Cyber Security Architect - AVP
ANZ View all jobs
- Bangalore, Karnataka
- Permanent
- Full-time
- Designing and reviewing secure architectures for applications, cloud platforms, data platforms, and integration patterns.
- Partnering with solution architects, engineers, and product teams to embed security controls early in the design lifecycle.
- Conducting architecture reviews, threat modelling, and security design assessments.
- Translating enterprise security strategy and policies into actionable architecture standards and patterns.
- Advising on identity, access management, data protection, network security, and cloud security decisions.
- Providing risk-based guidance-knowing when to enforce controls and when to enable informed trade-offs.
- Engaging with senior stakeholders to explain security risks and design choices in clear business language.
- Supporting regulatory, audit, and assurance activities by ensuring architectures meet compliance and risk expectations.
- Staying current with emerging threats, technologies, and industry best practices, and evolving architecture accordingly.
- Must have 8+Years of relevant experience, regardless of domain.
- Security Architecture: Deep understanding and experience working in Security Architecture, with the ability to design, develop, evaluate, and review secure solutions in an Agile environment which facilitate scalability, extensibility and reusability.
- Trusted Advisor: Establish yourself as a key Cyber security advisor to senior stakeholders, including Tech Area Leads and Tribe Leads, as well as various tribe members. Your influence will drive security priorities and initiatives across the organization.
- Cyber Security: Demonstrate deep understanding of Cyber security principles like Cryptography, Secrets and Key management, IAM, Network Security, Data protection, PKI and Certificate management.
- Cloud Security: Strong understanding of cloud computing concepts, architectures, and services, including IaaS, PaaS, SaaS and Hybrid clouds. Familiarity with cloud-native security services to effectively design and implement secure cloud solutions
- Infrastructure and Application security: Expertise in securing both traditional infrastructure and modern cloud-native environments with a strong focus on Virtualisation, App and API Security, containerisation, Secure DevOps and CI/CD deployments.
- Technical Articulation: Translate complex technical designs into actionable Security Control requirements. Your ability to make intricate security concepts understandable and implementable will be crucial.
- Threat Modelling: Apply threat modelling methodologies and understand common tactics, techniques, and procedures in agile environments. Your expertise will help anticipate and mitigate potential exposure and threats to effectively manage Risk.
- Technology Mastery: Develop a deep understanding of the diverse technology stacks employed across the bank. Your willingness to learn and adapt will enable you to effectively address security concerns across various platforms.
- Reusable Security Patterns: Develop and maintain reusable security architecture and design patterns for consumption across the organization. Your contributions will standardize and streamline security practices.
- Regulatory Compliance: Familiarize with and implement requirements from relevant regulators such as APRA, HKMA, MAS, etc. Your knowledge of regulatory standards will ensure ANZ's compliance and enhance our security framework.
- Industry trends and best practices: Stay informed about emerging threats, vulnerabilities, and security technologies and recommend appropriate controls and design guardrails.
- Accreditations / Credentials: Maintain relevant certifications in Security, Architecture, Cloud or Technology disciplines (e.g. CISSP, SABSA, CCSP, AWS, GCP, Azure, etc.)
- Contract Review: Review vendor contracts to ensure relevant security clauses are embedded, protecting ANZ's interests and maintaining compliance with security standards.