Security Transformation Architect
About the Role
We are looking for an experienced Security Transformation Architect to support our client from the financial sector in Wrocław on strategic transformation initiatives. The primary focus of this role will be leading the migration and replacement of legacy security solutions with modern platforms across Security Operations, Identity & Access Management (IAM), Network Security, and Cloud Security domains.
If you enjoy designing target architectures, leading complex transformation programs, and collaborating with diverse stakeholders, this role offers an exciting challenge and the opportunity to drive large-scale security modernization initiatives.
Key Responsibilities
Design and deliver transformation programs for legacy security platforms and services.
Define target-state security architectures, select appropriate technologies, and evaluate vendors.
Lead migration and transformation projects from initial assessment and planning through implementation and handover to operations.
Manage project timelines, budgets, risks, and stakeholder communications.
Collaborate closely with Security, SOC, Operations, Enterprise Architecture teams, and external vendors.
Ensure that implemented solutions comply with regulatory and security requirements applicable to the financial sector.
Provide architectural guidance and strategic recommendations for enterprise security transformation initiatives.
Support governance, documentation, and decision-making processes throughout the project lifecycle.
Requirements
Minimum 5 years of experience working as a Security Architect.
Proven experience in migration, consolidation, or modernization of legacy security platforms.
-
Strong hands-on knowledge of at least one of the following platforms:
Palo Alto Cortex
Microsoft Sentinel
CrowdStrike
Splunk Enterprise Security (ES)
-
Extensive experience in network security architecture, including:
Zero Trust
Next-Generation Firewalls (NGFW)
SASE
SD-WAN
-
Experience in Identity and Access Management (IAM), including:
Active Directory
Microsoft Entra ID
Privileged Access Management (PAM)
Multi-Factor Authentication (MFA)
Strong understanding of Azure or AWS from a security architecture perspective.
Proven experience leading complex security transformation projects.
-
Knowledge of financial sector regulations and frameworks, including:
DORA
BAIT
MaRisk
German language proficiency at C1+ level and English proficiency at minimum B2 level.
-
Security architecture certifications such as:
CISSP
SABSA
TOGAF Security
-
Project management certifications such as:
PMP
PRINCE2
IPMA
Nice to Have
-
Experience with SOAR platforms, including:
Cortex XSOAR
Microsoft Sentinel SOAR
Swimlane
Knowledge of Kubernetes, Docker, and container security.
Experience in Detection Engineering, MITRE ATT&CK framework, and Vulnerability Management solutions.
Previous experience working within the financial sector or other highly regulated environments.
-
Additional certifications such as:
CISM
PCNSE
AZ-500
SC-200
ITIL 4 Foundation
What You'll Work On
Large-scale security transformation programs
Legacy platform modernization initiatives
Security Operations and SIEM transformation
IAM and Privileged Access transformation
Network and Cloud Security architecture modernization
Regulatory compliance and security governance initiatives within the financial sector