Aviva
Security Architect
PLEASE INPUT JOB DESCR
You will be reporting to and responsible to the Security Lead for GI as the point of security liaison between different stakeholders including IT operations teams, platforms team and service consumers for various IT platforms and services.
You will be supporting Aviva by helping stakeholders who operate our IT platforms to make the right security and risk management decisions by providing pragmatic security guidance into various operational, change and release processes. You will provide security guidance covering good practice and Aviva security policy and will drive through continual security improvement through IT operations.
You will Identify security gaps, issues and risks during run / operations. And then propose potential risk treatment options and track their delivery. You will support assurance activity, including being involved in penetration test scoping, assessing security compliance, validating control effectiveness and being involved in periodic scheduled platform security activities e.g. log reviews account reviews.
Skills and experience we’re looking for:
· 5+ years of information security experience, ideally 7+ years
· Good practical knowledge of contemporary IT technologies, such as AWS, Azure, web and security related technologies e.g. firewalls, web application firewalls, cloud, web technology, secure development and working knowledge of prevailing security standards e.g. 27001, Cyber Essentials & SOGP
· Ability to review and critique the security of IT architectural designs.
· Certification for information security such as CISSP, CISM or equivalent work experience
· Ability to communicate to technical staff, senior stakeholders and produce quality reports / documentation and to work independently and use initiative