Overview
Our security organization is responsible for protecting large-scale digital platforms, infrastructure, and customer-facing services from evolving cyber threats. We build and operate security capabilities that enable proactive defense, rapid incident response, and continuous visibility across globally distributed technology environments.
As part of this effort, we are seeking an experienced Security Architect to define the future of our monitoring and response architecture. This individual will establish the technical vision for how security data is collected, processed, analyzed, and acted upon across complex hybrid cloud environments.
The role combines architecture, strategy, and technical leadership, requiring someone who can translate long-term security objectives into scalable engineering solutions.
Responsibilities
- Create the architectural vision for a large-scale security monitoring ecosystem encompassing SIEM, security data lake, and SOAR capabilities.
- Design platforms capable of ingesting, processing, and analyzing massive volumes of security telemetry generated across global private and public cloud environments.
- Define approaches for correlating security logs, cloud telemetry, endpoint data, and infrastructure events to improve detection accuracy and visibility.
- Establish scalable detection architectures that support threat hunting, incident investigation, and advanced attack detection.
- Design automated response capabilities that enable rapid containment and remediation of security incidents with minimal manual intervention.
- Partner with cloud infrastructure, platform engineering, and site reliability teams to ensure security observability is embedded throughout the technology stack.
- Evaluate and recommend commercial and open-source security technologies based on scalability, performance, operational requirements, and long-term architectural fit.
- Develop enterprise-wide standards for telemetry collection,
log management, monitoring, detection, and response.
- Define technical roadmaps and guide engineering teams through implementation of monitoring and response capabilities.
- Act as the primary architectural authority for security monitoring and response initiatives.
Required Experience
- More than 10 years of experience in information technology, cybersecurity, or related technical fields.
- At least 5 years of experience designing security architectures for security operations platforms, monitoring environments, or cyber defense systems.
- Strong expertise securing and architecting environments spanning private cloud, AWS, Google Cloud Platform, and Microsoft Azure.
- Extensive experience designing and scaling SIEM or log analytics platforms such as Splunk, Chronicle, Elastic, Sentinel, or equivalent technologies.
- Proven experience designing SOAR platforms or implementing automated security response workflows in large-scale production environments.
- Deep understanding of telemetry pipelines, data processing architectures, and high-volume event ingestion challenges.
- Experience working with streaming and event-processing technologies such as Kafka.
- Ability to convert complex security requirements into practical architectures, implementation plans, and engineering roadmaps.
- Solid knowledge of detection engineering principles and security frameworks such as MITRE ATT&CK; and NIST.
Preferred Experience
- Experience integrating security monitoring architectures across private data centers and public cloud environments.
- Background in software engineering, systems engineering, or platform engineering.
- Ability to develop code, prototypes, or automation to support architectural initiatives.
- Experience within highly regulated industries such as financial services, e-commerce, telecommunications, or other large-scale global organizations.
- Relevant certifications including CISSP-ISSAP, TOGAF, advanced cloud architecture certifications, or equivalent credentials.
📌 SIEM & SOAR Security Architect (India)
🏢 Huxley
📍 India