Key Responsibilities
- Provide strategic thought leadership, architecture expertise (NIST, Zero Trust, Cloud Security Architecture) and build roadmaps to achieve target architecture.
- Development of Zero Trust based architectural artefacts, including high level, and strategy documents, reviewing current state of security and making recommendations for Zero Trust based initiatives
- Define/Develop and document the target reference security architecture (including high level capabilities/services) across hybrid IT (Multi-cloud, On-Premises, Industry) as target architecture.
- Develop and document architecture patterns and blueprints to uplift the coverage of the Security Controls and Capabilities in accordance with the target state architecture.
- Develop and document Technology Security Strategy and actionable Roadmap
- Establish and document technical requirements from the business requirements, create enterprise level security architecture and design
- Architecture assessment and review of solution architecture documentation, high-level and detailed design documentation
- Architectural Advisory & Review (Assessment SABSA, TOGAF, CoBIT, NIST,ZT)
- High Level Architecture Design & Technology Solution (Logical & Component Level Architecture)
- Security Architecture Governance and Management
- Pattern and Technology Standard Management
To qualify for the role, you must have : :
Bachelors or Masters Degree in Computer Science, Information Systems, Engineering, a related field, or equivalent experience.
Experience
- 6+ years experience in architecture, design and engineering experience for enterprise security technologies (System & Network Security, Identity & Access Management, Data Security, Cloud Security, Application Security, SIEM & SOAR, Security Automation, Visibility & Analytics)
- Strong experience in application security and data security
- 2+ Years on any Cloud Platform (AWS, Azure, Google, others).
- Good knowledge of professional software engineering practices & best practices for the full software development life cycle, including coding standards, code reviews, source control management, libraries building, build processes, testing, and operations.
- Deep hands-on experience leading the design, development and deployment of business software at scale.
- Experience in understanding complex software systems architectures and designs with varied technology stack
- Experience with service-oriented architectures, private and public clouds and web services security.
- Experience in or knowledge of Threat Modelling
- Strong skills in security design principles (such as least privilege access, defense in depth)
- Good understanding of Infrastructure and Network Security, Data protection, and Incident response.
- Professional experience and good technical knowledge of application security, system security, network security, authentication/authorization protocols, and cryptography.
- Knowledge on industry standards such as PCI DSS, ISO 27xxx, SOC, HIPAA, GDPR, and NIST/DoD frameworks.
- Experience with enterprise risk management methods and techniques to drive successful outcomes in a global enterprise
environment.
- Good understanding of Enterprise Networks, Security and Identity Access Management.
- Knowledge with agile approaches and Experience in DevOps or DevSecOps, and how they impact risk management and youll also :
Hold Or Be Willing To Pursue Related Professional Certifications Such As SC-100, SC-300, AZ-500, Google Professional Cloud Security Engineer, AWS Certified Security Specialty Or We Look For
- Demonstrated integrity in a professional environment.
- Ability to work independently.
- Have a global mindset for working with different cultures and backgrounds.
- Knowledgeable in business industry standard security incident response process, procedures, and lifecycle.
- Excellent organizational skills and strong attention to detail.
- Excellent teaming skills.
- Excellent social, communication, and writing skills.
- Excellent customer service skills Working at Deloitte Offers : Standard Deloitte boilerplate
(ref:hirist.tech)