This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
Define, govern, and maintain Aker Solutions’ enterprise-wide cyber security architecture within IT and information security. This strategic and transformational role owns the target state and multi-year roadmap, guiding the organization toward a mature, risk-informed, cloud-ready, zero-trust-aligned security posture. While this is not a solution architect role, you will provide guidance to solution teams as needed. You will work across hybrid cloud environments, including traditional Azure workloads and modern containerized microservices, and collaborate with architects across all IT towers to ensure consistent implementation, governance, and alignment. This leadership-oriented position goes beyond solution-level design and requires steering the long-term architectural vision across the enterprise.
Job Responsibility:
Develop and maintain a holistic security architecture across on-prem, Azure IaaS/PaaS, and containerized workloads, embedding Zero Trust principles, multi-layered security, and secure DevSecOps practices
Define and guide the adoption of key security capabilities, including posture management, cloud workload protection, container security, identity governance, logging/telemetry, threat detection, and secret management
Create and maintain architecture standards, patterns, and guardrails to support secure solution design across IT towers, collaborating with infrastructure, cloud, identity, network, application, and integration teams
Lead and support architectural governance, acting as the enterprise security authority and facilitating decision-making forums
Own, prioritize, and continuously update the multi-year security architecture roadmap to align with business priorities, operational realities, the threat landscape, regulatory requirements, and technology evolution
Drive secure modernization and adoption across Azure workloads, cloud-native/containerized applications, and identity-centric access models, ensuring appropriate tools and controls are in place (e.g., cloud workload protection, container security, infrastructure-as-code, centralized logging/telemetry)
Support DevOps and platform engineering teams with secure design patterns and lifecycle governance
Ensure compliance with standards, frameworks, and regulations, including ISO 27001, NIST CSF 2.0, NIS2, GDPR, CISA Zero Trust, and the Norwegian Security Act
Embed compliance-by-design and lead security risk assessments for new platforms or architectural changes
Drive modernization of identity governance, including lifecycle automation, and privileged access management
Provide advisory support and mentorship, guiding leadership on architectural risks, capability gaps, and investment needs, and coaching architects and engineers in secure design principles and best practices
Requirements:
Demonstrated experience in designing and governing enterprise-scale security architectures across hybrid and cloud environments
Strong understanding of enterprise and cloud security, including: Azure infrastructure security
Container and microservice security
Identity governance and privileged access management
Secure network and data architecture
DevSecOps and cloud-native delivery models
Experience working with or implementing security frameworks and standards such as ISO 27001, NIST CSF 2.0, NIS2, GDPR, and Zero Trust architectures (e.g., CISA Zero Trust)
Understanding of security challenges in IT–OT integrations, including familiarity with standards such as IEC 62443
Experience in working with multi-vendor scenarios and experience with interacting with offshore teams
Ability to translate security risks and architectural decisions into clear, business-relevant language
Strong collaboration and influencing skills, with the ability to work across IT towers and external vendors
High integrity and the ability to operate effectively in environments where security capabilities are evolving or still maturing
What we offer:
Solid pension and insurance coverage
Well-being: access to free fitness facilities, sport groups and equipment rental, and a variety of cabins for rent
Remote work flexibility: Work from home up to two days per week