Skip to main contentA logo with &quat;the muse&quat; in dark blue text.

Security Architect-Security Solution Design

AT IBM
IBM

Security Architect-Security Solution Design

Melbourne, Australia

Introduction

Information and Data are some of the most important organisational assets in today's businesses. As a Security Consultant, you will be a key advisor for IBM's clients, analysing business requirements to design and implement the best security solutions for their needs. You will apply your technical skills to find the balance between enabling and securing the client's organisation with the cognitive solutions that are making IBM the fastest growing enterprise security business in the world.

Your role and responsibilities

The Senior Security Architect is a strategic and technical leader responsible for defining, developing, and maintaining the organization's security architecture across various domains, including cloud, on-premises infrastructure, and applications. This role provides expert guidance to project teams, stakeholders, and security personnel to ensure that security is embedded throughout the system development lifecycle and operational processes. The Senior Security Architect proactively identifies security risks, recommends robust and innovative solutions, and drives the adoption of security best practices to protect the organization's assets and maintain a strong security posture.

Want more jobs like this?

Get jobs in Melbourne, Australia delivered to your inbox every week.

By signing up, you agree to our Terms of Service & Privacy Policy.


Responsibilities:

  • Strategic Security Leadership: Define and evolve the organization's security architecture framework, principles, and standards, aligning with business objectives and regulatory requirements.
  • Technical Guidance and Analysis: Provide in-depth technical analysis and architectural guidance to project teams, ensuring systems meet stringent security requirements from inception through deployment.
  • Risk Management and Trade-off Analysis: Act as a subject matter expert to address complex security issues and contentions, collaborating with project teams to find balanced trade-offs between security, operational efficiency, and functional needs.
  • Security Best Practices and Design Oversight: Oversee and provide expert advice on security best practices in system design, implementation plans, and infrastructure deployments, ensuring adherence to architectural standards.
  • Cross-Functional Collaboration and Planning: Develop comprehensive work plans in collaboration with cross-functional teams (e.g., development, operations, infrastructure) to deliver integrated and effective security solutions.
  • Problem Solving and Innovation: Proactively identify and analyze complex security problems, break them down methodically, and develop innovative and appropriate architectural solutions.
  • Cloud Security Strategy and Architecture: Lead the development and implementation of the organization's cloud security strategy and architecture, with a strong focus on AWS and GCC platforms, ensuring secure adoption and operation of cloud services.
  • Security Platform Leadership: Provide architectural leadership and guidance for the design, implementation, and evolution of key security platforms, ensuring their effectiveness and alignment with the overall security architecture.
  • Security Standards and Governance: Contribute to the development and enforcement of security policies, standards, and guidelines, ensuring compliance with relevant regulations and industry best practices.
  • Threat Modeling and Risk Assessment: Lead threat modeling exercises and contribute to risk assessments to identify potential vulnerabilities and design appropriate mitigation strategies within the architecture.
  • Security Technology Evaluation: Evaluate and recommend new security technologies and solutions to enhance the organization's security capabilities and adapt to the evolving threat landscape.
  • Mentorship and Knowledge Sharing: Mentor junior security team members and promote knowledge sharing of security architecture principles and best practices across the organization.
  • Incident Response Architecture: Contribute to the architectural design of incident response capabilities and play a key role in providing technical expertise during security incidents.
  • DevSecOps Integration: Champion and provide architectural guidance for the integration of security practices into the Agile/Scrum development lifecycle (DevSecOps).

Experience:

  • Minimum eight (8+) years of progressive IT experience, with a significant focus on security architecture, design, and implementation of complex enterprise IT security systems and services.
  • Demonstrated experience in delivering and leading the security architecture for medium to large-scale enterprise projects, encompassing the design, integration, and management of complex infrastructure and application solutions.
  • Extensive hands-on experience in architecting and overseeing the operations of security platforms in a medium to large-scale organization.
  • Deep and broad domain knowledge across a wide range of security solutions, including but not limited to: Security Information and Event Management (SIEM), Data Loss Prevention (DLP), Database Activity Monitoring (DAM), Data Security and Protection (including encryption and masking), Privileged Access Management (PAM), File Integrity Monitoring (FIM), Web Application Firewall (WAF), Intrusion Prevention/Detection Systems (IPS/IDS), Endpoint Detection and Response (EDR), and Vulnerability Management.
  • Significant and demonstrable experience in designing and implementing secure cloud architectures, with in-depth knowledge of security best practices and native security services within AWS and GCC platforms.
  • Strong understanding and practical experience with Agile/Scrum methodologies and integrating security within these frameworks (DevSecOps).

Required education

Bachelor's Degree

Preferred education

Associate's Degree/College Diploma

Required technical and professional expertise

  • Bachelor's or Master's degree in Engineering, Computer Science, or a related field.
  • Relevant advanced certifications in cyber security architecture or cloud security are highly preferred (e.g., SABSA, TOGAF with security specialization, CISSP-ISSAP, CCSP, AWS Certified Security - Specialty, Google Cloud Certified - Professional Cloud Security Engineer, Microsoft Certified: Azure Solutions Architect Expert with security focus).
  • Exceptional written and verbal communication skills, with the ability to articulate complex technical concepts to both technical and non-technical 1 audiences, including executive stakeholders.
  • Highly organized, independent, and capable of leading and working with minimal supervision in a fast-paced environment, while adhering to organizational processes and governance frameworks.
  • Strong analytical and problem-solving skills with a strategic mindset and the ability to think holistically about security challenges.
  • Excellent leadership, collaboration, and influencing skills to drive security initiatives across diverse teams.
  • A proactive and continuous learning approach to stay abreast of the latest security threats, technologies, and architectural best practices.

Preferred technical and professional experience

  • Strategic Focus: Added emphasis on strategic leadership, defining security architecture frameworks, and aligning with business objectives.
  • Cloud Leadership: Explicitly highlighted the leadership role in developing and implementing cloud security strategy, particularly for AWS and GCC.
  • Security Platform Leadership: Emphasized the architectural leadership for security platforms.
  • Threat Modeling: Included leading threat modeling exercises as a key responsibility.
  • Security Technology Evaluation: Added the responsibility of evaluating and recommending new security technologies.
  • Mentorship: Included mentoring junior team members.
  • Incident Response Architecture: Highlighted contribution to incident response architecture.
  • DevSecOps Champion: Explicitly mentioned championing and guiding DevSecOps integration.
  • Advanced Certifications: Preferred qualifications now include more advanced and architecture-specific certifications.
  • Leadership and Influencing Skills: Added leadership, collaboration, and influencing skills as key attributes.
  • Strategic Mindset: Emphasized the need for a strategic and holistic approach to security.

Relevant industry certifications will be highly regarded, such as:

  • CISSP
  • TOGAF
  • SABSA

ABOUT BUSINESS UNIT

IBM Consulting is IBM's consulting and global professional services business, with market leading capabilities in business and technology transformation. With deep expertise in many industries, we offer strategy, experience, technology, and operations services to many of the most innovative and valuable companies in the world. Our people are focused on accelerating our clients' businesses through the power of collaboration. We believe in the power of technology responsibly used to help people, partners and the planet.

YOUR LIFE @ IBM

In a world where technology never stands still, we understand that, dedication to our clients success, innovation that matters, and trust and personal responsibility in all our relationships, lives in what we do as IBMers as we strive to be the catalyst that makes the world work better.

Being an IBMer means you'll be able to learn and develop yourself and your career, you'll be encouraged to be courageous and experiment everyday, all whilst having continuous trust and support in an environment where everyone can thrive whatever their personal or professional background.

Our IBMers are growth minded, always staying curious, open to feedback and learning new information and skills to constantly transform themselves and our company. They are trusted to provide on-going feedback to help other IBMers grow, as well as collaborate with colleagues keeping in mind a team focused approach to include different perspectives to drive exceptional outcomes for our customers. The courage our IBMers have to make critical decisions everyday is essential to IBM becoming the catalyst for progress, always embracing challenges with resources they have to hand, a can-do attitude and always striving for an outcome focused approach within everything that they do.

Are you ready to be an IBMer?

ABOUT IBM

IBM's greatest invention is the IBMer. We believe that through the application of intelligence, reason and science, we can improve business, society and the human condition, bringing the power of an open hybrid cloud and AI strategy to life for our clients and partners around the world.

Restlessly reinventing since 1911, we are not only one of the largest corporate organizations in the world, we're also one of the biggest technology and consulting employers, with many of the Fortune 50 companies relying on the IBM Cloud to run their business.

At IBM, we pride ourselves on being an early adopter of artificial intelligence, quantum computing and blockchain. Now it's time for you to join us on our journey to being a responsible technology innovator and a force for good in the world.

IBM is proud to be an equal-opportunity employer. All qualifiedapplicants will receive consideration for employment without regard to race,color, religion, sex, gender, gender identity or expression, sexualorientation, national origin, caste, genetics, pregnancy, disability,neurodivergence, age, veteran status, or other characteristics. IBM is alsocommitted to compliance with all fair employment practices regardingcitizenship and immigration status.

OTHER RELEVANT JOB DETAILS

For additional information about location requirements, please discuss with the recruiter following submission of your application.

Client-provided location(s): Melbourne VIC, Australia
Job ID: IBM-34286
Employment Type: Other

Company Videos

Hear directly from employees about what it is like to work at IBM.