About the Role
The Cybersecurity Architect is responsible for designing, implementing, and maintaining the enterprise security architecture to safeguard the organization’s information assets. This role ensures security is embedded into all layers of IT and OT systems, applications, and cloud environments, aligning with business objectives, compliance mandates, and industry best practices. The Cybersecurity Architect collaborates closely with engineering, operations, and leadership teams to design scalable, resilient, and secure solutions that defend against evolving cyber threats.
What you will do.
Key Responsibilities
Develop and maintain the organization’s enterprise security architecture framework, ensuring alignment with business and regulatory requirements.
Design and implement security solutions for on-premises, cloud, and hybrid environments, including network security, IAM, data protection, and endpoint security.
Evaluate and recommend new security technologies, tools, and methodologies to enhance the security posture.
Collaborate with IT, DevOps, and application development teams to integrate security into the system development life cycle (SDLC) and DevSecOps pipelines.
Create and maintain security architecture diagrams, roadmaps, and technical documentation.
Establish and enforce security policies, standards, and reference architectures in alignment with frameworks such as NIST, ISO 27001, CIS, and Zero Trust principles.
Conduct risk assessments and threat modeling for new projects, systems, and infrastructure deployments.
Provide guidance and technical leadership during security incidents, audits, and compliance reviews.
Perform architecture reviews of existing systems and recommend enhancements for resiliency, scalability, and compliance.
Mentor and provide technical expertise to security engineers, analysts, and other stakeholders.
Monitor industry trends, emerging threats, and regulatory changes to proactively evolve the security architecture.
What we are looking for.
Required Qualifications
Bachelor’s degree in Computer Science, Cybersecurity, Information Technology, or related field; or equivalent professional experience.
5–7 years of experience in cybersecurity, including 3+ years in a security architecture or engineering role.
Deep understanding of networking, operating systems, encryption, IAM, and cloud platforms (AWS, Azure, GCP).
Expertise in designing secure solutions and integrating security controls across IT, cloud, and hybrid environments.
Hands-on experience with firewalls, SIEM, EDR, DLP, IAM, PAM, and vulnerability management platforms.
Strong knowledge of security frameworks and regulations (NIST CSF, ISO 27001, PCI DSS, HIPAA, SOX, GDPR, etc.).
Excellent communication and documentation skills to translate complex technical concepts into actionable recommendations.
Proven ability to work collaboratively across technical and business teams.
Preferred Qualifications
Advanced degree (Master’s) in Cybersecurity or Information Systems.
Industry certifications such as CISSP, CISM, CCSP, SABSA, TOGAF, GDSA, or OSCP.
Experience with Zero Trust architecture, micro-segmentation, and secure access service edge (SASE) models.
Familiarity with container security, DevSecOps tools, and infrastructure-as-code (IaC) security practices.
Experience conducting red/blue team exercises or advanced threat modeling.