Responsibilities
- Define and maintain enterprise-wide security architecture principles, reference models, and blueprints, ensuring alignment with business and IT strategy.
- Provide architectural guidance to project and product teams, embedding secure-by-design principles across cloud, on-premise, and hybrid environments.
- Conduct architecture risk assessments and threat modeling activities to identify security weaknesses and propose mitigation strategies early in the solution lifecycle.
- Assess and recommend security technologies, tools, and platforms that strengthen the organization's cyber defense posture and align with future-state architecture.
- Act as a bridge between security, IT architecture, development, and business units to ensure security requirements are consistently embedded into design and delivery processes.
- Ensure adherence to internal security policies, architecture standards, and external regulatory requirements (e.g., DORA, NIS2, ISO 27001, NIST) throughout solution architecture.
- Contribute to long-term security architecture roadmaps, enabling secure adoption of new technologies such as Zero Trust, post-quantum cryptography, and AI-driven systems.
- Create and maintain high-quality documentation of security architecture decisions, patterns, and designs.
- Communicate complex technical concepts clearly to both technical and non-technical stakeholders.
Requirements
- Higher education degree in Computer Science, Information Security, or a related technical field.
- Extensive experience in designing and implementing secure architectures for enterprise IT and cloud environments, with a focus on integrating security across the full solution lifecycle.
- Strong ability to apply threat modeling, risk assessments, and secure design principles to ensure that solutions are resilient, compliant, and aligned with organizational risk appetite.
- Proven track record in translating business objectives into secure technical architectures, enabling innovation while maintaining robust cyber resilience.
- Experience working with enterprise architects, development teams, business stakeholders, and operational security units to embed security into IT and business projects from inception to deployment.
- Excellent communication skills in English, with the ability to present complex security topics to both technical and non-technical audiences and drive secure-by-design mindset across teams.
- Strong analytical and conceptual thinking with the ability to assess technical risk, evaluate trade-offs, and recommend secure, practical solutions in complex environments.
Nice to Have
- Relevant certifications such as CISSP, CRISC, CCSP, TOGAF, or SABSA are highly desirable.
- We highly welcome candidates with a genuine interest and affinity for Information Technology (IT) and Generative Artificial Intelligence (GenAI), as these attributes are considered valuable assets to our team.
Benefits
- Hybrid work model which recognizes the value of striking a balance between in-person collaboration and remote working incl. up to 25 days per year working from abroad.
- Compensation and benefits package includes a company bonus scheme, pension, employee shares program and multiple employee discounts (details vary by location).
- Career development and digital learning programs.
- International career mobility.
- Lifelong learning for employees worldwide.
- Environment where innovation, delivery and empowerment are fostered.
- Flexible working.
- Health and wellbeing offers (including healthcare and parental leave benefits).
- Support to balance family and career.
- Help our people return from career breaks with experience that nothing else can teach.