Senior Cybersecurity Test Architect (35651)
Offre en anglaisThe role involves designing and leading the enterprise security testing strategy across applications, cloud environments, and system integrations. Key duties include developing threat models, establishing testing standards, and collaborating with cross-functional teams to integrate security into the SDLC.
- Sur place
- Ottawa, ON
- Publié 21 août 2026
- Postuler avant le 20 sept. 2026
- 1 poste
D’autres postes auxquels postuler directement
Des possibilités semblables publiées par des employeurs qui recrutent sur Jobs.ca, sans formulaire externe.
BC Public Schools
Manager, People, Performance and Culture
- Sur place
Alcohol and Gaming Commission of Ontario (AGCO)
Responsable de la gestion de l’information
- Sur place
Dalfen Ltée
Technicien Comptable
- Sur place
Résumé du poste
Senior Cybersecurity Test Architect Role Overview We are seeking a Senior Cybersecurity Test Architect to design and lead the enterprise security testing strategy across applications, infrastructure, cloud environments, and system integrations. This role will establish security testing standards, develop threat-based test approaches, and ensure security requirements are effectively validated through repeatable and measurable testing. Key Responsibilities Define the enterprise security testing strategy, architecture, and coverage model across applications, infrastructure, cloud, and integrations. Develop threat models and security test scenarios using industry-standard methodologies such as STRIDE and MITRE ATT&CK. Design repeatable and scalable security testing approaches for: Identity and Access Management (IAM) APIs and microservices Data flows and system integrations Cloud environments Application and infrastructure security Define the security testing tooling strategy, including both manual and automated testing capabilities. Establish security testing standards, processes, and best practices across development and infrastructure teams. Ensure security testing is traceable to security requirements, policies, controls, and risk objectives. Identify security gaps and vulnerabilities and provide recommendations for remediation. Support complex security risk assessments, investigations, and escalations. Collaborate with cybersecurity, architecture, development, cloud, infrastructure, and engineering teams to integrate security testing throughout the SDLC. Provide technical leadership and guidance on security testing methodologies, automation, and continuous security validation. Produce clear technical documentation, test strategies, architecture diagrams, and security assessment reports. Required Skills & Experience 8+ years of experience in cybersecurity architecture, security engineering, security testing, or a related discipline. Strong experience developing enterprise security test strategies and architectures. Hands-on experience with threat modeling methodologies, including STRIDE, MITRE ATT&CK, or equivalent frameworks. Strong knowledge of cloud security architecture across AWS, Azure, and/or GCP. Experience with API security, identity architecture, IAM, authentication, and authorization. Strong understanding of application, infrastructure, network, and integration security. Experience defining and implementing manual and automated security testing approaches. Strong understanding of security controls, requirements, risk management, and compliance frameworks. Excellent technical documentation, architecture, and communication skills. Ability to work effectively with technical teams, architects, developers, and security stakeholders. Preferred Qualifications Experience integrating security testing into CI/CD and DevSecOps environments. Knowledge of security testing tools and automation frameworks. Experience with container, Kubernetes, and cloud-native security. Familiarity with security frameworks such as NIST, ISO 27001, CIS, OWASP, or similar. Relevant cybersecurity certifications such as CISSP, SABSA, GIAC, or cloud security certifications would be an asset. ,
Ce que vous ferez
The role involves designing and leading the enterprise security testing strategy across applications, cloud environments, and system integrations. Key duties include developing threat models, establishing testing standards, and collaborating with cross-functional teams to integrate security into the SDLC.
Exigences
Candidates need over 8 years of experience in cybersecurity architecture or engineering with a strong background in threat modeling and cloud security (AWS, Azure, or GCP). Proficiency in IAM, API security, and the ability to implement both manual and automated testing approaches is required.
Autres compétences pertinentes
Relevées dans la description du poste. Confirmez les exigences importantes ci-dessus.
- Cybersecurity Architecture
- Security Testing Strategy
- Threat Modeling
- STRIDE
- MITRE ATT&CK
- Cloud Security
- API Security
- Identity and Access Management
- DevSecOps
- CI/CD Integration
- Network Security
- Risk Management
- Technical Documentation
- Vulnerability Assessment
- Security Automation
- Compliance Frameworks
Domaines d’emploi
- Security & Safety
- Technology
- Software
- Engineering
- Consulting
Renseignements supplémentaires
- Formation minimale
- Diplôme professionnel
- Expérience minimale
- 10+ ans
- Postuler avant le
- 20 sept. 2026
- Langue de l’offre
- anglais
- Heures de travail
- 40 heures par semaine
- Niveau d’expérience
- Mid-Senior level