- Company Name
- Cloud People
- Job Title
- Senior Cyber Security Assurance Architect - 12 month FTC
- Job Description
-
**Job Title**
Senior Cyber Security Assurance Architect – 12 Month FTC
**Role Summary**
Lead cybersecurity control testing and secure‑by‑design assurance across a large regulated enterprise. Drive control maturity, conduct testing, assess design, and report on effectiveness to senior stakeholders.
**Expectations**
- Deliver measurable improvements in control maturity beyond documentation validation.
- Operate across multiple business units and technology teams, managing several workstreams within strict timelines.
- Provide actionable risk, gap, and remediation recommendations and present findings to executives.
**Key Responsibilities**
- Conduct comprehensive cybersecurity controls testing across business units.
- Interview and engage with business and technical stakeholders responsible for key controls.
- Develop, maintain, and update risk and control matrices.
- Design and execute testing strategies to evaluate operating effectiveness of controls.
- Gather, review, and document evidence to support assurance conclusions.
- Produce clear, concise risk, gap, and remediation reports.
- Create detailed executive updates using PowerPoint, Word, Excel, SharePoint, and Open Pages.
- Manage multiple workstreams and ensure on‑time delivery.
- Provide guidance, training, and knowledge transfer to wider security team members.
**Required Skills**
- Proven experience as a Security Architect, Security Engineer, or senior cyber assurance professional.
- Deep knowledge of regulatory frameworks and standards: SOX, ISO 27001, NIST, FFIEC, PCI DSS, Cloud Security Alliance.
- Experience delivering assurance across security governance, IAM, access controls, threat intelligence, asset management, incident management, and vulnerability management.
- Broad technical understanding of operating systems, databases, firewalls, SIEM, DLP, and other IT security technologies.
- Strong background in security risk management, control assessment, and risk–gap–remediation methodology.
- Ability to operate decisively in ambiguous, fast‑moving environments.
- Excellent stakeholder engagement, communication, and executive‑level reporting skills.
- Structured, analytical mindset with superior documentation and presentation abilities.
**Required Education & Certifications**
- Bachelor’s degree in Computer Science, Information Security, or related field (or equivalent experience).
- Relevant professional certifications preferred: CISSP, CISM, CISA, or equivalent (e.g., CCSK, GIAC).
- Certifications in SOX/ISO 27001/PCI DSS frameworks are an advantage.