Security Architect
Accenture
Accenture
Join our team as a Security Architect, where you will shape the future of cloud security. Your role will involve defining robust cloud security frameworks and architectures that align with business objectives and performance targets. You'll be instrumental in documenting the implementation of critical cloud security controls and ensuring a smooth transition to managed cloud security operations.
This position offers the opportunity to drive innovation in a dynamic cybersecurity landscape. You will work with cutting-edge technologies and contribute to protecting vital business assets.
As a Security Architect, you will be expected to operate independently and become a subject matter expert (SME). Your contributions will include active participation in team discussions and providing innovative solutions to complex work-related problems.
Key responsibilities include performing comprehensive vulnerability assessments and penetration testing across web applications, mobile platforms (Android and iOS), APIs, cloud environments, and networks. You will conduct in-depth security research, analyze emerging threats, and perform threat modeling. Additionally, you will validate and document security vulnerabilities, recommending effective remediation measures and supporting the integration of secure software development lifecycle (SSDLC) practices and DevSecOps within CI/CD pipelines. Utilizing industry-standard security tools is essential for conducting thorough assessments and improving the overall security posture of applications and infrastructure.
Ideal candidates will possess a minimum of 4 years of experience in Security Research, Security Consulting, Security Assessments, and Penetration Testing. A strong grasp of security threats, vulnerability research, and best practices for secure software development is crucial. Experience with threat modeling, security code reviews, reverse engineering, exploitation techniques, and mitigation strategies is highly valued.
Hands-on proficiency with SAST, DAST, SCA, and threat modeling methodologies is required. You should be adept at using industry-standard security assessment and penetration testing tools such as Burp Suite, Metasploit, Nessus, Fortify SCA, and others. Familiarity with Windows and Linux environments, DevSecOps practices, and CI/CD tools like Jenkins is also important. Knowledge of cybersecurity standards and frameworks including PCI DSS, ISO 27001, NIST, OWASP, and MITRE ATT&CK is expected. While not mandatory, possession of relevant security certifications like CEH, OSCP, CISSP, or CISM is a plus. Excellent written and verbal communication skills are essential for effective collaboration.
Accenture
IT Consulting