Security Architect
Summary
Senior cloud security architect at an AWS Premier consulting partner, owning the full security lifecycle for enterprise clients — assessment, architecture, design, implementation, and optimization. Day to day spans AWS security services (IAM, GuardDuty, KMS), DevSecOps and IaC, Kubernetes security, compliance, and customer-facing solutioning.
We are looking for a highly experienced Cloud Security Architect with deep expertise in AWS Cloud and strong knowledge across end-to-end (360°) cybersecurity domains, including Network Security, Infrastructure Security, SOC Operations, and DevSecOps. The role requires a balanced combination of architecture, hands-on engineering, governance, risk, compliance, and security operations experience.
The ideal candidate will own the complete security lifecycle — from planning, architecture design, and solutioning to implementation and continuous optimization — ensuring secure, scalable, and resilient cloud environments.
This role also requires strong customer-facing capabilities, including engaging with clients to understand business and security requirements, leading technical discussions, and designing customized cloud security solutions tailored to customer needs. You will work closely with cross-functional teams and stakeholders to translate requirements into robust, practical, and compliant security architectures.
8+ years in Cyber Security
4+ years in Cloud Security Architecture
Proven hands-on experience in designing and implementing security solutions
End-to-End Cyber Security Ownership
Lead complete security lifecycle: assessment → architecture → planning → implementation → optimization
Define and implement enterprise-wide security strategy and roadmap
Ensure coverage across all security domains: identity, network, data, application, infrastructure, and monitoring
Security Architecture, Planning & Design
Design secure cloud/Hybrid architectures including landing zones, multi-account strategy, and governance models
Develop security blueprints, HLD/LLD, and reference architectures
Embed Zero Trust Architecture and security-by-design principles
Perform threat modelling and architecture reviews
Define security controls aligned with NIST, ISO 27001, CIS, and AWS Well-Architected Framework
Hands-On Implementation & Engineering
Actively support and guide implementation of security controls, not just design
Configure and implement AWS security services:
IAM (RBAC, ABAC, SSO, federation using SAML/OIDC)
VPC security (segmentation, NACLs, Security Groups, PrivateLink)
Logging & monitoring (CloudTrail, CloudWatch, GuardDuty, Security Hub)
Data protection (KMS, encryption strategies, Secrets Manager)
Secure workloads across:
Containers (EKS, ECS, Kubernetes security)
Serverless (Lambda, API Gateway)
Storage & databases (S3, RDS, DynamoDB)
Review and implement Infrastructure as Code (Terraform/CloudFormation) securely
Integrate DevSecOps practices into CI/CD pipelines
Understands Security Tooling & Operations
Design and implement 360° security tooling ecosystem, including:
SIEM / SOAR platforms
CSPM / CWPP tools
WAF & DDoS protection
Vulnerability management
Endpoint, DLP, and API security tools
Define logging, monitoring, alerting, and incident response strategies
Solutioning & Customer Engagement
Engage with customers to gather requirements and design custom security solutions
Lead solution architecture discussions, proposals, and technical presentations
Support pre-sales activities (RFP/RFI, PoCs, demos)
Advise on secure cloud migration, modernization, and transformation journeys
Governance, Risk & Compliance
Establish security policies, standards, and guardrails
Ensure compliance with:
NIST, ISO 27001, CIS Benchmarks
GDPR, SOC 2, PCI-DSS, HIPAA
Conduct cloud security posture assessments and audits
Identify risks and drive remediation strategies
Leadership & Enablement
Mentor and guide engineering and security teams
Build reusable frameworks, accelerators, and best practices
Drive security awareness and adoption across projects
Bachelor’s or Master’s degree in Computer Science, Information Security, or a related field
8+ years of experience in IT / Cyber Security, with strong focus on cloud environments
5+ years of experience in Cloud Security Architecture (AWS preferred)
Proven hands-on experience in designing and implementing cloud security solutions
Preferred Certifications:
AWS Certified Security – Specialty
AWS Certified Solutions Architect – Professional
Comptia Security +
CCSP
Technical Skills (Must-Have)
Strong expertise in AWS Cloud Security Architecture with proven hands-on implementation experience
Deep knowledge across end-to-end (360°) security domains, including:
Identity & Access Management (IAM, SSO, Federation – SAML/OIDC)
Network Security (VPC design, segmentation, firewalls, private connectivity)
Infrastructure & Workload Security
Data Security (encryption, key management, DLP)
Application & API Security
Hands-on experience with AWS security services such as:
IAM, Organizations, Control Tower
CloudTrail, CloudWatch, GuardDuty, Security Hub
KMS, Secrets Manager, AWS Config
AWS WAF, AWS Shield
Strong experience in DevSecOps practices, including:
CI/CD security integration
SAST, DAST, SCA tools (e.g., Snyk, Checkmarx, SonarQube)
Experience with Infrastructure as Code (IaC):
Terraform, CloudFormation
Expertise in container and Kubernetes security (EKS preferred)
Experience with security tools and platforms:
SIEM / SOAR
CSPM / CWPP (Wiz, Prisma Cloud, AWS Security Hub)
Vulnerability management tools (Qualys, Nessus)
Security & Architecture Expertise
Strong understanding of:
Zero Trust Architecture
Secure Cloud Design Principles & Well-Architected Framework
Threat modeling methodologies (STRIDE, MITRE ATT&CK)
Secure SDLC practices
Experience designing enterprise-scale, multi-account AWS environments
Ability to create HLDs, LLDs, and security architecture diagrams
Strong knowledge of compliance frameworks:
NIST, ISO 27001, CIS Benchmarks
GDPR, SOC 2, PCI-DSS, HIPAA
Customer & Consulting Skills
Strong customer-facing experience with ability to lead:
Architecture discussions
Security workshops
Solution design sessions
Ability to translate business requirements into secure technical solutions
Experience in pre-sales activities (RFP/RFI, proposals, PoCs)
Strong stakeholder management and advisory skills
Soft Skills & Attributes
Strong problem-solving and analytical thinking
Excellent communication and presentation skills
Ability to work independently with high ownership
Leadership mindset with mentoring capabilities
Adaptability in fast-paced, customer-driven environments
Be part of a Premier AWS Partner driving large-scale cloud transformation and security initiatives
Work on end-to-end cloud security architecture, from strategy to implementation
Opportunity to engage with enterprise customers and solve complex, real-world security challenges
Exposure to modern cloud-native technologies, DevSecOps, and emerging areas like Gen AI Security
Culture that promotes ownership, innovation, and continuous learning
Collaborate with highly skilled teams in a fast-growing and dynamic environment
Accelerate your career in one of the most in-demand domains — Cloud Security Architecture