Security Architect
Posted Jul 13, 2026
About the Role
The Security Architect is responsible for defining, reviewing, and governing enterprise security architecture across business applications, infrastructure, cloud platforms, and technology initiatives.
The role ensures security is integrated into solution design from the beginning, supporting secure architecture decisions across hybrid and multi-cloud environments.
The successful candidate will provide security architecture guidance, perform risk assessments, review technical designs, and ensure alignment with enterprise security standards and frameworks.
Responsibilities
Security Architecture & Governance
- Define and maintain enterprise security architecture frameworks and standards.
- Apply TOGAF/SABSA principles to develop security architecture models.
- Establish security reference architectures, patterns, and design guidelines.
- Review security designs, architecture documents, HLDs, LLDs, solution diagrams, and technical proposals.
- Participate in architecture review boards and change approval processes.
Security Design for New Initiatives
- Ensure security-by-design and security-by-default principles are applied across new projects.
- Review security requirements across applications, data platforms, infrastructure, cloud environments, and integration layers.
- Provide security recommendations during solution planning and implementation.
Existing Environment Security Improvements
- Assess existing platforms and identify security gaps.
- Recommend improvements aligned with security standards and best practices.
- Drive improvements across infrastructure, application, identity, and data security layers.
Security Assessment & Risk Analysis
- Conduct security architecture reviews and technical assessments.
- Perform threat modelling, risk assessments, security design reviews, control effectiveness reviews.
- Identify architectural risks and recommend remediation strategies.
Cloud & Hybrid Security Architecture
- Design and review security architectures for Microsoft Azure, hybrid cloud environments, multi-cloud platforms, and VMware environments.
- Evaluate cloud security controls and configurations.
- Ensure security consistency across cloud and on-premise environments.
Security Technology Review & Compliance Support
- Review security solutions across IAM, Network Security, Cloud Security, Endpoint Security, Email Security, SIEM/SOAR platforms.
- Validate security controls against enterprise requirements.
- Support internal and external audits, maintain security architecture documentation and evidence, recommend corrective actions for security findings.
Requirements
10-12 years of experience in cybersecurity architecture or enterprise security. Certification Required: TOGAF and/or SABSA.
- Strong knowledge across multiple security domains: Identity Security (SailPoint, IBM IAM, Imprivata, SSO, MFA, PAM, Access Governance), Network Security (Fortinet, Palo Alto Networks, Cisco ASA, VPN technologies), Cloud Security (Microsoft Defender for Cloud, Sentinel, Intune, Purview, Defender XDR), Endpoint & Email Security (Trend Micro, Proofpoint, Microsoft EOP, Defender for Endpoint).
- Experience creating High-Level Designs (HLD), Low-Level Designs (LLD), architecture diagrams, security design documents, and technical proposals.
- Strong knowledge of Zero Trust architecture, security-by-design principles, threat modelling, risk assessment methodologies.
Qualifications
- CISSP certification.
- CCSP certification.
- Azure Security certification (AZ-500).
- VMware security architecture experience.
- Knowledge of ISO 27001, NIST Cybersecurity Framework, SOC 2, PCI-DSS.
- Experience with SIEM/SOAR platforms, DevSecOps, Secure SDLC practices.
- Strong presentation, documentation, and stakeholder management skills.