Description
How you can help make a better world of work
Culture Amp is looking for a unique and talented Associate Security Architect to join the Security Team which plays a key role in securing the operations of the business.
You will support our business to leverage leading edge technologies in all that they do and provide security guidance to our product teams as they develop innovative software solutions for our customers.
You will have the opportunity to establish best practice for solution design and help shape the security of a scalable technology ecosystem across the enterprise. We are a modern technology company that is growing and we are looking for someone who ‘gets the job done’ with a bit of flair and creativity to help embed security in all that we do.
In part of this team of amazing humans,
You will
- Provide expertise, guidance, and support to technical and business project teams to embed enterprise aligned cyber security architectures in the development, communication, and full lifecycle management of the project.
- Deliver core security architecture outcomes through assessment of threats that translate into mitigating security controls and solution recommendations.
- Assist in creation and maintenance of security architecture blueprints and patterns
- Provide guidance, governance, and information to support effective security architecture such as policies, processes, application references models, guidelines, and artefacts.
- Promote a proactive focus on security architecture through early intervention in technology project lifecycles; ensuring projects maintain an enterprise-wide view.
- Communicate security advice and guidance to diverse stakeholders
- Provide insight on complex security risks including, but not limited to, those presented via;
- Cyber security incidents,
- Security investigations
- Security remediation actions
- Industry events.You have
- Expertise in providing security architecture and advisory services for cloud native environments and solutions
- Proficiency with public cloud providers and services
- Deep understanding of security technologies, frameworks, methodologies and application of these to ensure informed decision making.
- Demonstrated aptitude for problem solving and navigating business and technical challenges to achieve pragmatic security outcomes.
- Threat management knowledge and how to apply this to risk based decision making.
- Experience with various security frameworks and accreditations like ISO 27,000, NIST, Mitre, CSA, and SOC2
- Understanding of enterprise risk management methods and techniques to drive successful outcomes in globally distributed environment
- Strong communication and influencing skills and ability to collaborate with a diverse range of stakeholders.
- Growth mindset who is passionate to learn and use new/emerging technologies
- Documenting/diagramming skills (e.g. for documenting security architectures / security system interaction diagrams / user flow diagrams) using tools such as Miro, Lucid Chart.