IT Security Architect (AI, Cloud, Networks, ISO27001)

IT Security Architect (AI, Cloud, Networks, ISO27001)

Totum Partners | Greater London, ENG, GB

Posted 16 days ago

Apply Now

Description

  • Own the enterprise security architecture vision, strategy and roadmaps from a corporate business, technology and data perspective – encompassing on-premises cloud, hybrid and network security domains including Zero Trust and SASE frameworks.
  • Define and own the firm's AI security architecture standards and governance framework – assessing the security risks associated with AI and machine learning adoption, including data privacy, model integrity, prompt injection, and supply chain risks – ensuring the firm can harness the AI technology safely and responsibly.
  • Complement the Information Security Team and the Risk and Compliance Team, supporting alignment of architectural decisions with relevant industry frameworks such as ISO 27001, NST, CIS and regulations such as GDPR and NIS2.
  • Create and maintain architectural documentation as artefacts that relate to Security, architectural designs, patterns, principles, standards and technology selection, ensuring these remain current and fit for purpose.
  • Advise and architect designs to ensure smooth deployment and secure operation for fulfilling business objectives and processes across the firm's technology estate.
  • Contribute to any Design Authorities and the firm's Architecture Review Board process

Skills Required

  • Certifications - CISSP, CISM and TOGAF9 would be ideal.
  • Proven experience in architectural roles selecting, designing and overseeing the deployment of complex solutions across on premise, cloud and hybrid environments at enterprise scale.
  • Architectural experience of product lifecycle delivery, owning the security design from strategy and roadmap through to execution.
  • Experience with working with security-based technology such as but not limited to IDAM, Firewalls, NAC, Segmentation and penetration testing in a global organization.
  • Hands on experience with network and Zero Trust security technologies including ZTNA, CASB, IDAM, Firewalls, NAC and network segmentation.
  • Practical experience designing and implementing Zero Trust and SASE frameworks, including vendor evaluation and adoption of platforms such as Palo Alto Prisma, Zscaler or equivalent.
  • Hands on and design experience of Azure networking including VNET\u2019s, VNET Peering and VNET Gateways along with integration of Azure PaaS services such as APIM, Azure AI foundry and Logic Apps.
  • Solid understanding of GRC Frameworks including ISO 27001 and NIST with the ability to translate risk and compliance requirements into practical architectural controls and standards.
  • Knowledge of applicable data privacy practices and laws with particular emphasis on GDPR and Data Residency requirements and NIS2 obligations.

This role offers hybrid working - 2 days onsite weekly.

#J-18808-Ljbffr