Security Architect

  • Full-time

Company Description

With 15+ years of experience in IT, global partners and clients, Energize Global Services (EGS) is a solid, leading-edge Technology Company focused on delivering software services and products for the Banking and Financial Management Industry. We are specialized in developing Banking Systems, all types of payment solutions and other large applications. Over the years EGS proved to be a reliable and trusted partner for the biggest player in the Financial technology industry. Join our team, elevate your career to a new level by becoming part of a team that is shaping the future of Fintech.

Job Description

We are seeking a Security Architect to define and drive the security direction across our cloud, application, and network environments. This is a strategic, hands-on architecture role responsible for setting security requirements, providing assurance across our technology estate, and ensuring risk is understood, prioritized, and reduced. The Security Architect works closely with engineering teams, application owners, and external vendors to embed security by design and to raise the overall maturity of our defensive posture.

The ideal candidate combines strong architectural thinking with practical security expertise, and can translate risk into clear, actionable direction for both technical and non-technical stakeholders.

Qualifications

Must-Have

    • Proven experience in a security architecture or senior security engineering role.
    • Strong understanding of network, edge, and web application security, including the ability to define and assess security requirements for these environments.
    • Deep knowledge of vulnerability management practices, risk scoring, and remediation prioritization.
    • Familiarity with penetration testing processes and driving findings to closure.
    • Experience assessing SaaS and cloud application security (identity, access, configuration, data protection).
    • Ability to communicate risk clearly and influence technical and non-technical stakeholders.

    Attributes

    • Outcome-focused and accountable
    • Comfortable making decisions in ambiguous and evolving environments
    • Calm, structured, and credible under pressure
    • Able to influence without direct authority
    • Pragmatic, transparent, and delivery-focused

     

    Responsibilities

    Network & Edge Security Assurance

    • Provide security oversight and architectural guidance for our network and edge deployments (including WAF and related edge protections).
    • Define the security requirements these deployments must meet, assess implementations against them, and ensure controls are effective, well-monitored, and continuously improved.

    Vulnerability Management

    • Own the strategy and architecture of the vulnerability management program. Establish a risk-based approach to identifying, prioritizing, and driving remediation of vulnerabilities — with particular focus on End-of-Life systems, higher-risk public-facing exposures, and closing outstanding penetration test findings.
    • Ensure the organization has clear visibility of its vulnerability posture and progress over time.

    Threat Detection & Deception

    • Shape our threat detection capability, including the use of honeypots and deception technology to surface malicious activity early.
    • Ensure detection sources feed into monitoring and incident response, and that resulting intelligence informs and strengthens our defensive controls.

    SaaS & Application Security Assurance

    • Define and lead the security assurance approach for SaaS and third-party applications.
    • Set the standards for how applications are assessed, onboarded, and reviewed, and work directly with application owners and vendors to identify gaps, agree remediation, and verify that security requirements are met throughout the application lifecycle.

    Additional Information

     

      By clicking the link above or any third-party link within this posting, you are leaving this site and going to a third-party website where the third-party website's terms and privacy policy apply