Overview
In this role you will translate business needs into secure designs, ensuring security is built in from the ground up. You will partner with cross-functional teams to design networks, systems, applications, and cloud architectures while aligning with regulatory requirements. You will address AI guardrails, data governance for AI training data, and evolving threat landscapes, shaping our security strategy and architectural standards. You will mentor engineers and influence technical direction, contributing to a secure, compliant, and innovative firm. This is an opportunity to impact the firm’s security posture at scale within a global, inclusive environment.
Responsibilities
- Advise projects as a security SME
- Design secure architectures for networks, systems, applications and cloud environments
- Assess guardrails for AI agents with tool-use/autonomous action capabilities
- Secure LLM and generative AI deployments (prompt injection defences, output validation, data leakage prevention, model access controls)
- Understand data governance for AI training data (sensitive data handling, PII redaction, data poisoning risks)
- Identify requirements to projects and initiatives
- Review proposed technical solutions for security compliance
- Produce and maintain architectural artefacts (designs, standards, reference architectures)
- Supply security requirements into projects and RFI/RFPs
- Evaluate and recommend security tools, technologies and vendors
- Drive improvements and support compliance through security strategy
- Mentor engineering and IT teams on secure design principles
- Support and influence technical strategy
Key requirements
- 7+ years in Information Security/IT, with 3+ years in an architecture-focused role
- Cloud Security – Adoption & migration, Governance
- Data Governance – DR, DLP, DRM, Data lifecycle Management
- App & Systems Development Security
- Asset Management including MDM
- Identity & Access management
- Network & Endpoint security
- Logging, Monitoring & Retention
- Threat intelligence, Automation & Orchestration
- Configuration & Vulnerability management
- Collaborative problem solving
- Clear written communication
- Relationship building across teams
- Azure, AWS, GCP security capabilities
- NIST CSF, ISO 27001/27002, CIS Controls, MITRE ATT&CK
- Zero Trust architecture principles
…
