Senior Security Architect - Bengaluru, India - First American (India)

    Default job background
    Description

    The Security Architect leads the design and development of innovative security architectures for protecting data deployed into different types of cloud and cloud/hybrid systems. This position will directly contribute to the overall global enterprise cloud architecture and lead the security vision and strategy around cloud-based applications, across all types (including Infrastructure, Platform, and Software as a Service (IaaS/PaaS/SaaS).

    Job Description

    The Security Architect will serve as the central point of contact for other Technology teams within First American for all matters related to cloud security.

    The successful candidate possesses the excellent interpersonal and communication skills required to partner with other leaders across the business to identify opportunities and risks and develop and deliver solutions that support business strategies and protect First American's intellectual property globally.

    Expertise – Collaborate with Application Owners, Technical Owners, Platform Leads, and Information Security teams, to architect and design cloud security solutions.

    Knowledge of cloud security services such as Azure and AWS is essential.

    Delivery – Complete architecture assessments across projects, prove use of security solutions to support new distributed computing solutions that span private cloud and public cloud services.

    Security Technology Strategy – Work with engineering, service and business teams to create technology roadmaps.

    Responsibilities Include


    • Design and develop security architectures for cloud and cloud/hybrid based systems. Possess a firm understanding of the offerings within both Amazon Web Services (AWS) and the Microsoft Azure platforms. Based on business requirements, design and implement cloud-native architecture and design that will allow those requirements to be met with a minimal degree of risk and with appropriate security controls present.


    • Represent the Corporate Information Security Office in development and implementation of the overall global enterprise cloud architecture.


    • Act as the ambassador and senior technical representative for Information Security while engaging with other senior technical leaders throughout First American in design and implementation of cloud and cloud/hybrid based implementations and solutions.


    • Work with Engineering, Infrastructure Services, and Application Development organizations to choose appropriate technology solutions and facilitates complete integration into First American's environments. Develops standards in partnership with Engineering, Infrastructure Services, and Application Development.


    • Lead training and technical forums, serve as both a formal and informal mentor, and execute other initiatives designed to share knowledge across Security and Technology groups.


    • Identify, recommend, coordinate, and/or conduct informal/formal training sessions to deliver timely knowledge to support teams regarding technologies, processes or tools.


    • Develop and execute strategies to increase Cloud Security knowledge throughout the enterprise, as well as developing and mentoring more-junior security analysts and engineers.


    • 5-8 years of experience with Security Architect and/or Engineering.


    • 3-5 years of experience with Cloud platforms such as Microsoft Azure and Amazon Web Services (AWS).


    • Experience architecting solutions within Microsoft Azure, Amazon Web Services (AWS) and, preferably, other cloud providers.


    • Experience with assessment, development, implementation, optimization, and documentation of a comprehensive and broad set of security technologies and processes (secure software development (Application Security), data protection, cryptography, key management, identity and access management (IAM), network security) within SaaS, IaaS, PaaS, and other cloud environments.


    • Working knowledge of common and industry standard cloud-native/cloud-friendly authentication mechanisms (OAuth, OpenID, etc).


    • Experience with deployment orchestration, automation, and security configuration management preferred.


    • Experience with service-oriented architecture for cloud-based services.


    • Experience working with cloud security and governance tools, cloud access security brokers (CASBs), and server virtualization technologies.


    • Experience with enterprise applications (architecture, development, support, and troubleshooting).


    • Experience performing threat modeling and design reviews to assess security implications and requirements for introduction of new technologies.


    • Experience representing technical viewpoints to diverse audiences and in making timely and prudent technical risk decisions.


    • Experience with enterprise architecture and working as part of a cross-functional team to implement solutions.


    • Strong interpersonal and communication skills; ability to work in a team environment


    • Ability to work independently with minimal direction; self-starter/self-motivated


    • Detailed understanding of SSL/TLS protocols and certificate-based solutions


    • Technical writing experience.

    Preferred Qualifications


    • Minimum of 15 years of formal education - Graduate / Postgraduate in Computer Science / Information Technology Professional work experience between 10-15 and at least 6-8 years as a Security Architect / Junior Security Architect


    • Working Experience with distributed team preferred.


    • Relevant industry certifications such as CISSP, CISM, or CCSP