Senior Security Architect at KUBRA designing and implementing security solutions across cloud environments. Overseeing security in application and database platforms with a focus on AWS.
Responsibilities
Perform security architecture design reviews and provide recommendations to improve the security posture of KUBRA’s application, database, and cloud platforms.
Perform periodic testing, code analysis, and security assessments of KUBRA owned applications.
Govern Watch over cloud security systems for change and configuration control thereby suggesting changes to further improve the overall security posture.
Partner with DevSecOps, Application and Infrastructure teams to ensure any vulnerabilities or issues are resolved per security guidelines.
Stay up to date with current cyber security risk and analyze trends to proactively prevent problems.
Assist in developing an overall organizational data strategy that is in line with business processes and contractual requirements.
Identify and provide guidance on appropriate controls based on industry standards to drive cloud and customer security solutions framework based on business risk and cloud native threats.
Develop and implement cloud security architectures focused on AWS.
Assist in developing an overall organizational data strategy that is in line with business processes and contractual requirements.
Establish and enforce secure application development practices, including secure coding, threat modeling, SAST/DAST and vulnerability management.
Conduct security assessments of cloud infrastructure, applications, and CI/CD pipelines.
Provide security guidance and best practices to Product and Service Delivery teams.
Define and implement security policies, standards, and procedures for cloud and application security.
Work with engineering and operations teams to integrate security controls within cloud-native services.
Lead security reviews, architecture assessments, and risk analysis for new and existing applications.
Monitor security trends, vulnerabilities, and threats in cloud and application security domains.
Collaborate with compliance teams to ensure adherence to regulations such as PCI-DSS, SOC 1/2, ISO 27001 etc.
Respond to security incidents and provide expertise in forensic analysis and remediation.
Design and implement network security controls, including firewall configuration and management.
Manage firewall solutions such as Akamai and cloud-native security services to protect applications and infrastructure.
Ensure robust network security by implementing intrusion detection/prevention systems (IDS/IPS), web application firewalls (WAFs), and DDoS mitigation strategies.
Design and implement database security controls, including data encryption, access control, and monitoring.
Conduct database vulnerability assessments and ensure compliance with security policies.
Work with database administrators to apply security best practices to relational and NoSQL databases.
Implement data masking, tokenization, and audit logging for sensitive data protection.
Develop and implement Infrastructure as Code (IaC) security best practices to ensure secure provisioning and configuration of cloud resources.
Ensure security is embedded in IaC templates using tools like Terraform and AWS CloudFormation.
Requirements
7+ years of experience in cybersecurity, with a focus on Security Architecture, cloud and application security.
Manager at PwC contributing to digital transformation in Utilities through technology consulting and stakeholder management. Focused on creating strategies and providing technology solutions in a data - driven world.
Research Associate conducting advanced research in iOS security within a leading institute for applied cybersecurity. Emphasis on secure application development and vulnerability analysis.
Cybersecurity Engineer focused on threat monitoring and incident response for Verizon's network security. Collaborating on security architecture and vulnerability management across multiple locations.
Senior Manager of Application Security leading initiatives to protect applications at Nordstrom through strategic leadership and AI - driven tooling. Collaborating with engineering to ensure secure software development practices.
Information Security Engineer responsible for deploying and supporting security tools across cloud and on - premise systems. Collaborating with IT to mitigate security risks in a hybrid work environment.
Casual Retail Security Officer for MSS Security ensuring safety at Tweed Mall in Tweed Heads. Responsible for patrols, incident response, and customer service.
Financial security advisor at Desjardins developing client relationships and selling life and health insurance products. Focusing on customer satisfaction and personalized financial solutions.
Principal Information Security Consultant at Westpac focusing on security protocols and employee benefits for staff. Hybrid role centrally located with opportunities for professional development and employee perks.
Engineer supporting secure development lifecycle processes for product lines in the energy sector. Collaborating with R&D on security requirements and compliance audits.
Automation Oversight Engineer providing oversight of compliance in automated device configurations for Comcast Business. Managing configuration checks and reporting, ensuring reliable oversight and improvement strategies.