Senior Cybersecurity Architect
Enregistrez cette offre et organisez votre recherche
Créez un compte gratuit pour enregistrer des offres d'emploi, créer des alertes et revenir à cette liste depuis votre tableau de bord.
En continuant, vous acceptez nos Conditions d’utilisation & Politique de confidentialité.
What you will do
You will occupy a cross-functional role between security governance, IT architecture and technical teams. You will analyse the existing environment, define target architectures, assess risks and impacts, compare options and formulate recommendations that can be applied in a complex, highly interconnected IT environment.
You will apply principles such as Security by Design, Security by Default, Zero Trust, least privilege, defence in depth, segmentation and resilience. You will seek a balance between security, availability, business needs, maintainability and operational constraints.
Your responsibilities include:
- Analysing the existing cybersecurity architecture and formulating recommendations for evolution in line with the overall IT architecture and the organisation's requirements
- Identifying and documenting risks, dependencies, vulnerabilities and weaknesses, then proposing prioritised improvements for decision
- Conducting or contributing to security architecture reviews for new projects, migrations or significant changes, and delivering findings, risks and recommendations
- Proposing and documenting principles for segmentation, flow control, access, resilience and defence in depth in collaboration with internal IT teams
- Analysing needs related to identity, access, authentication, privileged accounts and trust mechanisms, and formulating corresponding architecture recommendations
- Advising teams on logging, monitoring, detection, traceability and integration with security supervision capabilities
- Proposing and formalising security standards, patterns, hardening principles and reusable technical requirements with IT teams
- Analysing and constructively challenging technical proposals from vendors, integrators or partners, identifying impacts, dependencies, risks and alternatives
- Providing expertise during technical analyses related to major incidents, resilience, continuity or recovery
- Maintaining technology and regulatory watch and presenting relevant developments with justification, benefits, risks and impacts
- Supporting IT teams in analysing, understanding and, when requested, preparing the implementation of approved recommendations
- Actively sharing knowledge and expertise with internal teams to foster their autonomy and avoid excessive dependency on consultants or vendors
You will work in an advisory capacity. All significant proposals must be documented and submitted for validation before implementation. You will respect the organisation's change management processes and work collaboratively with internal teams rather than in isolation.
What we are looking for
Experience and profile
- Minimum 10 years of experience in complex enterprise IT environments, including at least 7 years in cybersecurity and at least 5 years of demonstrable experience in a Security Architect or Cybersecurity Architect role
- Your architecture experience must be directly related to designing, reviewing and evolving complex cybersecurity architectures; experience limited to administration, operations, SOC, security engineering or product expertise cannot be considered equivalent to architect experience
- Proven experience in designing, reviewing and evolving security architectures covering multiple domains: network and connectivity, datacentre, identity and access, perimeter security, remote access, cloud/hybrid and security monitoring
- Ability to produce and maintain high-level and detailed architectures, flow diagrams, communication matrices, segmentation principles, architecture decisions and security requirements
- Excellent understanding of enterprise security technologies and ability to reason independently of vendors and suppliers
- Strong grasp of identity and access architectures: IAM, MFA, privileged accounts, PKI, certificates, strong authentication and PAM principles
- Good understanding of network architectures, segmentation, routing, high availability, interconnections, remote access and flow control mechanisms
- Good understanding of systems environments, virtualisation, datacentre, cloud/hybrid as well as continuity and resilience challenges
- Experience with logging architectures, SIEM/SOC and security monitoring: collection, correlation, detection, retention and traceability
- Ability to conduct technical risk analyses, challenge vendor proposals and formulate proportionate, actionable and documented recommendations
- Ability to translate regulatory, governance and risk requirements into concrete controls and architecture decisions
Standards, frameworks and certifications
- Mastery of ISO/IEC 27001:2022 requirements and principles and ability to translate them into architecture requirements and technical contr