Staff Security Architect defining and implementing secure architectures at Yum! Brands supporting global EMEA initiatives.
Responsibilities
Lead design of secure architectures for cloud-native, hybrid, and on-premises platforms supporting EMEA delivery teams.
Define reusable security patterns and standardized controls aligned to global reference architectures, with EMEA-specific implementation guidance where needed.
Facilitate architecture reviews, threat modeling sessions, and technical risk assessments across distributed teams.
Champion secure practices and guardrails in AWS, Azure, and GCP environments; guide integration of security into CI/CD pipelines (SAST, DAST, IaC scanning, etc.).
Provide leadership in secure containerization, workload protection, and secrets management patterns suited for globally standardized platforms.
Drive adoption of Zero Trust principles and modern IAM practices, partnering on SSO, MFA, RBAC, and PAM controls.
Lead architecture efforts for data protection strategies (classification, encryption, tokenization) and guide secure network design and segmentation.
Support implementation of detection and monitoring capabilities (SIEM, XDR, etc.).
Partner with GRC and legal stakeholders to align architecture with regulatory and risk frameworks (including PCI, SOX, GDPR) and recommend mitigations aligned to business risk.
Incorporate EMEA-relevant regulatory/security frameworks into solution design and documentation.
Drive security architecture roadmap initiatives and represent security architecture in enterprise forums with strong written artifacts and asynchronous collaboration.
Mentor engineers and junior architects through patterns, reference architectures, and repeatable guardrails.
Requirements
BE / BTECH with degree in Cybersecurity, Information Systems, Computer Science, or equivalent experience.
12-15 years in security architecture, cloud security, or enterprise security engineering roles; experience leading complex projects or architecture workstreams.
Hands-on expertise with AWS/Azure/GCP security capabilities; strong grasp of IAM, Zero Trust, data protection, and cloud-native security tooling.
Familiarity with security frameworks and architectural methodologies (NIST 800-53/207, ISO 27001, TOGAF, SABSA) and ability to apply them pragmatically across distributed teams.
Strong written and verbal communication skills; ability to influence technical and non-technical stakeholders across time zones.
Preferred Requirements**• Certifications such as CISSP, CISM, CCSP, cloud security specialties, TOGAF, or SABSA.
Experience in regulated environments (PCI, SOX, GDPR, HIPAA) and practical experience implementing privacy-by-design controls.
Strong DevSecOps and modern SDLC practices in Agile environments.
Manager at PwC contributing to digital transformation in Utilities through technology consulting and stakeholder management. Focused on creating strategies and providing technology solutions in a data - driven world.
Research Associate conducting advanced research in iOS security within a leading institute for applied cybersecurity. Emphasis on secure application development and vulnerability analysis.
Cybersecurity Engineer focused on threat monitoring and incident response for Verizon's network security. Collaborating on security architecture and vulnerability management across multiple locations.
Senior Manager of Application Security leading initiatives to protect applications at Nordstrom through strategic leadership and AI - driven tooling. Collaborating with engineering to ensure secure software development practices.
Information Security Engineer responsible for deploying and supporting security tools across cloud and on - premise systems. Collaborating with IT to mitigate security risks in a hybrid work environment.
Casual Retail Security Officer for MSS Security ensuring safety at Tweed Mall in Tweed Heads. Responsible for patrols, incident response, and customer service.
Financial security advisor at Desjardins developing client relationships and selling life and health insurance products. Focusing on customer satisfaction and personalized financial solutions.
Principal Information Security Consultant at Westpac focusing on security protocols and employee benefits for staff. Hybrid role centrally located with opportunities for professional development and employee perks.
Engineer supporting secure development lifecycle processes for product lines in the energy sector. Collaborating with R&D on security requirements and compliance audits.
Automation Oversight Engineer providing oversight of compliance in automated device configurations for Comcast Business. Managing configuration checks and reporting, ensuring reliable oversight and improvement strategies.