About the Role:
We are looking for a Security Architect to design and build secure, scalable, and compliant cloud architectures across AWS environments. This role focuses on hands-on architecture design, governance, and embedding security best practices into infrastructure, applications, and DevSecOps pipelines.
Key Responsibilities:
- Design and implement secure AWS architectures (VPC, IAM, KMS, GuardDuty, Macie, Inspector, CloudTrail, WAF, Shield, Secrets Manager, Control Tower, Landing Zones).
- Define enterprise security architecture frameworks and implement Zero Trust and defense-in-depth strategies.
- Embed DevSecOps practices into CI/CD pipelines (IaC scanning, container/Kubernetes security, Lambda/serverless hardening).
- Conduct threat modeling, risk assessments, and security design reviews for enterprise projects.
- Review and approve security posture of third-party applications, SaaS, and integrations.
- Collaborate with IT, DevOps, and product teams as a trusted security advisor.
Qualifications:
- Bachelor's or Master's in Computer Science, Cybersecurity, or related field.
- 812 years of IT/security experience, with 5+ years in AWS security architecture.
- Hands-on expertise in AWS Well-Architected Framework and native security services.
- Strong knowledge of enterprise security frameworks (SABSA, TOGAF, NIST CSF) and UAE regulations (PDPL, NESA, CBUAE).
Preferred Certifications:
- AWS Certified Security Specialty (required)
- CISSP-ISSAP, SABSA, AWS Solutions Architect Professional, CCSP, or CISM
Key Skills:
- Strong architecture design and hands-on AWS security implementation
- Threat modeling, risk assessment, and vendor security evaluation
- Excellent communication with technical and executive stakeholders