Cybersecurity Solution Architect
Indexed description
You'll guide clients through the entire improvement journey, helping them implement effective security measures, navigate regulatory requirements, and prepare for emerging threats. Working across diverse industries and technologies, you'll apply your expertise to solve complex security challenges and deliver measurable business value.
You will have the opportunity to contribute to a wide range of cybersecurity domains, including Security Posture Improvement, Regulatory Compliance & Governance, Data Protection & Privacy, Infrastructure and Application Security, Cloud Security, Cost Optimization & Migration Efficiency, and Secure Adoption of AI technologies. As part of a collaborative team of security experts, you'll stay at the forefront of cybersecurity trends while helping organizations achieve resilience in an ever-evolving threat landscape.
Responsibilities
- Lead and grow the Cybersecurity Practice team, acting as Practice Lead for Secure SDLC and Application Security engagements
- Architect and oversee Secure SDLC programs for enterprise clients
- Assess client security maturity and define improvement roadmaps at a strategic level
- Own the technical direction for embedding security into CI/CD pipelines and engineering workflows across multiple projects
- Establish measurable security KPIs and reporting frameworks for the practice
- Guide clients in adopting risk-based vulnerability management
- Lead threat modeling and secure architecture workshops
- Define secure development standards and guardrails across projects and teams
- Drive developer security adoption and awareness at scale
- Shape and contribute to modern cloud and AI security practices
- Act as a trusted advisor and thought leader in security transformation initiatives
- Lead negotiations with clients to understand business and technical requirements
- Mentor and develop team members, supporting hiring, staffing, and career growth within the practice
- A senior security architect with 8+ years of experience in Application Security, DevSecOps, or Secure SDLC implementation, including experience leading or mentoring a team
- An expert in designing and implementing Secure SDLC frameworks at scale across enterprise environments
- Skilled in building and defining security metrics dashboards (KPIs, SLAs, risk visibility, executive reporting)
- Advanced in threat modeling, secure architecture reviews, and design-level security validation
- Deeply hands-on with: SAST, DAST, SCA tools, Secrets scanning, Container and Kubernetes security, Infrastructure-as-Code security, CI/CD security integration
- Experienced in defining and governing: Security gates, Risk-based policies, Governance workflows, Exception and risk acceptance processes
- Fluent in modern cloud-native stacks (microservices, APIs, containers, Kubernetes, public cloud platforms)
- Comfortable reviewing source code in at least one major language (Java, .NET, Node.js, Python, Go)
- Strategic in aligning security architecture and initiatives with business priorities, delivery timelines, compliance requirements, and risk management strategy
- Proven in leading teams, mentoring engineers, and managing practice-level priorities and growth
- Influential in leading discussions with engineering managers, architects, and security leadership
- Fluent in spoken and written English
- Certified with any of OSCP, OSWE, OSEP, OSCE, CREST, eCPPT, eCPTX, eWPT, or eWPT certifications (nice to have)
Create a free Caio profile to unlock more results and save your role and location preferences.
Unlock free search