Lead Security Architect
Job description
Lead Security Architect at Bamboohr.
About the role
As a Lead Security Architect at Bamboohr, you will play a pivotal role in shaping the security landscape of our innovative AI solutions. This position requires a forward-thinking individual who can design and implement robust security frameworks that protect our systems and data. You will collaborate with cross-functional teams to ensure that security is integrated into every aspect of our technology stack, driving a culture of security awareness throughout the organization. Your expertise will guide the development of security policies and practices, ensuring compliance with industry standards and regulations.
Key facts
What you'll do
- Design and implement comprehensive security architectures that align with Bamboohr's business objectives and technological needs.
- Lead the assessment of existing security measures and identify areas for improvement, ensuring that our systems are resilient against emerging threats.
- Collaborate with software development teams to integrate security best practices into the software development lifecycle (SDLC), fostering a DevSecOps culture.
- Develop and maintain security policies, standards, and procedures that comply with relevant regulations and industry standards.
- Conduct risk assessments and vulnerability assessments to identify potential security weaknesses and recommend appropriate mitigation strategies.
- Serve as a subject matter expert on security technologies, providing guidance on the selection and implementation of security tools and solutions.
- Monitor security incidents and respond to breaches, coordinating with internal and external stakeholders to manage and mitigate risks effectively.
- Provide training and awareness programs for employees to promote a culture of security within the organization.
- Stay updated on the latest security trends, threats, and technologies, ensuring that Bamboohr remains at the forefront of security practices.
- Collaborate with legal and compliance teams to ensure that all security measures meet regulatory requirements and industry best practices.
- Participate in security audits and assessments, providing insights and recommendations for continuous improvement.
- Engage with external security communities and forums to share knowledge and stay informed about the latest security developments.
Requirements
- Proven experience as a Security Architect or in a similar role, with at least 5 years of experience in information security.
- Strong knowledge of security frameworks and standards, such as ISO 27001, NIST, and CIS.
- Experience with cloud security practices and technologies, particularly in AWS, Azure, or Google Cloud.
- Proficiency in security tools and technologies, including firewalls, intrusion detection systems, and encryption methods.
- Familiarity with secure coding practices and the ability to work closely with development teams to implement them.
- Excellent analytical and problem-solving skills, with a keen attention to detail.
- Strong communication skills, capable of conveying complex security concepts to both technical and non-technical stakeholders.
- Relevant certifications such as CISSP, CISM, or CEH are highly desirable.
- Experience in incident response and managing security incidents effectively.
- A proactive mindset with the ability to work independently and as part of a team.
Nice to have
- Experience in the AI or machine learning domain, understanding the unique security challenges associated with these technologies.
- Familiarity with data privacy regulations, such as GDPR or CCPA, and their implications for security practices.
- Knowledge of network security protocols and architectures, including VPNs, firewalls, and intrusion prevention systems.
- Experience with threat modeling and security testing methodologies.
- Background in risk management and compliance frameworks.
Skills & tools
- Security architecture design and implementation
- Risk assessment and vulnerability management
- Cloud security (AWS, Azure, Google Cloud)
- Security frameworks (ISO 27001, NIST, CIS)
- Incident response and management
- Secure coding practices
- Security tools (firewalls, IDS/IPS, encryption)
- Strong analytical and problem-solving abilities
- Excellent communication and collaboration skills
Practical notes
- This position is based in London, and candidates should be prepared to work in a hybrid environment, combining remote work with on-site collaboration.
- The salary for this role is competitive and will be determined based on the candidate's experience and qualifications.
- Bamboohr is committed to fostering a diverse and inclusive workplace, and we encourage applications from individuals of all backgrounds.
- Candidates requiring visa sponsorship should indicate this in their application.
META
Company: Bamboohr
Title: Lead Security Architect
Listed
location: London, London, City of
Job type: Permanent
Apply URL: https://instadeep.bamboohr.com/careers/361
Tags: Security, Architect