Security Architect leading and innovating security architecture at BCM One. Collaborating across teams to mitigate emerging threats with a focus on strategic initiatives.
Responsibilities
Define and execute the company’s multi-year security architecture strategy and roadmap.
Design, build, and implement enterprise-class security systems and architectures for all networks, applications, and infrastructure.
Lead, mentor, and develop a high-performing security function that needs to scale with the company's growth.
Promote security best practices and technology advancements across IT, Engineering, and corporate teams.
Proactively identify gaps, risks, and challenges in security practices; recommend and implement strategic solutions.
Perform security reviews, lead vulnerability testing, and conduct risk assessments.
Develop and maintain risk management plans, incident response procedures, and business continuity protocols.
Serve as the Tier 3 escalation point for critical security alerts, leading investigation, containment, and mitigation.
Deploy, monitor, and continually improve security tools, controls, and operational processes.
Make data-driven decisions on security investments and technology adoption.
Partner with Engineering to integrate security into the software development lifecycle (SDLC).
Collaborate with Legal, Privacy, and GRC teams to ensure compliance with SOC 2, ISO 27001, GDPR, and Cyber Essentials Plus.
Present security posture, risks, and recommendations to executive leadership in clear, business-aligned terms.
Manage security vendors, tools, and budgets to optimize outcomes and cost efficiency.
Requirements
10+ years of progressive experience in Information Security, with a strong focus on security architecture
5+ years of demonstrated experience as the SME leading and scaling security programs during periods of high-volume company growth (preferably at large, established enterprises)
Expert knowledge of security architectures across diverse technology stacks including: SOC2, ISO 27001, GDPR, NIST, etc.
Proven ability to design and implement enterprise-class security systems
Strong communication skills, with the ability to influence and present effectively across executive and technical audiences
Analytical and problem-solving abilities with a data-driven decision-making approach
Demonstrated success leading cross-functional teams in complex environments
Bachelor’s degree in Computer Science, Information Security, or a related field required
Master’s degree (or equivalent experience) in Computer Science, Information Security, or related field preferred
Professional certifications such as CISSP, CISM, CISA, or CEH strongly preferred
Benefits
Competitive industry salaries
Comprehensive medical, dental, and vision insurance
Providing security consultancy to technical and business stakeholders at Trendyol Tech. Driving improvements in security practices while assessing new projects and establishing security standards.
Administrative Business Partner supporting leadership within Palantir’s Security function. Providing comprehensive administrative support while handling confidential matters in a fast - paced environment.
Administrative Business Partner supporting leaders within Security function at Palantir Technologies. Managing diverse responsibilities to enhance productivity and support leadership teams.
Entra ID Security Specialist developing identity and access management solutions focused on Microsoft Entra ID at cyberunity AG. Responsible for strategic development and compliance in security architecture.
Red Team Security Engineer at Xcel Energy performing authorized testing to expose security weaknesses. Collaborating with internal teams and external vendors for effective security technology implementation.
Manager I overseeing Cyber Security engineering functions at NFCU. Leading and supporting the Cybersecurity Technology Engineering team in implementing security protocols.
Security Officer responsible for maintaining safety and security at Hilton in Harrisburg, PA. Conducting patrols, responding to emergencies, and supervising housekeeping staff.
Information Security Engineer managing incident detection and response for Safe - Guard Products. Involves vulnerability management, data protection, and security engineering activities.
Work Student, Product Security at TeamViewer supporting security initiatives for product safety. Opportunity to gain hands - on experience in an international environment with a focus on cybersecurity.
Cyber Security Detection Engineer focusing on threat detection capabilities and security telemetry within complex environments. Collaborating across Security Operations, Cloud Engineering, and Compliance disciplines.