View all jobs

Lead Security Architect

  • Toronto, ON

emergiTEL is hiring a Lead Security Architect for our client in the professional services industry.

Compensation: $115,000 - $156,600/year

Job Description
Our client is looking for an experienced Lead Security Architect to join their Information Technology Services team. This role is ideal for a security architecture professional with strong expertise in multi-cloud security, secure solution design, DevSecOps, and enterprise security architecture. The successful candidate will help embed security into technology initiatives early in the solution lifecycle, provide architectural guidance, and develop secure solutions aligned with industry standards and business objectives.

What you will do:
  • Review technology solution architectures to ensure alignment with security best practices, organizational standards, and security requirements. Provide guidance to technology architects to embed security earlier in the design lifecycle and ensure security-by-design principles are followed.
  • Provide proactive security architecture guidance and recommendations through early engagement with technology solution architects, development teams, and business stakeholders.
  • Collaborate with technology teams to strengthen secure solution development practices by sharing security requirements, standards, and architectural guidance.
  • Develop and maintain security architecture roadmaps, tactical plans, knowledge repositories, security models, templates, standards, and procedures.
  • Act as a subject matter expert for cloud security across platforms including Azure and AWS, providing security recommendations and architectural guidance for technology and business initiatives.
  • Partner with cloud engineering teams to support secure cloud adoption, cloud security controls, and implementation of security capabilities.
  • Embed security requirements and objectives into enterprise architecture, application architecture, and DevOps processes.
  • Review application, product, and service architectures to ensure they meet confidentiality, integrity, and availability requirements.
  • Create security-embedded reference architectures that enable teams to rapidly develop secure solutions within multi-cloud environments.
  • Provide guidance on cloud security capabilities including identity and access management, infrastructure security, API security, data protection, security monitoring, vulnerability management, and security automation.
  • Analyze requirements for cloud security technologies and support evaluation, selection, and implementation activities.
  • Apply security frameworks and standards including CSA CCM, ISO standards, NIST CSF, NIST 800-53, OWASP, and industry security architecture models such as TOGAF.
  • Support threat modeling activities and provide security recommendations for new applications, services, and technology solutions.
  • Collaborate with development and DevOps teams to promote secure coding practices, secure SDLC processes, CI/CD security integration, and application security improvements.
  • Provide clear communication of complex security concepts to both technical and non-technical stakeholders.
  • Participate in workshops and collaborate with internal teams, including global stakeholders across different time zones.
  • At times, business needs may require employees to work beyond their normal schedule to support critical technology initiatives. The organization also supports flexibility to help employees balance professional and personal commitments.

What you bring to the role:
  • 8+ years of experience in IT, cybersecurity, or information security with strong experience in security architecture and secure solution design.
  • Experience designing secure architectures across cloud and on-premises environments.
  • Bachelor’s or Master’s degree in Information Technology, Computer Science, Cybersecurity, or a related discipline, or equivalent professional experience.
  • Previous experience in a consulting, advisory, or enterprise architecture environment working with technology teams, project teams, and business stakeholders.
  • Strong knowledge of information security standards and practices including CSA CCM, ISO standards, NIST CSF, NIST 800-53, OWASP, and security architecture frameworks such as TOGAF.
  • Experience interpreting business, technology, and threat drivers to develop practical security strategies, roadmaps, and recommendations.
  • Experience with application security, cloud security engineering, DevSecOps practices, CI/CD security integration, and secure coding principles.
  • Experience conducting threat modeling exercises for applications and technology services.
  • Strong understanding of public cloud security architecture across Azure, AWS, and GCP.
  • Experience with Infrastructure as Code (IaC), automation, and orchestration practices.
  • Strong stakeholder management and communication skills with the ability to explain technical security concepts to business and technical audiences.
  • Knowledge of emerging technology security considerations, including AI security and enterprise AI platforms, is an asset.

Certifications:
  • The ideal candidate will hold one or more of the following certifications:
  • Certified Information Systems Security Professional (CISSP)
  • Information Systems Security Architecture Professional (ISSAP)
  • Microsoft Azure Security Engineer Associate
  • Azure Solutions Architect Expert
  • Certified Information Security Manager (CISM)
  • Certified Information Systems Auditor (CISA)
  • Certified Cloud Security Professional (CCSP)

Vacancy Status / Statut du poste
This is an active position currently open for hiring.

Use of Artificial Intelligence / Utilisation de l'intelligence artificielle
No artificial intelligence (AI) is used in the screening or selection process. All applications are reviewed by our recruitment team.

Equal Opportunity / Égalité des chances
emergiTEL is committed to creating a diverse and inclusive workplace. We welcome applications from all qualified individuals regardless of background. Hiring decisions are based solely on skills, experience, and qualifications relevant to the role.