Enterprise Security Architect
Vancity View all jobs
- Ontario
- $140,000-170,000 per year
- Permanent
- Full-time
- Design and establish enterprise application security architecture frameworks, patterns and reference models aligned with business objectives and risk tolerance
- Lead architecture reviews of applications and systems to identify security gaps and recommend appropriate controls
- Architect security solutions for authentication, authorization, encryption, and secure communication channelsDevelop and maintain security baselines, standards, and patterns for different technology stacks (web, mobile, API, microservices) and deployment models
- Integrate security architecture principles into CI/CD pipelines to support DevSecOps initiatives
- Contribute to the development of enterprise security documentation such as policies, standards, baselines, guidelines, and procedures.
- Provide mentorship and direction to junior security architects
- Manage and participate in the Application Security Champions program
- Collaborate with project leads to define requirements, design controls, and implement scalable security services aligned with Vancity’s cybersecurity vision.
- Partner with business units and enterprise architecture teams to deliver risk-based security guidance and support an integrated security service portfolio.
- Assess security risks across programs, projects, and operational processes, and recommend architecture remediation strategies.
- Stay current on cyber threats and emerging technologies to inform investigation techniques and enhance incident response capabilities.
- Bachelor’s degree in STEM, Computer Science, Engineering, or highly related field.
- 12+ years of experience in IT and/or Information Security
- 5+ years Secure Application Architecture experience developing and maintaining security baselines, standards, and patterns for different technology stacks (web, mobile, API, microservices) and deployment models
- 8+ years hands-on Secure Software development & DevSecOps experience within a formalized SSDLC.
- Extensive knowledge and experience of secure coding practices and working with SAST, DAST, SCA, IAST tools.
- Experience in designing secure architectures e.g. networking, Cloud, IDP, API, tokenization, Identity management (OAuth2, OIDC, SAML), Zero trust Architectures etc.
- Strong understanding of security controls across all layers of the OSI model.
- Extensive Threat modelling experience.
- Penetration testing experience backed up with relevant certifications e.g. OSCP, GPEN etc.
- Experience designing secure systems and integrations with enterprise applications.
- Awareness of Canadian regulatory environments (e.g., OSFI, PIPEDA) and their impact on security programs.
- Experience securing public cloud offerings (Azure is preferred) with relevant Cloud/Security certifications.
- Information Security Certifications in one or more of the following is required: CISSP, CCSP, GISP, GSE,
- Information Technology Certifications in one or more of the following will be an asset: TOGAF, SABSA, CSSLP, GIAC GWEB/GCSA/GWAPT/GDSA/GCSA, Azure Architecture/Security certs.
- Experience with or knowledge of PCI DSS 4.2, ISO 27001, NIST CSF and NIST 800-53 control frameworks is highly desired.
- Strong stakeholder engagement and communication skills across technical and non-technical audiences.
- A Strong Communicator - you use your strong communication and interpersonal skills to create clear understanding of expectations and represent the team across the organization through clear and confident communication.
- Organized & Systematic - your planning and coordination skills develop solid operating plans, processes, methods and standards for a unit and help coordinate delivery of critical information in a timely manner.
- Analytical & Decisive - with your strong problem solving and decision making skills, you can diagnose challenges and issues; develop innovative investigative solutions; and to assess risks and opportunities that may affect the information security team.
- Self Motivated – you are a self motivated and inquisitive individual that takes initiative to follow through and deliver results without continuous supervision.
- Living Wage Employer: We’re the largest private-sector Living Wage Employer in Canada and consistently ranked among Canada’s Top Employers.
- Customizable Benefits: Permanent employees receive flexible benefit packages that can be tailored annually to meet evolving needs.
- Generous Vacation: New employees start with 3-4 weeks of vacation per year, with additional days earned over time.
- Extra Stat Holidays: In addition to BC’s 11 statutory holidays, we offer 2 extra days, plus care days for personal or family illness.
- Immediate Health Coverage: Health and dental benefits begin on your hire date, with three levels of coverage to choose from.
- Defined Benefit Pension: Our retirement plan provides a guaranteed income for life, recognizing that retirement looks different for everyone.