Responsibilities:
● Design and implement security architecture solutions aligned with business requirements
and industry best practices.
● Conduct security assessments and vulnerability analysis to identify and remediate gaps in
existing infrastructure.
● Develop comprehensive documentation, including threat models and architecture
diagrams, to standardize security across the organization.
● Collaborate with cross-functional teams to integrate security controls directly into the
software development lifecycle (SDLC).
● Evaluate and pilot emerging security technologies to maintain a proactive defense posture
against evolving threats.
● Mentor junior team members and lead security awareness initiatives to foster a culture of
collective responsibility.
● Architect secure cloud solutions that ensure continuous compliance with organizational
policies and cloud-native best practices.
● Perform cloud hardening by evaluating infrastructure configurations and implementing
rigorous security benchmarks.
● Oversee IAM strategies across multi-cloud environments (AWS/GCP)
to enforce strict
least-privilege access and identity governance.
● Automate security guardrails through Infrastructure as Code (IaC) to ensure consistent
security deployment across all environments.
● Design centralized logging and monitoring frameworks to provide the visibility required
for effective threat detection and response.
● Integrate SAST, DAST, and SCA tools into CI/CD pipelines to automate the detection of
vulnerabilities in custom code and third-party libraries.
● Develop security blueprints for containerized environments (Kubernetes/Docker) covering
image signing, pod security, and runtime protection.
● Define Data Loss Prevention (DLP) architectures to monitor and control the movement of
sensitive data across cloud and hybrid environments.
● Map technical security controls to regulatory frameworks (SOC2, ISO 27001, GDPR) to
ensure the architecture meets audit requirements.