Staff Security Architect defining and implementing secure architectures at Yum! Brands supporting global EMEA initiatives.
Responsibilities
Lead design of secure architectures for cloud-native, hybrid, and on-premises platforms supporting EMEA delivery teams.
Define reusable security patterns and standardized controls aligned to global reference architectures, with EMEA-specific implementation guidance where needed.
Facilitate architecture reviews, threat modeling sessions, and technical risk assessments across distributed teams.
Champion secure practices and guardrails in AWS, Azure, and GCP environments; guide integration of security into CI/CD pipelines (SAST, DAST, IaC scanning, etc.).
Provide leadership in secure containerization, workload protection, and secrets management patterns suited for globally standardized platforms.
Drive adoption of Zero Trust principles and modern IAM practices, partnering on SSO, MFA, RBAC, and PAM controls.
Lead architecture efforts for data protection strategies (classification, encryption, tokenization) and guide secure network design and segmentation.
Support implementation of detection and monitoring capabilities (SIEM, XDR, etc.).
Partner with GRC and legal stakeholders to align architecture with regulatory and risk frameworks (including PCI, SOX, GDPR) and recommend mitigations aligned to business risk.
Incorporate EMEA-relevant regulatory/security frameworks into solution design and documentation.
Drive security architecture roadmap initiatives and represent security architecture in enterprise forums with strong written artifacts and asynchronous collaboration.
Mentor engineers and junior architects through patterns, reference architectures, and repeatable guardrails.
Requirements
BE / BTECH with degree in Cybersecurity, Information Systems, Computer Science, or equivalent experience.
12-15 years in security architecture, cloud security, or enterprise security engineering roles; experience leading complex projects or architecture workstreams.
Hands-on expertise with AWS/Azure/GCP security capabilities; strong grasp of IAM, Zero Trust, data protection, and cloud-native security tooling.
Familiarity with security frameworks and architectural methodologies (NIST 800-53/207, ISO 27001, TOGAF, SABSA) and ability to apply them pragmatically across distributed teams.
Strong written and verbal communication skills; ability to influence technical and non-technical stakeholders across time zones.
Preferred Requirements**• Certifications such as CISSP, CISM, CCSP, cloud security specialties, TOGAF, or SABSA.
Experience in regulated environments (PCI, SOX, GDPR, HIPAA) and practical experience implementing privacy-by-design controls.
Strong DevSecOps and modern SDLC practices in Agile environments.
Client Support Advisor delivering face - to - face service to clients in Scottish Borders. Helping them understand and access benefits with tailored one - to - one support.
DevSecOps engineer ensuring security practices in software development lifecycle at Ford. Collaborating with teams and implementing secure coding practices.
Senior IT Security Engineer protecting IT Security platforms for one of the largest e - commerce sites in the U.S. Designing and managing security solutions to ensure network safety.
Cybersecurity Engineer supporting a critical U.S. Navy program enhancing national security and operational readiness. Designing and implementing secure system architectures for Navy combat systems and environments.
CyberSecurity Team Lead overseeing vulnerability management and security integration for Mistral's AI solutions. Collaborating with teams to enhance security posture and protect infrastructure.
Support Engineer providing technical assistance for F5 customers with cloud - based solutions. Collaborating with internal teams to resolve issues and advocate for customer needs.
Technical Implementation Manager overseeing implementation of complex systems for law enforcement and corporate security. Collaborating with stakeholders to facilitate smooth transitions and optimize solutions.