Role Overview
We are seeking a Security Architect to design and lead secure enterprise architectures across the organisation. This role ensures security is embedded across business initiatives, technology platforms, and transformation programmes, aligning with ISO 27001, PCI DSS, regulatory requirements, and industry best practice.
Key Responsibilities
- Define and maintain enterprise security architecture aligned with business and technology strategy, ensuring secure-by-design principles.
- Provide architectural oversight across key security domains including DevSecOps, IAM, PAM, SIEM, and DLP, supporting architecture governance and review boards.
- Design and govern security architecture across multi-cloud environments (AWS, Azure, GCP), including cloud security baselines and guardrails.
- Establish DevSecOps frameworks, integrating security tools such as SAST, DAST, and SCA into CI/CD pipelines.
- Define and enhance Identity & Access Management architecture, including identity governance, provisioning (JML lifecycle), and privileged access.
- Strengthen SIEM/SOAR detection capabilities, onboarding key platforms and improving security telemetry and use cases.
- Lead enterprise data protection strategy, covering data classification, encryption, and DLP across endpoints, applications, and cloud.
- Ensure security architecture supports PCI DSS compliance, including protection of the Cardholder Data Environment (CDE).
- Align security architecture with ISO 27001 controls and support scope expansion across systems, entities, and geographies.
- Provide architectural guidance to support external audits and maintain reusable security architecture artefacts.
Skills & Experience
- Strong experience in enterprise security architecture.
- Expertise across several of the following areas:
- Multi-cloud security (AWS, Azure, GCP)
- Identity & Access Management (IGA, PAM)
- DevSecOps and application security
- SOC / SIEM / SOAR
- Data protection and DLP
- Ability to translate business requirements into secure technical architectures.
- Strong stakeholder engagement and documentation skills.
- Experience working within large-scale transformation programmes.