What are the responsibilities and job description for the Senior Data Platform Security Architect position at Technified Solutions Inc?
Key Responsibilities
- Architect and own end‑to‑end security frameworks for data platforms, including:
- Data lakes, data warehouses, streaming pipelines, and analytics platforms
- Technologies such as Snowflake, Databricks, Microsoft Fabric, Kafka, and Spark
- Define and enforce data security standards, including:
- Access control
- Encryption at rest and in transit
- Data masking and tokenization
- Secrets management
- Lead threat modeling and risk assessments for data platforms and drive remediation efforts
- Design and implement IAM strategies, including:
- Role‑based access control (RBAC)
- Attribute‑based access control (ABAC)
- Least‑privilege access models
- Establish and mature data classification policies and security tiers
- Embed security across the full data lifecycle:
- Ingestion, transformation, storage, consumption, and archival
- Define security requirements for cloud‑native data services across:
- AWS, Azure, and GCP (multi‑cloud and hybrid environments)
- Design audit logging, lineage tracking, and monitoring solutions to support:
- Incident detection
- Forensics
- Compliance reporting
- Ensure compliance with regulatory and security frameworks, including:
- GDPR, CCPA, SOC 2, SOX, USGCB, FCC Decree
- Mentor engineers and act as a subject matter expert in secure data platform design
- Evaluate and recommend security tools and vendors (DSPM, DLP, etc.)
- Communicate security architecture decisions and risk posture to technical and executive stakeholders
Required Qualifications
- 8 years of experience in information security
- 4 years of experience in data platform or cloud data security architecture
- Deep expertise in securing modern data platforms, including:
- Cloud data warehouses
- Data lakes and lakehouse architectures
- Real‑time streaming systems
- Strong knowledge of IAM and zero‑trust principles across:
- AWS IAM
- Azure AD / Entra ID
- GCP IAM
- Hands‑on experience with:
- Encryption technologies
- KMS / HSM
- Data masking and tokenization
- Experience with security and compliance frameworks, including:
- GDPR, CCPA, PCI‑DSS, SOC 2, SOX, NIST CSF, USGCB, FCC Decree
- Proficiency in scripting or programming languages such as:
- Python, SQL, Bash (or similar)
- Experience with:
- SIEM tools
- DSPM platforms
- DLP solutions
- Vulnerability scanners
- Strong communication skills with the ability to translate technical risk into business context
Preferred Qualifications
Security certifications:
CISSP, CCSP, AWS Security Specialty, Google Professional Cloud Security Engineer
Experience with:
- Infrastructure‑as‑Code (Terraform, Pulumi)
- DevSecOps practices
- Exposure to data governance tools:
- Collibra, Alation, Apache Atlas
- Experience working in regulated industries:
- Financial Services, Telecommunications
- Familiarity with privacy‑enhancing technologies (PETs):
- Differential privacy
- Federated learning