Cloud Security Architect
--GTA--
Role Purpose
The purpose of the Security Architect role is to:
- Within one or more security domains, define and oversee the implementation of strategic cyber security capabilities through:
- Contributing to target architecture and roadmaps
- Working with others to embed ‘security by design’ and ‘privacy by design’ into all projects
- Undertaking reviews and governance of technology architecture
- Work with the CISO and Infra team to design security solutions meeting internal standards
- Deliver security solutions that progress the overall architecture journey and are aligned to IT strategy
- Comply with standards, design approaches and governance.
Capabilities
- Design and oversee security solutions for AWS environments, ensuring compliance with industry standards
- Expertise in enabling security solutions utilizing AWS security services such as AWS Security Hub, AWS Config, AWS Macie, AWS GuardDuty, AWS IAM, and industry-standard security tools
- Implement endpoint security measures using CrowdStrike tools such as Falcon Complete, Falcon Insight, and Falcon Prevent
- Nice to have certifications such as AWS Certified Security – Specialty, CISSP, or CCSP
- Knowledge of application security using Dynatrace
- Collaborate with teams to integrate security measures throughout the development lifecycle
- Conduct security assessments and risk analysis to identify and mitigate threats
- Manage IAM solutions, including Intra ID and OKTA for B2B authentication
- Direct, hands-on experience or strong working knowledge of managing security infrastructure — e.g., firewalls, intrusion prevention systems (IPSs), web application firewalls (WAFs), endpoint protection, SIEM, and log management technology
- Direct, hands-on experience or a strong working knowledge of vulnerability management tools
- Stay updated with security trends and technologies to address emerging risks
- Excellent problem-solving and communication skills
- Knowledge of cloud-native and modern application architecture
- Ability to balance long-term direction and necessary short-term goals
- Effective communication skills with the ability to provide technical guidance to peers and project colleagues
- Good stakeholder and relationship management
- Leadership skills
Accountabilities
Nature of Work
Solutions and Assurance
- Create solutions and design for projects to meet internal standards for technology and ensure they meet ambitions for availability, security, resilience, and performance
- Produce design options with associated costs, benefits, and risks to enable investment decisions
- Work with product owners, architects, platform teams, and other project colleagues to agree tradeoffs between long-term and short-term goals
- Responsible for the integrity of the end-to-end solution across Platforms, including transition states used to achieve the target state
- Shape and estimate IT initiatives and feature team sprints, ensuring that component parts deliver against business outcomes
- Ability to communicate complex technical concepts to both technical and non-technical audiences
- Record any solution debt incurred during the transition phase of the solution and address the same in future phases
- Identify potential risks and challenges associated with proposed solutions
- Develop mitigation strategies to address identified risks
- Participate in post-implementation reviews and provide feedback to improve future solution designs
Technical Leadership
- Keep up with technological developments in the digital and integration areas and evaluate how well they fit into the company's architecture
- Evaluate and recommend tools, frameworks, and platforms to support the development and deployment of solutions
- Support defining the architecture best practices and standards and enforcing them in the project solutions
- Conduct architecture reviews to ensure compliance with established guidelines
- Ensure design artefacts are produced to support stakeholder groups for service, security, architecture, and engineering
- Peer review the design artefacts of others
- Provide coaching, mentoring, and training to less experienced team members as required
Design Community Membership
- Contribute to the Solution Architecture community by leading or participating in initiatives to improve the organization’s approach to design
- Develop your technical skills to support the need to understand and exploit emerging technology trends
Problem Solving
- The essence of the role is project-based problem solving
- Accountable for solving problems and dealing with difficulties in line with policy, process, and other guidelines, applying technical knowledge and expertise
- Depending on the nature of the specific role, problems can range from repetitive daily issues to complex technical problems requiring significant expertise
- Escalate problems according to guidelines
Change
- Recommend design solutions or ideas in response to challenges faced by your project or feature team in line with policy, process, and other guidelines
- Accountable for recommending change based on expert know-how and analysis
- Take personal initiative in adapting to change
Internal Collaboration
Build effective working relationships with:
- Project managers and others on projects
- Platform Managers and Specialists
- Platform Architects and Designers
External Interaction
- Maintain liaison with suppliers and the relevant sources of technology to ensure the specialist knowledge is kept up to date.