- Company Name
- Huxley
- Job Title
- Architecte Sécurité & Réseau Cloud - SRE
- Job Description
-
**Job Title:** Cloud Security & Network Architect – SRE
**Role Summary:**
Design and implement secure cloud architectures that adhere to Security‑by‑Design and Zero‑Trust principles. Spearhead the development of continuous security controls across IAM, PKI, networking (segmentation, peering, firewalls, WAF), and data protection to enable resilient, highly available services at scale.
**Expectations:**
* 8+ years of experience in critical cloud environments with a strong focus on security architecture.
* Proven track record designing and delivering complex security solutions in cloud ecosystems.
* Ability to translate functional security requirements into technical constraints and enforce them across the stack.
**Key Responsibilities:**
* Produce high‑level architecture (HLD) and design (DAT) documents for security and networking components.
* Define IAM strategies: access policies, least‑privilege enforcement, audit reviews, and open‑source IAM solutions.
* Design north‑south and east‑west network flow strategies across application tiers.
* Set encryption standards (mTLS, VPN, data at rest) and manage data protection in transit and storage.
* Oversee PKI lifecycle and certificate management through secrets tools.
* Develop reusable Infrastructure‑as‑Code modules that embed security controls, in collaboration with infra teams.
* Plan and lead security testing campaigns (scenarios, execution, post‑mortem) in partnership with SRE, dev, resilience teams.
* Provide strategic threat intelligence and mitigation guidance to security stakeholders.
**Required Skills:**
* Deep expertise in cloud platforms (particularly IBM Cloud), security tooling (HashiCorp, HSM Thales, PKI, WAF, IDS/IPS).
* Proficiency with security‑oriented network protocols (TCP/IP, BGP).
* Advanced Terraform and IaC automation skills.
* Knowledge of OpenShift, Istio, SPIRE, Keycloak, DirectLink, KeyProtect, and workload protection solutions.
* Strong analytical mindset, rigorous approach, and ability to simplify complex topics.
* Team‑orientated, collaborative communication skills.
**Required Education & Certifications:**
* Bachelor’s degree in Computer Science, Information Security, or related field.
* Industry‑certified security credentials (e.g., CISSP, CCSP, CISM, CompTIA Security+) are highly desirable.