What are the responsibilities and job description for the Security Architect position at Clandica?
Job Description
Security Architect with expertise in IIoT Security, Firmware Security, Secure Software Development, Encryption, Data Protection, IAM, Security Engineering, Edge Security, Cyber Resilience, and Cloud Security, to work closely with the Enterprise Architect to design and implement robust security strategies and measures across all technology domains.
Responsibilities:
- Security Strategy: Collaborate with the Enterprise Architect to develop and implement a comprehensive security strategy that aligns with business objectives and industry best practices.
- IIoT Security: Design and implement security measures for Industrial Internet of Things (IIoT) environments, ensuring the integrity and confidentiality of industrial data and processes.
- Firmware Security: Assess and enhance firmware security practices to protect embedded systems and IoT devices from vulnerabilities and attacks.
- Secure Software Development: Promote secure software development practices, including code review, vulnerability assessments, and threat modeling, to mitigate software-related security risks.
- Encryption and Data Protection: Implement encryption protocols and data protection mechanisms to safeguard sensitive information at rest and in transit.
- Identity and Access Management (IAM): Develop and maintain IAM policies and procedures to manage user access, authentication, and authorization across systems and applications.
- Security Engineering: Engage in security engineering efforts to design and implement secure infrastructure, networks, and applications.
- Edge Security: Architect security solutions for edge computing environments, ensuring that data and devices at the network edge are protected from threats.
- Cyber Resilience: Establish cyber resilience strategies, including incident response plans and disaster recovery processes, to maintain business continuity in the event of security incidents.
- Cloud Security: Secure cloud-based environments, including AWS, Azure, or Google Cloud Platform, by implementing best practices and security controls.
- Compliance and Standards: Ensure that security measures align with industry standards, regulations, and compliance requirements (e.g., NIST, ISO 27001).
- Documentation: Maintain comprehensive security documentation, including security architecture diagrams, policies, procedures, and incident reports.
Experience, Skills, and Qualifications:
- Bachelor's or master’s degree in Cybersecurity, Information Security, or a related field.
- Proven experience (minimum 6 years) as a Security Architect with expertise in IIoT Security, Firmware Security, Secure Software Development, Encryption, Data Protection, IAM, Security Engineering, Edge Security, Cyber Resilience, and Cloud Security.
- Strong understanding of cybersecurity principles, threats, and mitigation strategies.
- Proficiency in security technologies and tools.
- Experience with security assessment and penetration testing.
- Familiarity with compliance frameworks and standards (e.g., NIST, ISO 27001, GDPR).
- Excellent communication and collaboration skills.
- Strong problem-solving and analytical abilities.
- Relevant industry certifications (e.g., CISSP, CISM, CCSP) are a plus.