Responsible for protecting the organizations technology ecosystem through security architecture reviews risk assessments and governance. Covers infrastructure cloud SaaS and AI security with focus on the Protect function of NIST. Defines and enforces security standards performs threat modelling governs KPIs and ensures secure design and operations across technology initiatives
Key Responsibilities:
Security Architecture & Risk Reviews
Conduct comprehensivesecurity architecture reviewsfor infrastructure applications and emerging technology initiatives.
Performcloud security reviewsacross public private and hybrid deployments.
AssessSaaS service risksbefore onboarding or integration including vendor security due diligence.
Evaluatetechnology changes and exception requestsfor security impact and compliance.
Technology Security Governance & Standards
Develop maintain and enforcesecurity standards guidelines and patternsfor technology platforms applications cloud and AI.
Governsecurity-related KPIsand KRIs; track report and drive remediation of gaps.
Ensure compliance with applicable regulations and standards.
Threat Modelling & Risk Assessment
Performthreat modellingfor new technology solutions products and AI/ML systems.
Identify assess and document risks; recommend mitigation measures aligned to business needs.
Partner with architecture and engineering teams to embed security by design.
Audit & Compliance
Conducttechnical security auditsof infrastructure applications and cloud workloads.
Review security configurations baselines and deployment practices to ensure adherence to policy.
Support internal and external audits with evidence remediation plans and technical clarifications.
AI & Emerging Technology Security
PerformAI security reviews ensuring compliance with responsible AI and trustworthy AI principles.
Identify AI-specific risks such as model poisoning data leakage and bias and recommend mitigations.
Candidates Must Have:
Experience:
Around 6 years of Cyber security related experience
Disclaimer: Drjobpro.com is only a platform that connects job seekers and employers. Applicants are advised to conduct their own independent research into the credentials of the prospective employer.We always make certain that our clients do not endorse any request for money payments, thus we advise against sharing any personal or bank-related information with any third party. If you suspect fraud or malpractice, please contact us via contact us page.