386440BR
2月 04, 2025
Czech Republic

摘要

locations: Prague (Czechia), Barcelona (Spain), Tel Aviv (Israel), Hyderabad (India)

Our Information Security Compliance Group is looking for an Associate Director - Cloud Security Architect to join our team!

The Associate Director - Cloud Security Architect will work across information security & risk management, with all information technology functions to ensure public cloud and on-premise hosting environments are crafted and implemented as per defined policies and industry standards. The successful candidate will be a good communicator with deep technical skills and, most importantly, a pragmatist who can think creatively. The individual must be highly collaborative as they will have an opportunity to influence functional leadership, project and application managers, other architects, engineers and developers.

Successful candidates must demonstrate deep technical expertise in the following areas:

1) Cloud security controls for core cloud services, including networking, storage, and computing resources. Candidates should be able to articulate:
o the available security controls,
o their functionality, and
o the risks they mitigate.

2) Comprehensive knowledge of
o network security,
o authentication protocols,
o cryptography,
o identity and access management (IAM),
o security monitoring and logging,
o vulnerability management,
o incident response,
o compliance and regulatory requirements,
o application security,
o container and workload security, and
o data protection strategies.

3) Experience with Cloud Native Application Protection Platform (CNAPP) tool capabilities, including:
o Cloud Infrastructure Entitlement Management (CIEM)
o Cloud Security Posture Management (CSPM)
o Kubernetes Security Posture Management (KSPM)
o Data Security Posture Management (DSPM)

About the Role

Major accountabilities:

  • Developing and maintaining security roadmaps and strategy, working with various other security domain architects to align technology and service roadmaps
  • Driving new technology/product/solution evalsuations, providing leadership in the identification of specific security technology standards for Public Cloud technologies
  • Wearing the ‘engineering’ hat regularly, driving product/solution Proof of Concept with other security architects/engineers
  • Identifying and leading your team to develop new security design patterns and participating in our Security Technical Design Authority
  • Driving and defining required Threat Modeling methodologies & related tools for Cloud hosting environments
  • Being our expert on Cloud and Infrastructure platform security topics and identifying major cloud security-related deficiencies, then designing pragmatic approaches to remediate them at scale.
  • Reporting on cloud security posture status across the company periodically and is responsible for maintaining a clear risk acceptance/remediation level

Minimum Requirements:

  • 12+ years of relevant professional IT experience in the related functional area, with a solid understanding of IT infrastructure technology, systems and management processes in a regulated industry
  • 6+ years of experience as an Information Security Architect
  • 4+ years experience working with AWS or Azure security architect (IaaS/PaaS)
  • 2+ years of working experience in DevOps/DevSecOps models
  • Experience in sourcing complex IT services, working closely with vendors and making full use of their abilities
  • Demonstrated ability to build and maintain successful relationships with senior leaders from risk or non-risk/IT or non-IT backgrounds and ability to manage projects involving multi-functional teams in a matrixed environment successfully

Nice to have:

  • 5+ years of experience working in or providing IT services to a large enterprise like Novartis
  • Relevant certifications:
    - Security-related certifications: Certified Cloud Security Professional (CCSP), Certified Information Systems Security Professional (CISSP), ISO 27001 Lead Implementer
    - Technology-related certification: AWS Certified Solutions Architect - Professional, AWS Certified Security - Specialty, Microsoft Certified: Azure Solutions Architect Expert

You’ll receive (Prague only):

Monthly pension contribution matching your individual contribution up to 3% of your gross monthly base salary; Risk Life Insurance (full cost covered by Novartis); 5-week holiday per year; (1 week above the Labour Law requirement) ; 4 paid sick days within one calendar year in case of absence due to sickness without a medical sickness report; Cafeteria employee benefit program – choice of benefits from Benefit Plus Cafeteria in the amount of 12,500 CZK per year; Meal vouchers in amount of 90 CZK for each working day (full tax covered by company); car allowance; MultiSport Card. Find out more about Novartis Business Services: https://www.novartis.cz/

Why consider Novartis?

Our purpose is to reimagine medicine to improve and extend people’s lives and our vision is to become the most valued and trusted medicines company in the world. How can we

achieve this? With our people. It is our associates that drive us each day to reach our ambitions. Be a part of this mission and join us! Learn more here:

https://www.novartis.com/about/strategy/people-and-cultureImagine what you could do here at Novartis!

Imagine what you could do here at Novartis!

Join our Novartis Network: If this role is not suitable to your experience or career goals but you wish to stay connected to learn more about Novartis and our career opportunities, join the Novartis Network here:  https://talentnetwork.novartis.com/network

Accessibility and accommodation:

Novartis is committed to working with and providing reasonable accommodation to all individuals. If, because of a medical condition or disability, you need a reasonable accommodation for any part of the recruitment process, or in order to receive more detailed information about the essential functions of a position, please send an e-mail to <di.cz@novartis.com> and let us know the nature of your request and your contact information. Please include the job requisition number in your message.

Why Novartis: Helping people with disease and their families takes more than innovative science. It takes a community of smart, passionate people like you. Collaborating, supporting and inspiring each other. Combining to achieve breakthroughs that change patients’ lives. Ready to create a brighter future together? https://www.novartis.com/about/strategy/people-and-culture

Join our Novartis Network: Not the right Novartis role for you? Sign up to our talent community to stay connected and learn about suitable career opportunities as soon as they come up: https://talentnetwork.novartis.com/network

Benefits and Rewards: Read our handbook to learn about all the ways we’ll help you thrive personally and professionally: https://www.novartis.com/careers/benefits-rewards

Operations
CTS
Czech Republic
Prague
Barcelona Gran Vía, Spain
Hyderabad (Office), India
Israel, Israel
Technology Transformation
Full time
Regular
No
A female Novartis scientist wearing a white lab coat and glasses, smiles in front of laboratory equipment.
386440BR

Associate Director - Cloud Security Architect

Apply to Job