CrawlJobs Logo

Threats architect

nicollcurtin.com Logo

Nicoll Curtin

Location Icon

Location:
Malaysia

Category Icon

Job Type Icon

Contract Type:
Not provided

Salary Icon

Salary:

Not provided

Job Description:

A leading global bank is seeking a Threats Architect within the Information & Cyber Security (ICS) – Identity & Access Management (IAM) organization to lead the strategy and architecture for identity access controls and identity threat detection and response capabilities. This role defines and drives the roadmap for protecting the bank’s identities, platforms, and critical applications from identity-based attacks. The Threats Architect will address emerging risks including non-human identities (NHIs), Artificial Intelligence, and digital assets, while aligning cybersecurity capabilities with business and regulatory requirements. The role works closely with cybersecurity, engineering, architecture, and risk teams and reports to the Head of IAM Threats Architecture and Controls.

Job Responsibility:

  • Define the strategy, roadmap, and architecture for identity threat detection and response capabilities
  • Leverage MITRE ATT&CK, MITRE DEFEND, and cyber threat intelligence to design detection and response controls
  • Address emerging risks related to AI, digital assets, and non-human identities
  • Serve as the subject matter expert for identity threats and identity security controls
  • Define capability metrics, KPIs, and reporting frameworks
  • Maintain IAM security standards, policies, and control documentation
  • Evaluate and support selection of identity security technologies
  • Align cybersecurity capabilities with business priorities and strategic objectives
  • Partner with engineering, security operations, architecture, and risk teams to deliver capabilities
  • Translate security requirements into business outcomes and technology solutions
  • Provide technical leadership to engineers and architects working on identity security solutions
  • Collaborate with vendors and external partners where required
  • Design and enhance identity access control and threat detection capabilities
  • Support automation, process optimization, and agile delivery practices
  • Develop and operationalize identity threat response runbooks with cyber operations teams
  • Ensure alignment with cybersecurity standards, regulatory requirements, and internal governance frameworks
  • Maintain audit readiness and centralized audit trails for identity security controls
  • Identify and manage program risks, dependencies, and escalations

Requirements:

  • 15+ years cybersecurity experience
  • 8+ years in cyber threat detection, response, or threat intelligence
  • Strong expertise in MITRE ATT&CK and DEFEND frameworks
  • Experience designing threat detection and response solutions
  • Knowledge of enterprise identity platforms (Active Directory, Entra ID, Okta, SailPoint)
  • Familiarity with cloud platforms (Azure/AWS) and enterprise infrastructure security
  • Understanding of AI-related threats and non-human identity risks
  • Strong stakeholder management, communication, and strategic delivery skills
  • Experience in banking, financial services, or regulated industries preferred
  • Bachelor’s degree in Cyber Security, Computer Science, Engineering, or related field
  • Relevant certifications such as GOSI, GSOA, GCIA, GEIR, or GCIH
  • Experience with security technologies including Microsoft Defender, CrowdStrike, Palo Alto Cortex, CyberArk, BeyondTrust, Entra ID, Okta, or SailPoint

Additional Information:

Job Posted:
March 19, 2026

Job Link Share:

Looking for more opportunities? Search for other job offers that match your skills and interests.

Briefcase Icon

Similar Jobs for Threats architect

Principal Security Architect

As a Security Architect, your role involves designing, reviewing, and enhancing ...
Location
Location
United States , San Francisco
Salary
Salary:
164000.00 - 290000.00 USD / Year
ethoslife.com Logo
Ethos
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 7+ years of experience in Information Security with at least 2 years as a Security Architect
  • Bachelor’s Degree in Computer Science or related field, or an additional 3 years of pertinent work involvement preferred
  • Strong knowledge of prevalent security architectures, frameworks, standards and emerging threats along with strategies and technologies for defense
  • Deep understanding of network protocols, operating systems, databases, applied cryptography, least privilege, zero trust principles, identity & access management, and other core information security concepts
  • Expertise in cloud computing and its associated best security practices encompassing applications, infrastructure, storage, platforms, and data security
  • Ability to conduct threat modeling and risk assessments
  • Ability to come into our San Francisco, CA office once a week
Job Responsibility
Job Responsibility
  • Conduct Threat Modeling & Architectural Assessments to cover all Information Security domains to ensure Security by Design
  • Assess technologies and solutions to develop and enrich security capabilities
  • Identify security gaps and communicate associated business risks to relevant stakeholders
  • Craft solutions that harmonize business needs with security and compliance requirements
  • Verify the effectiveness of security controls in mitigating identified risks
  • Assist engineering projects across the Software Development Life Cycle (SDLC) and collaborate to prioritize product security elements effectively
  • Apply expertise in information security and application development to instigate organizational shifts aimed at managing and resolving security weaknesses and vulnerabilities
  • Contribute to the creation of security policies, standards, and guidelines
  • Devise and implement frameworks for data classification, retention, and disposal to ensure alignment with data privacy regulations
  • Spearhead initiatives for data security awareness and training
  • Fulltime
Read More
Arrow Right

IAM Architect

Sopra Steria offers tailored, end-to-end corporate technology and software solut...
Location
Location
Netherlands , Nieuwegein
Salary
Salary:
Not provided
https://www.soprasteria.com Logo
Sopra Steria
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • A bachelor's or master’s degree in business administration, Cybersecurity, Information Technology, Computer Science or an equivalent
  • At least 2 years of experience in IAM business analysis or consulting, with hands-on experience with one or more leading IGA, PAM and/or CIAM solutions
Job Responsibility
Job Responsibility
  • Keeping Identity & Access Management processes reliable and implementing new solutions
  • Conducting threat analysis, risk management, and incident response
  • Implementing firewalls and conducting vulnerability assessments
  • Collaborating effectively with other departments
What we offer
What we offer
  • Flexible, location-independent work
  • Laptop, phone and home office necessities
  • A competitive salary and indefinite contract
  • A company car or mobility budget
  • 27 days paid time off (20 fixed days + 7 bonus days)
  • Fulltime
Read More
Arrow Right

Enterprise Security Architect

The leading technical authority of design, implementation, and validation of Cyb...
Location
Location
United States , Broomfield
Salary
Salary:
140000.00 - 190000.00 USD / Year
hunterdouglas.com Logo
Hunter Douglas
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Expert knowledge of security best practices (encryption, data protection, design, privilege access, etc.)
  • Expert knowledge and experience with managing and implementing standard security technologies (DLP, MDM, SIEM, AV, IDS)
  • Solid knowledge in compliance management and certification (PCI, GDPR, CCPA)
  • Solid knowledge of network technologies (protocols, design concepts, access control)
  • Solid knowledge of identity technologies (protocols, design concepts, access control)
  • Solid knowledge of application technologies (protocols, design concepts, access control)
  • Expert knowledge to demonstrate excellent written and verbal communication
  • Expert knowledge and proficiency in planning, reporting, establishing goals and objectives, standards, priorities, and schedules
  • Bachelor’s degree or equivalent in related field
  • Minimum of 5 years’ experience in a principal Security Engineer or Architect role
Job Responsibility
Job Responsibility
  • Threat intelligence and threat landscape: Continuously obtain updated, accurate threat intelligence to update the company’s threat landscape
  • Control design: Ideate, suggest, and design solutions to identified risks, including process modifications, improved configurations, and technology selection
  • Process improvements: Build, align, and update Cybersecurity standards, operating procedures, and other documentation to ensure effective Cybersecurity adherence across the company
  • Procurement: Develop requirements for InfoSec vendor selection for new and replacement technologies and services
  • Implementation: Lead the onboarding of technology-related projects to ensure alignment with the company’s security policies, guidelines, and processes. The candidate will also need to lead other Security Engineers and analysts in project deployment, driving the execution and completion of initiatives
  • Technical authority: Assist Security Engineers and Analysts with the management and operation of Cybersecurity tools as needed, including EDR, firewall, email security, vulnerability management, application security, and identity systems
  • Bake security into the business: Interfaces with management and the user community to understand business needs, implement security best practices, and identify opportunities for improving security and compliance
  • Improve security awareness: Partners with the training and professional development staff to promote security awareness among the user community with lessons from the field. Champions the continuous improvement of Cybersecurity across all entities
  • Planning: Review and develop the company’s overall security program and manage multiple security projects in each period
  • Incident response: Support incident response processes to ensure thoroughness and effectiveness
What we offer
What we offer
  • Bonus target range: 35-40%
  • Generous benefits package including medical, dental, vision, life, disability
  • A company culture that prioritizes internal development and professional growth
  • Time off with pay
  • 401(k) plan with a degree of employer matching
  • Paid parental leave
  • Wellness programs and product discounts
  • Fulltime
Read More
Arrow Right

Enterprise Security Architect

The leading technical authority of design, implementation, and validation of Cyb...
Location
Location
United States , Broomfield
Salary
Salary:
140000.00 - 190000.00 USD / Year
hunterdouglas.com Logo
Hunter Douglas
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Expert knowledge of security best practices (encryption, data protection, design, privilege access, etc.)
  • Expert knowledge and experience with managing and implementing standard security technologies (DLP, MDM, SIEM, AV, IDS)
  • Solid knowledge in compliance management and certification (PCI, GDPR, CCPA)
  • Solid knowledge of network technologies (protocols, design concepts, access control)
  • Solid knowledge of identity technologies (protocols, design concepts, access control)
  • Solid knowledge of application technologies (protocols, design concepts, access control)
  • Expert knowledge to demonstrate excellent written and verbal communication
  • Expert knowledge and proficiency in planning, reporting, establishing goals and objectives, standards, priorities, and schedules
  • Bachelor’s degree or equivalent in related field
  • Minimum of 5 years’ experience in a principal Security Engineer or Architect role
Job Responsibility
Job Responsibility
  • Threat intelligence and threat landscape: Continuously obtain updated, accurate threat intelligence to update the company’s threat landscape
  • Control design: Ideate, suggest, and design solutions to identified risks, including process modifications, improved configurations, and technology selection
  • Process improvements: Build, align, and update Cybersecurity standards, operating procedures, and other documentation to ensure effective Cybersecurity adherence across the company
  • Procurement: Develop requirements for InfoSec vendor selection for new and replacement technologies and services
  • Implementation: Lead the onboarding of technology-related projects to ensure alignment with the company’s security policies, guidelines, and processes. The candidate will also need to lead other Security Engineers and analysts in project deployment, driving the execution and completion of initiatives
  • Technical authority: Assist Security Engineers and Analysts with the management and operation of Cybersecurity tools as needed, including EDR, firewall, email security, vulnerability management, application security, and identity systems
  • Bake security into the business: Interfaces with management and the user community to understand business needs, implement security best practices, and identify opportunities for improving security and compliance
  • Improve security awareness: Partners with the training and professional development staff to promote security awareness among the user community with lessons from the field. Champions the continuous improvement of Cybersecurity across all entities
  • Planning: Review and develop the company’s overall security program and manage multiple security projects in each period
  • Incident response: Support incident response processes to ensure thoroughness and effectiveness
What we offer
What we offer
  • Bonus target range: 35-40%
  • Generous benefits package including medical, dental, vision, life, disability
  • A company culture that prioritizes internal development and professional growth
  • Time off with pay
  • 401(k) plan with a degree of employer matching
  • Paid parental leave
  • Wellness programs and product discounts
  • Fulltime
Read More
Arrow Right

Staff Threat Researcher and Intelligence Engineer

We’re building a world of health around every individual — shaping a more connec...
Location
Location
United States , Work at Home
Salary
Salary:
130295.00 - 260590.00 USD / Year
https://www.cvshealth.com/ Logo
CVS Health
Expiration Date
March 31, 2026
Flip Icon
Requirements
Requirements
  • 7+ years of experience in threat intelligence research, including advanced collection and analysis methodologies, threat actor profiling, and MITRE ATT&CK techniques
  • 7+ years of experience in SIEM, SOAR, and EDR tools, both open source and commercial
  • 6+ years of experience in scripting and programming languages (e.g., Python, PowerShell, Go) for automating threat intelligence workflows and building research tools
  • 5+ years of experience architecting and coding threat intelligence platforms and research environments
  • 5+ years of experience in engineering solutions for large-scale data analysis, including security logs, product telemetry, and open-source intelligence
  • 3+ years of experience in producing and presenting high-impact threat research reports and technical briefings to diverse audiences
  • Bachelor’s degree from accredited university or equivalent work experience (HS diploma + 4 years relevant experience)
Job Responsibility
Job Responsibility
  • Lead the design and development of advanced threat research platforms and prototypes, focusing on automation and scalable intelligence workflows
  • Architect and code solutions for collecting, processing, and analyzing diverse threat data sources, including telemetry, commercial feeds, and OSINT
  • Conduct in-depth research on emerging threat actors, tactics, techniques, and procedures (TTPs), including dark net intelligence gathering, and produce actionable reports for stakeholders
  • Engineer and automate the intelligence cycle, continuously improving processes for detection, alerting, and incident enrichment using SIEM, SOAR, and EDR technologies
  • Mentor and guide team members in advanced coding practices, threat research methodologies, and engineering best practices
  • Develop and present technical briefings, research papers, and position documents to executive leadership and external partners
What we offer
What we offer
  • Affordable medical plan options
  • 401(k) plan (including matching company contributions)
  • Employee stock purchase plan
  • No-cost programs for all colleagues including wellness screenings, tobacco cessation and weight management programs, confidential counseling and financial coaching
  • Paid time off
  • Flexible work schedules
  • Family leave
  • Dependent care resources
  • Colleague assistance programs
  • Tuition assistance
  • Fulltime
Read More
Arrow Right

Senior Product Security Researcher

As a Product Security Researcher at Island, you will dive deep into the security...
Location
Location
Israel , Tel Aviv
Salary
Salary:
Not provided
island.io Logo
Island
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Strong understanding of browser internals, OS security mechanisms, or application-layer security
  • Proficiency in one or more programming/scripting languages (e.g., Python, JavaScript, C/C++, Go)
  • Experience in vulnerability research, bug hunting, reverse engineering, or exploit development
  • Familiarity with common vulnerability classes (e.g. RCE, memory corruption, sandbox escapes)
  • Curiosity-driven mindset with a passion for breaking things and understanding how they work
  • Experience with fuzzing tools, debuggers, or reverse engineering frameworks is a strong plus
Job Responsibility
Job Responsibility
  • Vulnerability Research: Identify and analyze vulnerabilities in browser components, system integrations, and third-party libraries relevant to the Island Enterprise Browser
  • Security Testing & Tooling: Develop custom tooling and automation for security testing, fuzzing, and vulnerability detection tailored to our product stack
  • Threat Modeling: Collaborate with developers, architects, and the Product Security Lead to assess threat scenarios and attack surfaces for new features and integrations
  • Exploit Prototyping: Build proof-of-concepts to validate the impact and exploitability of discovered security issues
  • Collaboration & Knowledge Sharing: Support development teams in secure coding practices, and contribute to internal knowledge bases and playbooks
  • Security Research Enablement: Stay ahead of the curve by tracking current exploits, security trends, and techniques
  • attend or present at security conferences and engage with the broader security community
  • Fulltime
Read More
Arrow Right

Product Security Researcher

We’re a team of hungry, high-character professionals from all backgrounds who ca...
Location
Location
Israel , Tel Aviv
Salary
Salary:
Not provided
island.io Logo
Island
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Strong understanding of browser internals, OS security mechanisms, or application-layer security
  • Proficiency in one or more programming/scripting languages (e.g., Python, JavaScript, C/C++, Go)
  • Experience in vulnerability research, bug hunting, reverse engineering, or exploit development
  • Familiarity with common vulnerability classes (e.g. RCE, memory corruption, sandbox escapes)
  • Curiosity-driven mindset with a passion for breaking things and understanding how they work
Job Responsibility
Job Responsibility
  • Vulnerability Research: Identify and analyze vulnerabilities in browser components, system integrations, and third-party libraries relevant to the Island Enterprise Browser
  • Security Testing & Tooling: Develop custom tooling and automation for security testing, fuzzing, and vulnerability detection tailored to our product stack
  • Threat Modeling: Collaborate with developers, architects, and the Product Security Lead to assess threat scenarios and attack surfaces for new features and integrations
  • Exploit Prototyping: Build proof-of-concepts to validate the impact and exploitability of discovered security issues
  • Collaboration & Knowledge Sharing: Support development teams in secure coding practices, and contribute to internal knowledge bases and playbooks
  • Security Research Enablement: Stay ahead of the curve by tracking current exploits, security trends, and techniques
  • attend or present at security conferences and engage with the broader security community
  • Fulltime
Read More
Arrow Right

Senior Security Engineer – Cloud & Data Security

We are hiring a Senior, hands-on Cloud Security Engineer to secure a large-scale...
Location
Location
United States , New York
Salary
Salary:
210000.00 - 240000.00 USD / Year
sigmacomputing.com Logo
Sigma Computing
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Minimum 7+ years in Security roles with at least 5+ years focused on Cloud security engineering,IAM, and Data security
  • Bachelor’s or Master’s degree in Computer Science, Cyber Security, or a related field
  • Deep technical expertise in cloud architectures AWS/Azure/GCP
  • including IAM, networking (VPCs, security groups, PrivateLink), and native security services is strongly desired
  • Strong infrastructure-as-code skills—you write Terraform professionally, not just read it
  • Advanced understanding and experience with container security, Kubernetes, and secure CI/CD pipeline design
  • Proven ability to demonstrate incident response experience specifically related to cloud-based malicious activity and breach remediation
  • Advanced Cloud IAM expertise: federation, SSO, PAM/JIT access, service identities, and least privilege design
  • Strong background in cloud network security (segmentation, private connectivity, egress controls, WAF)
  • Strong proficiency in scripting languages (e.g., Python, Go, PowerShell) for automation, data analysis, and security tooling development
Job Responsibility
Job Responsibility
  • Architectural Leadership: Partner deeply with infrastructure and engineering teams to embed security into development workflows, leading high-level technical discussions to guide security efforts and strategic priorities
  • Multi-Cloud Engineering: Design, implement, and continuously improve Sigma Cloud Security across AWS, GCP, and Azure environments with architect-level technical depth
  • Threat Modeling & IR: Conduct cloud threat modeling and demonstrate hands-on experience in Cloud Incident Response, including investigating and remediating malicious activity within cloud environments
  • Identity & Access: Build IAM and privileged access strategy (RBAC/ABAC, federation, least privilege, cross-account access), eliminating standing privilege and long-lived credentials. Develop and enforce IAM best practices, including zero-trust models and privileged access controls across IaaS and SaaS
  • Drive cloud data security controls including classification, encryption/KMS, masking/tokenization, access governance, retention/deletion, and exfiltration risk reduction across APIs and data pipelines
  • Develop automated remediation workflows for recurring cloud misconfigurations, drift, and policy violations to reduce manual effort and response time
  • Security Stack Management: Deploy and manage cloud-native services (CSPM, CNAPP, DSPM, SIEM, DLP, WAF, Kubernetes, and container security)
  • Network Defense: Review and apply zero-trust principles through strict network segmentation, authentication, and authorization
  • Automation: Develop sophisticated signatures/rules for cloud security and automate detection and response workflows
  • AI : Use AI securely and effectively to scale security practices and improve team efficiency
What we offer
What we offer
  • Equity
  • Generous health benefits
  • Flexible time off policy
  • Paid bonding time for all new parents
  • Traditional and Roth 401k
  • Commuter and FSA benefits
  • Lunch Program
  • Dog friendly office
  • Fulltime
Read More
Arrow Right