الدور نحن في Capco نبحث عن معماري أمني للمساعدة في تصميم وتقديم بيئات سحابية آمنة ومرنة لعملائنا. ستعمل عبر فرق الأعمال والأمن والهندسة والمخاطر والتكنولوجيا لدمج الأمن في برامج التحول السحابي منذ البداية. هذه فرصة لمواجهة تحديات أمنية معقدة في قطاع الخدمات المالية، ومساعدة العملاء على تبني تقنيات السحابة بثقة مع الحفاظ على الحوكمة القوية والامتثال التنظيمي وضوابط الأمن.
ماذا ستفعل
تصميم وتنفيذ استراتيجيات وسياسات أمن السحابة التي تلبي الاحتياجات المحددة للمنظمة. تصميم هياكل أمنية وأنماط أمنية عبر بيئات السحابة العامة والخاصة والهجينة. تحديد وتنفيذ ضوابط ومعايير وأطر عمل أمن السحابة ومبادئ الهندسة المعمارية بما يتوافق مع متطلبات الأعمال والتنظيم. العمل مع فرق الهندسة والمنصة لدمج الأمن في البنية التحتية السحابية والتطبيقات وعمليات التوصيل. إجراء تقييمات وتدقيقات أمنية منتظمة لتحديد الثغرات ووضع خطط لمعالجتها. تقييم مخاطر أمن السحابة، وتحديد فجوات الضوابط، وتقديم توصيات عملية توازن بين الأمن والمرونة ومتطلبات الأعمال. التعاون مع أصحاب المصلحة في الأمن والمخاطر والهندسة والتكنولوجيا لدعم اعتماد وتحويل السحابة بشكل آمن.
الملف الشخصي المرغوب فيه
ما نبحث عنه
خبرة قوية في هندسة أمن السحابة أو هندسة الأمن السيبراني أو أمن البنية التحتية السحابية. معرفة عملية بمبادئ هندسة الأمن، وإدارة الهوية والوصول، والتشفير، وأمن الشبكات، والتسجيل، والمراقبة، وضوابط الأمن الأصلية للسحابة. خبرة في تصميم حلول أمنية عبر منصات السحابة الرئيسية مثل AWS أو Microsoft Azure أو Google Cloud Platform. فهم قوي لإطارات الأمن، والحوكمة، وإدارة المخاطر، والمتطلبات التنظيمية، ومبادئ التصميم الأمني. معرفة بإطارات الأمن السيبراني المعترف بها ومعايير الأمن الصناعية. خبرة في DevSecOps، والبنية التحتية كرمز، وأمن الحاويات، وKubernetes، أو إدارة وضع أمن السحابة. مهارات اتصال قوية وإدارة أصحاب المصلحة، مع القدرة على ترجمة المتطلبات الأمنية المعقدة إلى نتائج هندسية وهندسية عملية. نقاط إضافية لخبرة تقديم حلول أمن السحابة في قطاع المصارف أو الخدمات المالية أو بيئة منظمة أخرى. شهادات سحابية أو أمنية ذات صلة. التعرض لبرامج هجرة أو تحولات تكنولوجية واسعة النطاق للسحابة أو الأمن السيبراني أو التحديث التكنولوجي.
The Role Capco is looking for a Security Architect to help our clients design and deliver secure, resilient cloud environments. You ll work across business, security, architecture, engineering, risk, and technology teams to embed security into cloud transformation programmes from the outset. This is an opportunity to tackle complex security challenges within financial services, helping clients adopt cloud technologies confidently while maintaining strong governance, regulatory compliance, and security controls. What You ll Do Designing and implementing cloud security strategies and policies that meet an organisation's specific needs. Design secure architectures and security patterns across public, private, and hybrid cloud environments. Define and implement cloud security controls, standards, guardrails, and architecture principles aligned with business and regulatory requirements. Work with engineering and platform teams to embed security throughout cloud infrastructure, applications, and delivery pipelines. Conducting regular security assessments and audits to identify vulnerabilities and develop plans to address them. Assess cloud security risks, identify control gaps, and provide practical recommendations that balance security, resilience, and business requirements. Collaborate with security, risk, architecture, and technology stakeholders to support secure cloud adoption and transformation.
Desired Candidate Profile
What We re Looking For Strong experience in cloud security architecture, cybersecurity architecture, or cloud infrastructure security. Practical knowledge of security architecture principles, identity and access management, encryption, network security, logging, monitoring, and cloud-native security controls. Experience designing security solutions across major cloud platforms such as AWS, Microsoft Azure, or Google Cloud Platform. Strong understanding of security frameworks, governance, risk management, regulatory requirements, and security-by-design principles. Knowledge of recognised cybersecurity frameworks and industry security standards. Experience with DevSecOps, infrastructure as code, container security, Kubernetes, or cloud security posture management.Clear communication and stakeholder management skills, with the ability to translate complex security requirements into practical architecture and engineering outcomes. Bonus Points For Experience delivering cloud security solutions within banking, financial services, or another regulated environment. Relevant cloud or security certifications. Exposure to large-scale cloud migration, modernisation, cybersecurity, or technology transformation programmes.