- Company Name
- Tencent
- Job Title
- Principal Security Architect
- Job Description
-
**Job Title:** Principal Security Architect
**Role Summary:**
Design, implement, and govern enterprise security architecture across cloud, hybrid, and on‑premises environments. Provide strategic guidance, risk assessment, and incident response leadership to protect business assets and support global operations.
**Expectations:**
- Define and maintain the organization’s security strategy, vision, and roadmap.
- Align security initiatives with business goals and regulatory obligations (NIST, ISO 27001, HIPAA, etc.).
- Lead cross‑functional teams in threat modeling, penetration testing, and security evaluation.
**Key Responsibilities:**
- Develop and update security frameworks, standards, and controls for scalable, Zero‑Trust architecture.
- Conduct risk assessments, vulnerability analyses, and develop mitigation plans.
- Oversee incident response, providing expertise in containment, eradication, and recovery.
- Ensure compliance with industry standards, internal policies, and legal requirements.
- Champion security automation, DevSecOps practices, and embed security into CI/CD pipelines.
- Advise on IAM implementation, data protection, and application security best practices.
**Required Skills:**
- Security Architecture (cloud, container, on‑premises) with Zero‑Trust focus.
- SIEM, XDR, vulnerability scanners, malware analysis, and incident response tools.
- Networking: routers, switches, firewalls, load balancers, IDS/IPS, VLANs, VPN.
- Cloud Security: AWS, Azure, GCP – security controls, IAM, compliance.
- IAM technologies (Okta, SailPoint, AD) and least‑privilege access control.
- Data protection: encryption, pseudonymization, shuffling.
- Security testing: penetration testing, vulnerability assessments, ethical hacking.
- Automation & DevSecOps: Python, PowerShell, Bash, Terraform, Lambda.
- Operating systems: Windows, Linux, Unix.
- Application security: OWASP, API security, secure design.
- SaaS security and SSPM.
- AI/LLM application in security (SIEM rule creation, SOAR).
**Required Education & Certifications:**
- Master’s degree in Computer Science, Information Security, or related field.
- 10–12+ years of cybersecurity experience, including 5–7 years in senior security architecture or engineering roles.
- Relevant certifications such as CISSP, CISM, CEH, or equivalents are highly desirable.