{"id":1223260,"url":"https://alion.io/job/3i-infotech-coe-solution-architect-cyber-security","title":"CoE Solution Architect - Cyber Security","company":{"id":180701,"name":"3i Infotech","domain":"3i-infotech.com","url":"https://alion.io/company/3i-infotech","size_band":"1001-5000","is_staffing_agency":false,"employer_type":"direct","is_intermediary":false,"listed_via":null,"ats_vendor":"Career site","truth_index":null},"role":"Solutions","role_family":"Solutions","seniority":"staff","employment_type":null,"work_mode":"on_site","remote_scope":null,"remote_scope_basis":null,"remote_working_hours":null,"hiring_geo_confidence":"structured","locations":["Navi Mumbai, India"],"countries":["IN"],"hiring_countries":[],"hiring_countries_total":0,"salary":null,"salary_estimate":{"min_usd":30000,"max_usd":52000,"period":"year","method":"role_seniority_country_remote_cell","sample_n":28},"experience_years_min":8,"visa_sponsorship":false,"relocation_package":false,"has_equity":false,"technologies":[{"name":"AWS","optional":false},{"name":"Azure","optional":false},{"name":"CI/CD","optional":false},{"name":"DLP","optional":false},{"name":"GCP","optional":false},{"name":"IAM","optional":false},{"name":"ISO 27001","optional":false},{"name":"ITSM","optional":false},{"name":"NIST CSF","optional":false},{"name":"OWASP","optional":false},{"name":"SIEM","optional":false},{"name":"SOC 2","optional":false},{"name":"STRIDE","optional":false},{"name":"TCP/IP","optional":false},{"name":"VPN","optional":false},{"name":"Zero Trust","optional":false}],"status":"live","first_seen_at":"2026-09-02T00:00:00Z","employer_posted_date":"2026-09-25","last_verified_at":"2026-09-28T23:50:48Z","board_verified":false,"closed_at":null,"days_open":29,"trust":{"level":"ok","repost_count":null,"flags":[],"days_open":29},"description":"Role summary\nThe Cyber Security Architect is responsible for designing, governing, and continuously improving the organisation’s security architecture across on?prem, cloud, network, applications, data, and identities. The role translates business and regulatory requirements into secure, practical technical designs and guides their implementation in line with frameworks such as ISO 27001, NIST, CIS, and Zero Trust principles.\nKey responsibilities\nSecurity strategy and architecture designDefine and maintain the enterprise security architecture, security principles, reference patterns, and roadmaps covering network, infrastructure, cloud, applications, data, and endpoints.\nAlign security architecture with business strategy, risk appetite, and compliance obligations (ISO 27001, SOC 2, sectoral regulations, data protection laws).\n\nSolution and project design assuranceWork with solution/enterprise architects to review and approve designs for new systems, integrations, and cloud services, ensuring security by design and Zero Trust principles.\nDefine security requirements for infrastructure components (networks, firewalls, WAF, VPN, IAM, EDR, SIEM, DLP, key management) and ensure they are implemented consistently.\n\nRisk assessment and threat modellingConduct or oversee threat modelling and security risk assessments for critical systems and changes, using frameworks such as STRIDE, NIST CSF, CIS Controls.\nRecommend layered controls and compensating measures to reduce risk to acceptable levels and document residual risks for decision?makers.\n\nSecurity standards, policies, and patternsDevelop and maintain security policies, standards, baselines, and configuration hardening guides for operating systems, databases, network devices, cloud resources, and application\nCreate reusable reference architectures and design patterns (e.g., secure DMZ, remote access, B2B APIs, privileged access, multi?cloud landing zones).\n\nSecurity technology roadmap and toolingEvaluate, select, and guide implementation of security technologies (SIEM/SOAR, IAM/PAM, EDR/XDR, CSPM, WAF, SASE/SD?WAN, encryption/HSM, vulnerability management)\nEnsure integration between security tools and with ITSM, monitoring, and DevOps pipelines to support detection, response, and compliance\n\nSecurity operations and incident supportProvide architectural guidance to SOC and incident response teams during major incidents and post?incident reviews, ensuring learnings feed back into architecture and controls.\nDefine logging, monitoring, and telemetry requirements (what to log, retention, SIEM correlation rules) for critical systems.\n\nCloud and DevSecOps securityDesign secure architectures for cloud and hybrid environments, including identity, network segmentation, key management, and workload protection.\nWork with DevOps teams to embed security controls in CI/CD, container/orchestration platforms, and infrastructure?as?code (IaC) templates.\n\nGovernance, stakeholder engagement, and advisoryAct as a senior security advisor to CIO/CTO/Heads of Business, explaining risk, trade?offs, and recommended controls in business language.\nContribute to security governance forums, architecture boards, change advisory boards (CAB), and risk committees.\n\nRequired skills and experience\nExperienceTypically 8-12+ years in information security / infrastructure / architecture roles, including hands?on experience in network, systems, or cloud security, and several years in a design/architecture\n\nTechnical competenciesStrong understanding of network and infrastructure security (TCP/IP, routing, firewalls, VPN, WAF, proxies, load balancers, DDoS, segmentation).\nSolid knowledge of identity and access management, SSO, MFA, federation, and privileged access management.\nExperience with cloud platforms (AWS/Azure/GCP/OCI), their security services, and cloud security reference architectures.\nFamiliarity with application security concepts (OWASP, secure SDLC, API security) and data protection (encryption, tokenisation, DLP).\nHands?on exposure to SIEM/SOAR, EDR/XDR, vulnerability management, and security monitoring tools.\nTechnical Proposal building.\n\nFrameworks and complianceWorking knowledge of ISO/IEC 27001, NIST CSF/800?53, CIS Controls, Zero Trust (e.g., NIST SP 800?207), and relevant regulatory requirements for your sector.\n\nSoft skillsAbility to communicate complex security concepts to both technical and non?technical stakeholders; strong documentation and presentation skills.\nStrong analytical, problem?solving, and decision?making skills; ability to balance security, usability, and cost.\n\nEducation and certifications (indicative)\nBachelor’s degree in Computer Science, Information Security, Engineering or related field; a relevant Master’s is a plus.\nOne or more professional certifications, e.g.:CISSP, CCSP, CISM, SABSA, TOGAF,\n Microsoft Cybersecurity Architect Expert, cloud security certs (AWS/Azure/GCP security).","description_format":"text","description_chars":4921,"description_truncated":false,"requirements":{"experience_years_min":8,"management_years_min":null,"team_size_min":null,"manages_managers":false,"education":{"level":"bachelor","optional":true},"security_clearance":false,"languages":[]},"benefits":[],"hiring_locations":[],"hiring_excludes":[],"relocation_offered":false,"industries":["Cybersecurity","IT Outsourcing & Dedicated Teams","Business Process Outsourcing (BPO)","Cloud Consulting & Migration"],"lifecycle":[{"event":"open","at":"2026-09-25T13:02:17Z"}],"liveness":{"score":53,"band":"ok","label":"Likely open","p_open":0.9,"p_active":0.792,"p_room":0.75,"age_days":29,"expected_fill_days":38,"reasons":["conf:53","velocity","win:late","comp:brand"],"computed_at":"2026-10-01T05:45:00Z"},"pay":null,"html_url":"https://alion.io/job/3i-infotech-coe-solution-architect-cyber-security","json_url":"https://alion.io/job/3i-infotech-coe-solution-architect-cyber-security.json","meta":{"generated_at":"2026-10-01T17:01:29Z","cache_seconds":300,"methodology":"https://alion.io/methodology","terms":"https://alion.io/terms","contact":"https://alion.io/contact","api":"https://alion.io/developers","usage":{"tier":"crawler","counted_by":"address","units_charged":1,"used_today":28,"day_limit":5000,"remaining_today":4972,"minute_limit":60,"resets_at":"2026-10-02T00:00:00Z"}}}