About the Role :
We are seeking a seasoned Enterprise Security Architect to lead the design and implementation of comprehensive security solutions across our enterprise.
The ideal candidate will have a deep understanding of security architecture frameworks and hands-on experience in developing secure infrastructure and applications to protect critical business assets.
This role is pivotal in shaping our cybersecurity strategy, ensuring compliance, and mitigating risks in an increasingly complex threat landscape.
Key Responsibilities :
- Develop, maintain, and enforce enterprise-wide security architecture strategies, frameworks, standards, and guidelines.
- Design and implement security solutions encompassing network security, identity and access management, data protection, endpoint security, cloud security, and application security.
- Collaborate with IT, development, and operations teams to embed security best practices throughout the software development lifecycle (SDLC) and IT operations.
- Assess emerging security threats and technologies, conducting risk assessments and gap analyses to inform mitigation strategies.
- Lead security architecture reviews, threat modeling, and vulnerability assessments for new and existing systems.
- Provide expert guidance on compliance with industry standards and regulations such as ISO 27001, NIST, GDPR, HIPAA, PCI-DSS, etc.
- Drive the integration of security tools and technologies including firewalls, IDS / IPS, DLP, SIEM, IAM, encryption, and endpoint protection.
- Mentor and train technical teams on security principles and emerging threats.
- Partner with stakeholders across the enterprise to align security initiatives with business goals and risk appetite.
Required Skills & Experience :
8+ years of experience in cybersecurity, with a focus on enterprise security architecture.Strong knowledge of security frameworks and standards (e.g., NIST, ISO 27001, CIS, OWASP).Hands-on experience with cloud security (AWS, Azure, GCP), network security, identity management, and endpoint protection.Expertise in security technologies including firewalls, VPN, IAM, SIEM, DLP, encryption, and vulnerability management tools.Experience designing and implementing security architectures in complex, hybrid IT environments.Proven ability to conduct threat modeling, risk assessments, and security audits.Excellent communication skills, capable of conveying complex security concepts to technical and non-technical audiences.Relevant certifications such as CISSP, CISM, TOGAF, SABSA, or equivalent(ref : hirist.tech)