16 ago
|
Michael Page International
|
Barcelona
16 ago
Michael Page International
Barcelona
Barcelona, España, ESTipo: Jornada completaModalidad: Remoto / híbridoEmpresa: Michael PageContacto: Jordi AlumaModalidad de trabajo: Remoto / híbridoHigh visibility and business impactOpportunity to grow as a strategic Security Architect Dónde vas a trabajar? A leading global professional services organisation with a strong international presence, operating in multiple countries and supporting a large-scale, enterprise technology environment.The company is investing in its cybersecurity capabilities and digital transformation, offering the opportunity to work on complex global projects, modern cloud technologies, and strategic security initiatives within a collaborative and multicultural environment.DescripciónResponsibilities:Support the development of security architectures, including target states, transition plans and roadmaps aligned to business objectives, IT strategy and security risk appetite.Provide risk-based security architecture guidance to engineering, infrastructure, application, architecture, project and business teams.Review solution, application, infrastructure and integration designs to ensure secure-by-design principles, appropriate technology selection and alignment with PageGroup security policies and standards.Support security architecture activities across BAU services, projects, programmes and material change initiatives, ensuring security requirements are identified, designed, implemented and governed.Perform threat modelling, threat analysis and architecture risk assessments to identify threats, attack paths, vulnerabilities, security weaknesses and appropriate mitigating controls.Define, document and maintain security requirements, control specifications, architectural patterns, standards,
baselines and implementation guidance, ensuring alignment with business risk appetite and applicable security standards.Conduct security architecture reviews and implementation assurance activities to validate that agreed security controls and requirements have been effectively implemented.Participate in architecture governance forums, change reviews and security assurance activities, providing advice on security risks and compliance with security standards.Conduct independent security reviews and produce technical reports, recommendations and supporting documentation, including working with third parties where required.Maintain awareness of emerging technologies, threats and security trends, recommending updates to standards, controls and guidance where appropriate.5+ years of experience working in a specialist IT/technical/architect role.3+ years of experience in an information security-focused role.Good IT security background, including knowledge of security architectures, cloud security, network security, information security best practices, and best-practice operating models and processes.2+ years delivering security risk assessments in a global IT environment.Detailed technical knowledge relating to hardware and software.Experience supporting security assurance activities,
including penetration testing and findings remediation.Familiarity with NIST Cybersecurity Framework, CIS Controls and ISO 27001.Knowledge of principles and practices involved in the development and maintenance of software solutions, architectures and service delivery.Experience with regulatory compliance and information security management frameworks (e.g., Experience deploying and operating information security risk management processes.Familiarity with standard IT process and control frameworks, such as ITIL, IT4IT, COBIT and TOGAF.Analytical thinking and problem-solving abilities, including troubleshooting and adapting to significant project changes.Proactive and forward-thinking attitude towards cybersecurity.Knowledge of project and program management methodologies.Basic understanding of corporate finance and commercial awareness.Ability to work effectively on large, global projects in diverse and multi-cultural environments.Commitment to achieving quality with a rational and organised approach to tasks.Education to first-degree level or equivalent in a technology, cybersecurity or a related field is preferred.Strong knowledge of core Microsoft cloud technologies and services, including Azure IaaS and Microsoft 365.Cultural awareness when working with global teams.Opportunity to play a key role in shaping and improving cybersecurity architecture within a integral enterprise environment.Exposure to large-scale projects, cloud technologies, and complex security challenges across multiple regions and business functions.Strong stakeholder visibility, working closely with architecture, engineering, infrastructure, and senior leadership teams.
📌 Security Architect (Hybrid role in Barcelona)
🏢 Michael Page International
📍 Barcelona