Principal Domain Architect - Infra and Cloud Security

Abb

The Role

Overview

Lead global infrastructure and cloud security architecture, driving Zero Trust and compliance.

Key Responsibilities

  • iac security
  • cloud architecture
  • threat monitoring
  • observability
  • landing zones
  • zero trust

Tasks

-Integrating security into infrastructure-as-code (IaC) and configuration management pipelines, enabling automated policy compliance and secure provisioning. -Establishing standards, patterns, and reference architectures for securing servers, endpoints, virtualization platforms, cloud services, and containerized environments across on-premises, hybrid, and multi-cloud deployments. -Defining and maintaining the global infrastructure and cloud security architecture vision and roadmap, aligned with enterprise security strategy, regulatory requirements, and business needs. -Staying ahead of emerging infrastructure and cloud threats such as supply chain compromises, hypervisor escape, misconfiguration exploits, and AI-driven attack automation. -Providing architectural guidance during infrastructure and cloud-related security incidents, ensuring lessons learned strengthen preventive and detective controls. -Architecting infrastructure and cloud security observability: vulnerability management, posture management (CSPM, CWPP), behavioral analytics, and automated remediation. -Architecting secure landing zones and cloud foundation patterns, ensuring consistent enforcement of security policies, baseline configurations, and guardrails. -Driving encryption and key management strategies for infrastructure and cloud services, ensuring protection of data at rest, in transit, and in use. -Ensuring rationalization of infrastructure and cloud security tools, consolidating overlapping capabilities such as CSPM, CWPP, EDR, and vulnerability scanners to reduce complexity and cost. -Driving Zero Trust infrastructure principles, implementing strong identity, micro-segmentation, and continuous verification at the compute, storage, and workload layers. -Designing workload isolation, segmentation, and access control models across virtualized, containerized, and bare-metal environments to reduce attack surface. -Acting as a trusted advisor to leadership, translating infrastructure and cloud risk and architecture priorities into business impact. -Partnering with platform, operations, and DevOps teams to integrate security into infrastructure changes and cloud adoption initiatives without disrupting operations.

Requirements

  • security architecture
  • 15+ years
  • togaf
  • cissp-ap
  • communication
  • high availability

What You Bring

-Excellent communication and presentation skills, possessing confidence when engaging senior stakeholders. -15+ years of experience in security architecture and significant portion of it in Infra, Cloud and Endpoint Security, including Zero Trust implementation in collaboration with other Zero Trust pillars. -Embedding infrastructure resilience principles – high availability, failover, backup, disaster recovery, and ransomware protection – into architecture patterns. -Architecture certifications like CISSP-AP, SABSA and TOGAF are preferred. -Strong global experience, especially in collaborating with distributed teams on security topics. -Proven expertise in enterprise security architecture, with hands-on experience in architecture tools and technology road mapping. -Deep understanding of security architecture design models and frameworks. -Bachelor’s degree in computer science or related field (preferred).

The Company

About Abb

-A global technology leader with a rich history of innovation. -Focuses on electrification, automation, robotics, and digitalization for global industries. -Delivers solutions to improve productivity, energy efficiency, and sustainability. -A key player in sectors like utilities, transportation, manufacturing, and infrastructure. -Notable projects include electrification of rail networks, automation in factories, and energy-efficient grid solutions. -Continues to lead in integrating cutting-edge technologies, combining the digital and physical worlds.

Sector Specialisms

Industrial

Energy

Infrastructure

Buildings

Residential

Commercial

Water Resources

Heavy Civil

Marine

Transport

Utilities

Solar

Wind

Nuclear

Government

Renewables

E-mobility

Data Centers

Smart Buildings

Power Transmission and Distribution

Robotics

Automation Technology

Heavy Electrical Equipment

Electrification

Industrial Automation

Power Grids