Bose Professional logo
Bose ProfessionalPosted 3 weeks ago

Information Security Architect

HybridMangalore, State of Tasmania, Commonwealth of Australia

Full TimeMediumSales

Job Summary

Lead and mature the company's security and privacy program across internal IT, secure product development, customer-facing digital services, and compliance needs. Establish and improve an application security program covering secure development practices, vulnerability management, code scanning, and remediation planning. Coordinate security operations with external partners including managed SOC services, and build the foundation for SOC 2 readiness. Assess and communicate security risk in a business-oriented manner to enable informed decision-making. Use modern tools, automation, and AI-enabled capabilities to improve security operations, testing, and reporting. Provide security guidance and leadership to employees, technical teams, service providers, and stakeholders across global locations. Support privacy efforts by aligning controls with global expectations and customer trust requirements.

Required Qualifications

  • 7+ years of technical experience in IT, engineering, security, infrastructure, cloud, software, or a related discipline, including at least 4 years focused on information security
  • Ability to operate hands-on with technical teams and core enterprise technologies while also guiding others through implementation and remediation work
  • Working knowledge of security practices across identity, endpoint protection, vulnerability management, logging and monitoring, incident response, network security, cloud platforms, and software development environments
  • Experience with secure software development, application security testing, vulnerability remediation, or product security programs
  • Strong communication skills, with the ability to explain technical and risk concepts to engineering teams, business stakeholders, executives, and global colleagues
  • Comfort using AI tools, automation, or emerging technologies to improve security workflows, analysis, documentation, and decision support
  • Practical understanding of risk management, security controls, and compliance frameworks such as SOC 2, ISO 27001, NIST CSF, or similar standards
  • Awareness of global privacy and data protection expectations and how security controls support responsible data handling

Desired Qualifications

  • Experience in a lean or growing technology organization where security responsibilities require both strategic ownership and hands-on execution
  • Experience working with managed security providers, SOC partners, penetration testing providers, or external auditors
  • Exposure to enterprise security, IT, and development platforms such as Microsoft 365, Entra ID, Defender, Intune, AWS, GitHub, Jira, SIEM, vulnerability management, and code scanning tools
  • Security certifications such as CISSP, CISM, CCSP, Security+, AWS Security, Microsoft Security, or similar credentials

Hiring someone like this?

Get your role in front of qualified candidates on Sorce.

Get started

Apply to this job in one click with Sorce

Apply on Sorce