SECURITY ARCHITECTURE SPECIALIST
Allen Parker Visualizza tutti gli annunci
- Milano
- Tempo indeterminato
- Full time
- Support key activities related to information security, ensuring alignment with business priorities and security masterplan.
- Work closely with senior security architects, engineering teams, and IT stakeholders, contributing to the design, implementation, and evolution of security architectures across multiple platforms and business domains.
- Support the design and maintenance of security architectures for on-prem, cloud, and hybrid environments.
- Contribute to the definition of security requirements and security-by-design principles for new projects and solutions.
- Collaborate with development, infrastructure, and DevOps teams to integrate security controls into systems and applications.
- Participate in the evaluation and selection of security technologies and tools
- Help define and maintain security standards, guidelines, and reference architectures.
- Assist in security reviews, design validations, and architectural assessments
- Support the resolution of vulnerabilities identified during vulnerability assessments and penetration tests.
- Contribute to continuous improvement by identifying security gaps and suggesting and implementing effective solutions.
- Collaborate with cross-functional teams to deliver projects, initiatives or governance activities across multiple markets (multi country and multi brand).
- Monitor performance, KPIs or compliance areas, providing clear reporting and actionable insights.
- Build strong relationships with internal and external stakeholders, fostering collaboration and knowledge-sharing.
- Ensure adherence to internal frameworks, policies, controls and quality standards.
- 2-3 years of experience as a professional working in Information Security/Security Architecture & Engineering with exposure to complex or international environments.
- Proven experience designing and managing secure architectures for major cloud providers (Mainly OCI, Azure and AWS).
- Experience designing conditional access strategies, MFA/Passwordless architectures, and identity solutions across hybrid environments.
- Understanding of CI/CD pipelines and related security controls (SAST, SCA, DAST, IaC scanning).
- Ability to embed security requirements into technology initiatives from early design phases.
- Ability to evaluate technical solutions and align them with security policies, standards, and regulatory requirements.
- Familiarity with NIST, ISO 27001, CIS Benchmarks, Cloud Security Alliance (CSA) principles, and Zero Trust frameworks.
- Ability to act as advisor for technical stakeholders.
- Consistently anticipates needs and takes initiative to address security challenges, driving complex tasks to completion independently.
- Excellent written and verbal communication skills in English; knowledge of additional languages is a plus.