Job Description:
Experience: 10+ years
Job Summary:
We are seeking a highly experienced and technically proficient Lead Security Architect / Delivery Architect to lead the design, implementation, and delivery of complex cybersecurity solutions. The ideal candidate will have a deep understanding of the cybersecurity landscape, private cloud environments, and hands-on experience with leading security technologies. This role requires strong leadership in project delivery, architecture governance, and ensuring compliance and security across all phases of the project lifecycle.
Key Responsibilities:
- Lead the end-to-end design and delivery of security solutions across multiple projects and environments.
- Collaborate with stakeholders to define High-Level Design (HLD) and Low-Level Design (LLD) documents, ensuring alignment with security and compliance requirements.
- Oversee the implementation and integration of 5+ security solutions in on-premises and private cloud environments.
- Ensure all security and compliance requirements are met throughout the project lifecycle — from design to deployment and operations.
- Provide technical leadership and guidance to engineering and operations teams during the rollout of new services and solutions.
- Act as a security advisor to internal teams and clients, ensuring best practices are followed.
- Identify and mitigate risks related to infrastructure, application, and data security.
- Maintain up-to-date knowledge of emerging threats, vulnerabilities, and regulatory requirements.
- Drive incident response planning, vulnerability assessments, and remediation strategies.
- Collaborate with cross-functional teams to define and implement security policies, standards, and procedures.
Technical Skills & Expertise:
- Security Architecture & Design:
- Strong experience in designing secure architectures for enterprise environments.
- Expertise in developing HLDs and LLDs with a focus on security and compliance.
- Cybersecurity Solutions (Hands-on with at least 3-4):
- SIEM (e.g., Splunk, IBM QRadar)
- Endpoint Detection & Response (EDR) tools (e.g., CrowdStrike, SentinelOne)
- Identity & Access Management (IAM) solutions (e.g., Okta, Azure AD)
- Firewalls and Network Security (e.g., Palo Alto, Fortinet)
- Data Loss Prevention (DLP)
- Vulnerability Management (e.g., Tenable, Qualys)
- Encryption and PKI
- Cloud & Infrastructure Security:
- Deep understanding of private cloud and hybrid cloud security models.
- Familiarity with cloud-native security tools (e.g., AWS Security Hub, Azure Security Center).
- Experience with on-premises integration and securing legacy systems.
- Compliance & Governance:
- Knowledge of regulatory frameworks such as ISO 27001, NIST, GDPR, HIPAA, PCI-DSS.
- Experience in conducting security assessments, audits, and risk analysis.
- DevSecOps & Automation:
- Understanding of integrating security into CI/CD pipelines.
- Familiarity with tools like Terraform, Ansible, Jenkins, etc., for secure infrastructure provisioning.
- Project Delivery & Leadership:
- Proven track record of leading security delivery for large-scale projects.
- Strong stakeholder management and communication skills.
- Ability to mentor and guide junior architects and engineers.
Preferred Qualifications:
- Bachelor’s or Master’s degree in Computer Science, Information Security, or related field.
- Industry certifications such as CISSP, CISM, TOGAF, SABSA, CCSP, AWS/Azure Security Specialty.
- Experience working in regulated industries (e.g., BFSI, Healthcare, Government) is a plus.
Soft Skills:
- Strong analytical and problem-solving skills.
- Excellent verbal and written communication.
- Ability to work independently and in a team-oriented, collaborative environment.
- High attention to detail and a proactive mindset.