Job Summary Information Security Architect
- Design and review secure system and application architectures for diverse projects.
- Lead threat modeling and risk assessment activities to identify and mitigate security risks.
- Analyze and document attack surfaces and potential vulnerabilities during design phase.
- Serve as a security advisor to project and architecture teams throughout the development lifecycle.
- Capture and manage technical security observations and requirements in SD Elements ensuring traceability and remediation.
- Collaborate with development architecture and infrastructure teams to embed security into solution design.
- Ensure alignment with enterprise architecture frameworks (e.g. TOGAF SABSA) and internal security policies.
- Participate in architecture review boards and security governance forums.
- Support secure design and validation for cloud on-premises and hybrid environments.
- Utilize experience in application security secure development lifecycle threat modeling and prior VAPT to recommend effective security controls.
- Communicate effectively with global stakeholders and technical teams to promote security best practices.
- Work with security tools and frameworks such as SD Elements ThreatModeler Microsoft Defender and utilize standards like OWASP Top 10 MITRE ATT&CK NIST CSF.
Required Experience & Certifications:
- 7 9 years in information security or related architecture roles.
- CISSP certification (mandatory); AZ-500 and CCSP are added advantages.
- Hands-on experience with SD Elements and architectural frameworks (TOGAF SABSA NIST).
- Strong knowledge of cloud security (preferably Azure) and DevSecOps practices.
Benefits:
- Opportunity to work with a global commercial vehicle leader.
- Collaborative innovative and inclusive work environment.
- Exposure to enterprise-grade security and cutting-edge vehicle technologies.