As a Security Enterprise Architect, you will :
- leverage your expertise to establish and promote security best practices, including architecture principles, tools, patterns and develop architecture policies, standards and solutions.
- provide guidance and be a facilitator to ensure that standard security best practices are applied consistently and in a meaningful way.
- have a leading role in identifying the vision and strategies required to support the long-term objectives of application security
- develop business cases for major evolutions of our IT capabilities and you syndicate a wide range of senior stakeholders within business and IT. This includes maintaining the architectural requirements.
- lead the development and drive the implementation of an enterprise transition to secure DevOps practices.
- share experience and vision to build security awareness with business stakeholders, IT and operational teams. Become the go-to person for application security.
- collect feedback from stakeholders, detect unaddressed security needs and identify opportunities for collaboration.
- develop concrete architecture deliverables
- develop, maintain and share security best practices on application security
- work in close collaboration with Domain Architect, Security team, Technology Managers, Enterprise Architecture Team to build security standards and solutions.
- raise awareness of security issues
To apply for this role, you:
- have worked for more than 7 years in the IT industry and have proven experience working with senior management. Experience in the Financial Services industry and understanding of the complex regulatory environment is a plus.
- have experience in enterprise patterns that promote application security.
- have provided assistance to governance roles to ensure good application quality practices are considered in all new designs
- have operational expertise in every part of security: protection, detection and remediation.
- have experience in creating actionable strategies and setting up a small team to deliver it (implementation paths, with clear outcomes and continuous measurement of progress).
- can tackle autonomously all types of architectural analyses and can provide global & pragmatic recommendations adapted to the company context with little guidance
- are fluent in English.
Technical skills
- Knowledge of post-trade market infrastructures (e.g. CSD), knowledge of Enterprise Architecture frameworks (e.g. Togaf,SAFe) and relevant experience with Agile operating models and frameworks are extra assets.
- Knowledge of security standards, security systems and authentication protocols
- Knowledge of risk management framework & risk assessment procedures
- Knowledge of cloud solutions & cloud security.
- Solid understanding of public cloud environment and shared responsibility model
- Certification in Cyber-Security such as SANS, CISSP, CISM, CRISC, …