· Review solution and enterprise architectures to identify security risks, control gaps, and design weaknesses.
· Define security architecture requirements, patterns, reference designs, and technical control recommendations.
· Review application, infrastructure, network, firewall, segmentation, API, third-party integration, and cloud designs.
· Provide guidance on defense in depth, Zero Trust, isolation, least privilege, secure connectivity, and resilient architecture.
· Perform architecture risk assessments and document findings, remediation actions, exceptions, and residual risk.
· Participate in project design reviews, security approval gates, and technical change reviews.
· Contribute to the enterprise cybersecurity architecture roadmap and ensure alignment with Ministry policies, NCA controls, and recognized standards.
· Coordinate with application, infrastructure, network, cloud, IAM, SOC, and GRC teams to embed security throughout solution lifecycles.