Mandatory Requirements
- Bachelor’s degree in Computer Science, Engineering, Cybersecurity, or related discipline.
- Minimum three (3) years of work experience in a security architect role.
- Experience developing multi-year Security Domain roadmaps, supported by at least two project
examples from the past five years showing roadmap workshops, organizational approval,
implementation, and measurable outcomes.
- At least one certification: Azure Security Engineer Associate, Azure Solutions Architect Expert, CISSP,
or CISM.
Rated Qualifications & Experience
- Enterprise security solution design.
- Azure security architecture: Entra ID, Azure-native controls, cloud governance and policy
enforcement.
- VMware Cloud Foundation (VCF) or VMware platforms, including workload security,
segmentation/micro-segmentation and hybrid cloud security.
- Microsoft Defender for Cloud, Endpoint and Identity, including posture and threat protection.
- Security governance, risk and compliance; IAM; data protection/encryption; threat detection and
incident response.
- Healthcare/public-sector regulatory and compliance frameworks such as HIPAA, PHIPA, NIST and
ISO/IEC 27001.
- Enterprise architectural decision-making and advising senior/executive stakeholders on security
architecture and risk.
Duties & Responsibilities
- Develop and manage multi-year Security Domain roadmaps aligned with enterprise strategy.
- Evaluate existing security architectures and recommend improvements.
- Define and maintain security architecture standards, controls and reference architectures.
- Provide architectural leadership across Azure Cloud and VCF environments.
- Define hybrid-cloud security design principles and drive Zero Trust and defense-in-depth practices.
- Establish architectural guardrails for infrastructure, identity and data protection.
- Provide expert guidance on Microsoft Defender capabilities.
- Assess current-state architecture, define target-state models and perform gap analysis.
- Lead evaluation and integration of emerging security technologies.
- Collaborate with cybersecurity, infrastructure and application teams and advise stakeholders on
risks, mitigation strategies and architectural alternatives.