Cloud Security Architect

  • Location: Ottawa, Ontario
  • Type: Contract
  • Job #35532

Cloud Security Architect

Position Overview

We are seeking an experienced Cloud Security Architect to design and implement secure cloud and hybrid environments supporting highly available, mission-critical systems.

The successful candidate will work with Cloud Engineering, DevSecOps, Network Engineering, Software Development, IT, and Security Operations teams to establish security architecture, standards, and controls across cloud platforms and applications.

Must be eligible for Government Enhanced Reliability Clearance 

Key Responsibilities

  • Design secure cloud and hybrid architectures, landing zones, networks, identity models, and shared services.
  • Define cloud security standards, reference architectures, policies, and technical controls.
  • Conduct security architecture reviews, threat modelling, risk assessments, and control-gap analyses.
  • Design identity and access management solutions, including least privilege, multifactor authentication, privileged access, and secrets management.
  • Establish security requirements for cloud networks, encryption, APIs, containers, Kubernetes, microservices, and serverless applications.
  • Integrate security into CI/CD pipelines and infrastructure-as-code processes.
  • Define cloud logging, monitoring, alerting, incident response, backup, and recovery requirements.
  • Support audits, compliance assessments, vulnerability remediation, and security certification activities.
  • Provide technical leadership and communicate security risks and recommendations to technical and business stakeholders.

Qualifications

  • Bachelor’s degree in Computer Science, Cybersecurity, Engineering, or a related field.
  • 8+ years of experience in cybersecurity, cloud infrastructure, network security, or architecture.
  • 3+ years of experience designing security solutions for Azure, AWS, or Google Cloud.
  • Strong knowledge of identity and access management, zero-trust architecture, network security, encryption, key management, and cloud-native security.
  • Experience securing Kubernetes, containers, APIs, and microservices.
  • Experience with Terraform, Bicep, ARM templates, CloudFormation, or similar infrastructure-as-code tools.
  • Knowledge of DevSecOps, CI/CD security, vulnerability management, and security monitoring.
  • Strong communication, documentation, and technical leadership skills.

Preferred Qualifications

  • Experience in telecommunications, satellite communications, aerospace, defence, critical infrastructure, or regulated environments.
  • Knowledge of NIST, ISO 27001, CIS Benchmarks, SOC 2, or CSA Cloud Controls Matrix.
  • Certifications such as CISSP, CCSP, CCSK, AWS Security Specialty, or Microsoft Cybersecurity Architect Expert are considered an asset.
  • Ability to satisfy applicable government security-screening requirements.
Attach a Resume file. Accepted file types are DOC, DOCX, PDF, HTML, and TXT.

We are uploading your application. It may take a few moments to read your resume. Please wait!