Responsibilities:
• Develop and maintain a deep understanding of the organization's data security, protection and secrets management and encryption needs.
• Design and implement a comprehensive security architecture framework and reference architectures for data protection, and cryptography.
• Continuously develop and mature the program and roadmaps in line with industry best practice and the evolving threat landscape.
• Develop and maintain security policies and standards for data protection, secrets management and cryptography.
• Provide guidance and technical leadership to project teams to ensure data security requirements are properly integrated into software development and infrastructure projects.
• Partner and collaborate with cross-functional teams including the Global Data Management Group to identify and address data security risks across the organization.
• Define key management solutions and patterns to protect sensitive data and secrets.
• Stay up-to-date with industry best practices and emerging trends in data protection, secrets management and cryptography, and incorporate them into the security architecture framework.
• Experience coaching, mentoring and leading less experienced colleagues.
Skills, experience, qualifications and knowledge required:
- Established Data Security Architect with at least 12 years within the broader IT Security disciplines and technologies.
- At least 3-5 years of experience in data security architecture, with a focus on data protection, secrets management, and encryption.
- Experience with cloud security, especially related to data protection and secrets management.
- Experience with developing requirements and models for the future-state, current state and gaps in data
- Data security architecture experience in applying enterprise architecture principles and methods in supporting IT programs and Projects
- Demonstrable understanding of security solutions and designs from a people, process and technology
- Experience with compliance standards and regulations
- Knowledge of established information security frameworks and standards (i.e. NIST, ISO2700, CSA, SCF) and their application into diverse environments.
- Cyber Security related qualification (s) such as CISSP, CISM, CISA, CRISC
EA Licence No: 11C5502
Registration No: R1876903