Live Jobs
Discover and Apply for Jobs
Head of Security Architecture (m/f/d)
We are currently seeking a Head of Security Architecture Manager to join their team and lead the development and implementation of cloud security strategies and solutions.
Key Responsibilities:
- Lead the design and implementation of secure cloud solutions and services across business and IT support areas.
- Drive the successful configuration and implementation of cloud security solutions to minimize overall risk.
- Conduct individual, independent security reviews of vendor proposals, review security architectures, and recommend modifications to the information security operation to evaluate risk, reduce costs, or improve service.
- Develop a thorough understanding of existing networks and security controls and access levels, yielding a preliminary system security concept of operations, including baseline security capabilities and requirements.
- Serve as a cloud security subject matter expert and trusted advisor; provide advisory and consulting services as needed to various departments and project teams.
- Evaluate acquisition documents against existing and proposed security architectures and designs.
- Manage the security architecture program, including the development and implementation of effective security design, frameworks, and architecture across all systems and platforms.
- Enforce and establish cloud security configuration baselines and security patching for all applications, systems, databases, OSs, and network assets.
- Prepare cost estimates and identify security and cost opportunities, risks, and issues.
- Oversee and approve cloud security architecture requirements, projects, vendor selection, and controls to maintain a unified vision.
- Design, manage, and socialize a unified cloud security blueprint for technology functionality and business capabilities, in alignment with the overarching information security strategy and policies.
- Manage and lead regular periodic cloud architecture and security assessments in line with mandates and external regulations.
- Build cloud security roadmap and plan, coordinate, and drive the design, development, and implementation of cloud protection solutions.
- Manage cloud transformation and architecture projects, requiring elevated communication with internal and external stakeholders, including senior management, until delivery.
- Manage and conduct the needed third-party assessments for business cloud projects.
Qualifications and Skills:
- Bachelor's degree in Computer Science, Information Security, or a related field. A master’s degree is a plus.
- 8-12 years of experience working within the information security and/or architecture disciplines.
- Minimum 5 years of experience designing and securing cloud infrastructure and applications in leading banks or financial institutions with a focus on data security.
- Extensive relevant professional work experience, including implementation of complex cloud migration programs.
- Experience in independently running security initiatives/projects for large global enterprises.
- Planning, organizational, and motivational experience.
- Experience drafting in technical and non-technical formats.
- Experience presenting both extemporaneously and in formal settings.
- Experience in root cause analysis, industry benchmarking, survey evaluation, and data interpretation.
- Experience in the areas of emergency/disaster management, physical security, critical incident stress management, risk management, and business resiliency.
- Experience with emergency procedure protocols and regulatory interfaces.
- Experience leading complex projects.
- Extensive hands-on experience with cloud security solutions and standards.
- Proven track record of developing and implementing security strategies and policies.
- Solid understanding of regulatory compliance and risk mitigation.
- Strong knowledge of digital security solutions and architecture reviews.
- High level of knowledge in banking business requirements and fintech partnership models.
- Strong understanding of Azure cloud architecture, firewalls, Intrusion Detection Systems, web filtering, audit and log management, physical security control systems, real-time systems, and common operating systems. AWS experience is highly preferred.
- Knowledge of security technologies, processes, systems/applications, and familiarity with banking and financial institutions applications used for mobile and online banking, ATMs, payments, treasury, and trade finance.
- Knowledge of security engineering, system and network security, authentication and security protocols, cryptography, and application security.
- Knowledge of TOGAF, SABSA, ISO 27001, NESA, PCI DSS, SWIFT, and other security standards and regulations.
- Background in securing multi-tenant cloud and big data services, and/or designing separation controls in cloud systems.
- Familiarity with large-scale cloud migration programs.
- Understanding of security requirements and controls around Continuous Delivery/Continuous Integration.
- Possesses strong business acumen, understanding contract negotiations, budgetary disciplines, issues resolution, and ability to influence and collaborate with colleagues.
- One or more of the following technical certifications: TOGAF, CCIE, CCSP, CISSP, CISA, CISM, CRISC, CGEIT, ITIL.
- Two or more of the following cloud certifications: CCSK, CCAK, CCSP, PECB Lead Cloud Security.
- Two or more of the following Azure certificates: AZ-500, SC-100, SC-200, SC-300, AZ-104.
Halian Group: With over 28 years of experience, we have come to understand that innovation is the only way to provide agile, practical solutions that transform businesses and careers. Our resourcing and smart services help you to realize tomorrow’s potential. Discover the amazing things possible when you bring the right people and the right technologies together.
At Halian, we recognize that diversity, equity, and inclusion (DEI) are essential to building high-performing teams for our clients. We are committed to connecting organizations with top talent from all backgrounds, ensuring that every individual feels valued, respected, and empowered to contribute their unique perspectives. We encourage applications from all qualified candidates, regardless of race, gender, disability, or any other characteristic that makes them unique. By fostering diverse and inclusive workplaces, we help our clients drive innovation, enhance collaboration, and better reflect the communities they serve.
#LI-CC1