQL security experience, and genuine openness to extending into Snowflake and other data platforms. Real OCI security and networking expertise, plus working comfort in Azure - the surrounding tech landscape is mostly Azure-based, so you need to operate across both clouds. Deep, practical knowledge of Microsoft Entra ID and identity-based database access. Working knowledge of security and compliance frameworks such as ISO *****, SOC 2, GDPR, CIS Benchmarks, and DORA Certificate lifecycle and secrets management experience. Previous experience leading or tech-leading a team, ideally shaped by a DevOps career path, in agile/Kanban environments. Excellent communication skills - you can explain a complex control decision to an engineer and to a non-technical compliance stakeholder in the same afternoon. xsgfvud If youâre this rare mix of architect, hands-on implementer, and regulatory translator and the idea of owning security for a large-scale cloud database platform (with room to shape how AI security gets handled next) excites you, weâd love to hear from you.
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role â technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.
7 Cloud Computing Trends Coming in 2025 for Developers
Why Upskilling And Reskilling is Important For Developers
How We Built a Worry-Free System That Runs for 10+ Years â And What Weâd Do Again