It's fun to work in a company where people truly BELIEVE in what they're doing!
The Solutions Architect is responsible for designing, implementing, and maintaining robust security architectures that protect the organisation against Cybersecurity Threats and secure sensitive data in compliance with regulations such as POPIA, PCI. The role will collaborate directly with Architecture, IT Teams, Security Operations, and Engineers to design and build security controls and solutions compliant with approved enterprise architecture frameworks and standards across business and digital.
You will be required to understand and evaluate various technologies, processes and tools to ensure appropriate cyber-threat resistance in line with business risk appetite and budgets, while working with the operations team, business and vendors to ensure the company gets the best solution and the best out of the chosen solution
It also requires managing and executing various risk management and control improvement activities in support of our business and Information and Technology Services. This includes ensuring compliance with relevant external and internal requirements, legislation, and regulations.
This role also includes supporting and driving the ascription to relevant frameworks and related processes for the ongoing management of the IT GRC activities.
- Tertiary qualification in Computer Science, Engineering, or related field (preferred)
- Minimum of 8-10 years of experience in Security Architecture
- Relevant professional certification(s) such as CISSP, CISA, CISM, or other relevant security-related designation(s) preferred
- Understanding of relevant frameworks, guidelines, and standards (specifically NIST CSF and PCI-DSS)
- Understanding of relevant regulatory requirements and standards such as PCI, POPI, KING, EMV, etc.
- Experience in identifying gaps in existing architectures
- Understanding of security infrastructure in Public and Private Cloud, e.g., virtual network infrastructure, hybrid IaaS/PaaS/SaaS solutions
- Experience in designing security architectures to mitigate threats and sound knowledge of security strategies and technologies
- Experience PCI-DSS Assessments
- Experience in and strong understanding of IT Governance, Information Security, Privacy, IT Risk, Internal/External Audit related concepts.
- Experience working in a multi-vendor and outsourced IT environment (preferred).
- Direct the Project and Security teams with the guidance to build policies, standards, risks, and controls frameworks supporting operational requirements for the business
- Good experience in security architecture design in Cloud and on-prem
- Design and implementation of IOT, endpoint protection, and secure IAM
- Understanding of authentication and authorisation technologies (SAML, LDAP, PKI, etc.) and other IAM technologies
- Understanding of the implementation, operation, and maintenance of SIEM, boundary protection technologies (firewalls, mail gateways), Antivirus, and AD security products
- Knowledge of web application architectures and threat modelling
- Design and develop complex and comprehensive security architectures for our systems, applications, and infrastructure, considering both current and future needs
- Collaborate with stakeholders, including developers, engineers, and project managers, to integrate security requirements into the system design and development lifecycle.
- Actively promote the importance and value of good Information Security Practices.
- Provides guidance and expertise in secure coding practices, network security, identity and access management, data protection, and other security domains
- Model threats and risks, designing the controls necessary to mitigate them, on both an organisational and technical level - thinking like an attacker, understanding and anticipating the moves and tactics that a hacker might use to attack systems
- Follow the architecture analysis process, which consists of research, validation, and evaluation of all new initiatives, with phase gate reviews presented to all stakeholders during key forums, including current trends such as AI and LLMS
- Evaluates and selects security technologies, tools, and frameworks to support the organisation's security
- Define portfolio vision and reusable security patterns aligned with the Cybersecurity and Information Technology strategy
- Lead architecture reviews for high-risk projects, driving recommendations to resolution
- Advise on security controls for hybrid and cloud platforms, balancing usability, cost, and compliance
- Defines and applies security policies, standards, and procedures to ensure compliance with industry regulations and best practices
- Support incident response activities, including identification, containment, eradication, and recovery, in coordination with the incident response team
- Experience with Cloud Security platform vendors and technologies such as Azure and AWS
- Manage security architects and mentor engineers, developers, and vendors
- Support the security awareness and training program
- Support the business and/ or risk owners control remediation for threats and/or exposures
Competencies:
- Strong interpersonal capabilities to engage senior stakeholders, business owners and risk community
- Have a collaborative and business enabling mindset (not purely compliance or audit)
- Excellent written and verbal communication skills, including the ability to report and communicate technical concepts to technical and non-technical audiences
- Advanced analytical and problem-solving skills, with the ability to derive practical solutions to complex problems
- Ability to work both independently and as part of a team (interpersonal and collaborative skills) to deliver quality work product in a timely fashion in a fast-paced environment
- Ability to maintain strict confidentiality
- A strong desire to learn and improve. Also, must be able to quickly change own paradigms and ideas when new options or possibilities present themselves
- A strong passion for the mission and vision of the Pick n Pay business, our customers, and staff
If you like wild growth and working with happy, enthusiastic over-achievers, you'll enjoy your career with us!
Discover who we are