Define and maintain the enterprise security architecture vision and multi-year roadmap.
Align security architecture with corporate strategy, digital transformation, and technology modernization initiatives.
Establish target-state architectures incorporating Zero Trust principles in collaboration with other Information Security and Technology leaders.
Translate risk appetite into enforceable architectural guardrails.
Develop and maintain standardized reference architectures for cloud and hybrid infrastructure, identity & access management, data protection and privacy, network segmentation, application security, AI/GenAI security, OT/IoT.
Ensure security-by-design integration into SDLC and platform engineering models.
Govern architecture artifacts across global business units.
Chair or co-chair the Security Architecture Review Board (SARB).
Define security architecture review processes and risk exception workflows.
Establish measurable design assurance criteria.
Partner with Enterprise Architecture for integrated technology governance.
Translate regulatory and risk requirements into technical control standards.
Ensure compliance with global regulatory regimes (e.g., HIPAA, GDPR, SOX, FDA/GxP where applicable).
Lead security architecture assessments for acquisitions.
Requirements
Master’s Degree in Business Administration, Computer Science, Information Technology or any other related discipline or equivalent related experience
12+ years of directly-related or relevant experience with 8+ years in a managerial capacity, preferably in information security
Preferred Certifications: Certified Cloud Security Professional (CCSP), Certified Information Systems Security Professional (CISSP), Sherwood Applied Business Security Architecture (SABSA), Open Group Architecture Framework (TOGAF), Certified in Risk and Information Systems Control (CRISC), Certification in Information Security Strategy Management (CISM), Microsoft Certified: Cybersecurity Architect Expert (SC-100), Information Technology Infrastructure Library (ITIL), Offensive Security Certified Professional (OSCP), Project Management Professional (PMP) Certification
Behavioral Skills: Coaching and Mentoring, Creativity & Innovation, Decision Making, Leadership Skills, People Management, Planning, Risk-taking
Technical Skills: IT Risk Management, IT Controls, Cyber Attack Mitigation, Enterprise IT Management, Cloud Security, Network Security, Identity & Access Management, Application Security, Service Level Maintenance, Information Security Strategy, Continuity, Threat Modelling, Information Security Strategy Standards (SOX, ISO 27001/27002, COBIT, ITIL, NIST, PCI)