Develop a comprehensive understanding of the organization’s technology landscape and security requirements.
Design, build, and implement enterprise-class Zero Trust architectures across hybrid and multi-cloud environments, including containerized workloads (Kubernetes).
Align security strategy and infrastructure with business and technology objectives.
Identify, assess, and communicate current and emerging security threats, including cloud-specific risks.
Architect and implement cloud security controls for GCP, Azure, and Kubernetes, covering identity, network, workload, and data protection.
Plan, research, and design robust security architectures for IT and cloud-based projects.
Perform or oversee vulnerability testing, risk analysis, and security assessments for on-premises and cloud systems.
Design solutions that balance business requirements, cybersecurity, and compliance needs.
Provide guidance on best practices for security technologies such as firewalls, IDS/IPS, secure email gateways, endpoint protection, SIEM/UEBA, application security, and cloud-native security tools.
Collaborate with DevOps and Cloud Engineering teams to integrate security into CI/CD pipelines and cloud/Kubernetes deployments.
Ensure compliance with industry standards and security frameworks across all environments.
Requirements
Proven experience as a Security Architect or Cloud Security Engineer.
Strong knowledge of cybersecurity principles, frameworks, and best practices.
Hands-on experience with cloud security architecture and engineering in GCP, Azure, and AWS.
Solid understanding of Identity and Access Management, Network Security, Endpoint Security, Application Security, and Infrastructure Visibility.
Experience with security and compliance standards such as NIST CSF, NIST SP800-53, NIS 2.0, OWASP, CIS Controls, MITRE ATT&CK, and ISO 27000 series.
Strong problem-solving skills and attention to detail.
Excellent communication and interpersonal skills.
Ability to translate complex technical concepts into clear, actionable language.
Experience working at both tactical and strategic levels.
Familiarity with cloud-native security services, container security (Kubernetes), and DevSecOps practices.