Security Solution Architect
Role Purpose
The Security Solution Architect will lead the Data Security Assessment and Remediation initiative from a security, privacy, governance, and risk management perspective. The role is responsible for assessing the current-state security posture, identifying control gaps, defining security and privacy requirements, and establishing a secure target-state architecture that protects sensitive customer and loyalty data.
Job Summary
The Security Solution Architect will provide strategic leadership across data protection, privacy, encryption, governance, and security architecture workstreams. This role will assess how sensitive data is collected, transmitted, stored, accessed, and consumed across the enterprise landscape and define practical recommendations to reduce data exposure risks while improving compliance, governance, and operational controls.
The role will collaborate closely with Data Architects, Data Analysts, business stakeholders, security teams, and technology owners to establish a secure-by-design framework for future-state solutions.
Key Responsibilities
-
Lead data security and privacy assessments across source and destination systems.
-
Assess PII, payment card, loyalty, and sensitive customer data exposure risks.
-
Conduct encryption and protection assessments for data at rest and in transit.
-
Evaluate data masking, tokenization, and data minimization opportunities.
-
Review access governance, RBAC, privileged access, and ownership models.
-
Identify security, privacy, and governance gaps.
-
Define target-state security architecture and control framework.
-
Develop remediation recommendations and implementation priorities.
-
Facilitate security and governance workshops with stakeholders.
-
Support risk assessments and executive reporting.
Required Technical Skills
-
Enterprise Security Architecture
-
Data Security & Privacy
-
Data Protection Controls
-
Encryption & Key Management
-
Access Management & RBAC
-
Data Governance Frameworks
-
Risk Assessment Methodologies
-
Security Architecture Review
-
Cloud & Hybrid Security Controls
-
Data Masking & Tokenization
Preferred Skills
-
PIPEDA
-
GDPR
-
PCI-DSS
-
Privacy by Design
-
Zero Trust Security Principles
-
Data Loss Prevention (DLP)
-
Information Security Governance
-
Security Control Frameworks (NIST, ISO 27001)
Experience Required
-
10+ years in Enterprise Security Architecture or Data Security.
-
Experience leading large-scale data protection programs.
-
Experience assessing customer and loyalty ecosystems.
-
Proven ability to engage business and executive stakeholders.