Senior Security Architect at KUBRA designing and implementing security solutions across cloud environments. Overseeing security in application and database platforms with a focus on AWS.
Responsibilities
Perform security architecture design reviews and provide recommendations to improve the security posture of KUBRA’s application, database, and cloud platforms.
Perform periodic testing, code analysis, and security assessments of KUBRA owned applications.
Govern Watch over cloud security systems for change and configuration control thereby suggesting changes to further improve the overall security posture.
Partner with DevSecOps, Application and Infrastructure teams to ensure any vulnerabilities or issues are resolved per security guidelines.
Stay up to date with current cyber security risk and analyze trends to proactively prevent problems.
Assist in developing an overall organizational data strategy that is in line with business processes and contractual requirements.
Identify and provide guidance on appropriate controls based on industry standards to drive cloud and customer security solutions framework based on business risk and cloud native threats.
Develop and implement cloud security architectures focused on AWS.
Assist in developing an overall organizational data strategy that is in line with business processes and contractual requirements.
Establish and enforce secure application development practices, including secure coding, threat modeling, SAST/DAST and vulnerability management.
Conduct security assessments of cloud infrastructure, applications, and CI/CD pipelines.
Provide security guidance and best practices to Product and Service Delivery teams.
Define and implement security policies, standards, and procedures for cloud and application security.
Work with engineering and operations teams to integrate security controls within cloud-native services.
Lead security reviews, architecture assessments, and risk analysis for new and existing applications.
Monitor security trends, vulnerabilities, and threats in cloud and application security domains.
Collaborate with compliance teams to ensure adherence to regulations such as PCI-DSS, SOC 1/2, ISO 27001 etc.
Respond to security incidents and provide expertise in forensic analysis and remediation.
Design and implement network security controls, including firewall configuration and management.
Manage firewall solutions such as Akamai and cloud-native security services to protect applications and infrastructure.
Ensure robust network security by implementing intrusion detection/prevention systems (IDS/IPS), web application firewalls (WAFs), and DDoS mitigation strategies.
Design and implement database security controls, including data encryption, access control, and monitoring.
Conduct database vulnerability assessments and ensure compliance with security policies.
Work with database administrators to apply security best practices to relational and NoSQL databases.
Implement data masking, tokenization, and audit logging for sensitive data protection.
Develop and implement Infrastructure as Code (IaC) security best practices to ensure secure provisioning and configuration of cloud resources.
Ensure security is embedded in IaC templates using tools like Terraform and AWS CloudFormation.
Requirements
7+ years of experience in cybersecurity, with a focus on Security Architecture, cloud and application security.
Specialist in Information Security at Lojas Renner responsible for monitoring and addressing security incidents. Collaborating with various teams on data protection strategies and leadership preparation.
Cybersecurity Specialist at Caixa Vida e Previdência ensuring safety in various technology solutions. Collaborating with teams to implement security measures and respond to incidents.
Técnico de Segurança do Trabalho at Cia do Treinamento responsible for training clients on safety regulations and conducting safety assessments. Seeking professionals passionate about safety and compliance across Brazil.
Ingénieur en sécurité physique participant à des projets d’envergure au sein de Stantec. Analysant besoins, concevant systèmes de sécurité et préparant documentation technique.
System Security Engineer strengthening cybersecurity posture across on - premise and hybrid environments. Focused on Windows infrastructure security, identity management, and compliance.
Security Testing Lead overseeing application security testing activities at Computer World Services. Ensuring continuous identification and remediation of application security risks through dynamic testing methods.
IS Security Administrator managing all aspects of cyber security and data protection at Avita Health System. Responsible for risk assessments and IT security strategies across various platforms.
Senior Security Engineer strengthening security at fintech startup Flanks, focusing on security initiatives and practices across applications and infrastructure.
Director of Control Assurance leading IT risk management and controls testing at RBC. Propelling technology, risk, and security advancements across the organization.