Enterprise Security Architect leading cybersecurity initiatives and secure solutions design at Vancity. Collaborating with teams to influence enterprise architecture and protect digital assets.
Responsibilities
Design and establish enterprise application security architecture frameworks, patterns and reference models aligned with business objectives and risk tolerance
Lead architecture reviews of applications and systems to identify security gaps and recommend appropriate controls
Architect security solutions for authentication, authorization, encryption, and secure communication channels
Develop and maintain security baselines, standards, and patterns for different technology stacks (web, mobile, API, microservices) and deployment models
Integrate security architecture principles into CI/CD pipelines to support DevSecOps initiatives
Contribute to the development of enterprise security documentation such as policies, standards, baselines, guidelines, and procedures.
Provide mentorship and direction to junior security architects
Manage and participate in the Application Security Champions program
Collaborate with project leads to define requirements, design controls, and implement scalable security services aligned with Vancity’s cybersecurity vision.
Partner with business units and enterprise architecture teams to deliver risk-based security guidance and support an integrated security service portfolio.
Assess security risks across programs, projects, and operational processes, and recommend architecture remediation strategies.
Stay current on cyber threats and emerging technologies to inform investigation techniques and enhance incident response capabilities.
Requirements
Bachelor’s degree in STEM, Computer Science, Engineering, or highly related field.
12+ years of experience in IT and/or Information Security
5+ years Secure Application Architecture experience developing and maintaining security baselines, standards, and patterns for different technology stacks (web, mobile, API, microservices) and deployment models
8+ years hands-on Secure Software development & DevSecOps experience within a formalized SSDLC.
Extensive knowledge and experience of secure coding practices and working with SAST, DAST, SCA, IAST tools.
Experience in designing secure architectures e.g. networking, Cloud, IDP, API, tokenization, Identity management (OAuth2, OIDC, SAML), Zero trust Architectures etc.
Strong understanding of security controls across all layers of the OSI model.
Extensive Threat modelling experience.
Penetration testing experience backed up with relevant certifications e.g. OSCP, GPEN etc.
Experience designing secure systems and integrations with enterprise applications.
Awareness of Canadian regulatory environments (e.g., OSFI, PIPEDA) and their impact on security programs.
Experience securing public cloud offerings (Azure is preferred) with relevant Cloud/Security certifications.
Information Security Certifications in one or more of the following is required: CISSP, CCSP, GISP, GSE, Information Technology Certifications in one or more of the following will be an asset: TOGAF, SABSA, CSSLP, GIAC GWEB/GCSA/GWAPT/GDSA/GCSA, Azure Architecture/Security certs.
Experience with or knowledge of PCI DSS 4.2, ISO 27001, NIST CSF and NIST 800-53 control frameworks is highly desired.
Strong stakeholder engagement and communication skills across technical and non-technical audiences.
Benefits
Living Wage Employer : We’re the largest private-sector Living Wage Employer in Canada and consistently ranked among Canada’s Top Employers.
Customizable Benefits : Permanent employees receive flexible benefit packages that can be tailored annually to meet evolving needs.
Generous Vacation : New employees start with 3-4 weeks of vacation per year, with additional days earned over time.
Extra Stat Holidays : In addition to BC’s 11 statutory holidays, we offer 2 extra days, plus care days for personal or family illness.
Immediate Health Coverage : Health and dental benefits begin on your hire date, with three levels of coverage to choose from.
Defined Benefit Pension : Our retirement plan provides a guaranteed income for life, recognizing that retirement looks different for everyone.
Enterprise Security Architect securing technology for Vancity, a member - owned Canadian credit union. Designing enterprise application security frameworks, controls, and risk - based cybersecurity solutions.
Director leading IT and cybersecurity operations for the Azrieli Foundation, a Canadian philanthropic organization. Assessing technology risks, overseeing infrastructure, vendors, incident response and executive technology strategy.
Data Security Specialist protecting Sun Life’s financial - services data through DLP, CASB and insider - threat programs. Investigating cyber risks and advancing enterprise data protection.
Senior SaaS Security Manager protecting RBC’s banking platform from third - party cloud risks. Leading controls, vulnerability management, compliance, and security transformation initiatives.
Développeur.euse sécurité cloud protégeant l’infrastructure de nesto, plateforme de financement hypothécaire canadienne. Conception de contrôles cloud, automatisation DevSecOps et réponse aux incidents.
Lead SCADA and cybersecurity engineer designing compliant electric - substation systems for GE Vernova. Coordinating multidisciplinary teams, vendors, testing, estimates, and project risk for decarbonized energy infrastructure.
Join RBC's Application Security Group to develop innovative security solutions, mentor junior staff, and collaborate across teams to enhance decision - making and automate tasks.
Lead SCADA and cybersecurity engineer designing compliant substation systems for GE Vernova. Guiding project teams, vendor designs, estimates, and acceptance testing for cleaner energy infrastructure.
Senior security advisor simulating cyber threats and strengthening defenses for Desjardins, North America's largest cooperative financial group. Leading complex initiatives, methodologies and cybersecurity risk mitigation.