JOB SUMMARY
A leading global bank is seeking a Threats Architect within the Information & Cyber Security (ICS) – Identity & Access Management (IAM) organization to lead the strategy and architecture for identity access controls and identity threat detection and response capabilities.
This role defines and drives the roadmap for protecting the bank’s identities, platforms, and critical applications from identity-based attacks. The Threats Architect will address emerging risks including non-human identities (NHIs), Artificial Intelligence, and digital assets, while aligning cybersecurity capabilities with business and regulatory requirements.
The role works closely with cybersecurity, engineering, architecture, and risk teams and reports to the Head of IAM Threats Architecture and Controls.
RESPONSIBILITIES
Strategy & Architecture
-
Define the strategy, roadmap, and architecture for identity threat detection and response capabilities.
-
Leverage MITRE ATT&CK, MITRE DEFEND, and cyber threat intelligence to design detection and response controls.
-
Address emerging risks related to AI, digital assets, and non-human identities.
-
Serve as the subject matter expert for identity threats and identity security controls.
-
Define capability metrics, KPIs, and reporting frameworks.
-
Maintain IAM security standards, policies, and control documentation.
-
Evaluate and support selection of identity security technologies.
Delivery & Collaboration
-
Align cybersecurity capabilities with business priorities and strategic objectives.
-
Partner with engineering, security operations, architecture, and risk teams to deliver capabilities.
-
Translate security requirements into business outcomes and technology solutions.
-
Provide technical leadership to engineers and architects working on identity security solutions.
-
Collaborate with vendors and external partners where required.
Operations & Process
-
Design and enhance identity access control and threat detection capabilities.
-
Support automation, process optimization, and agile delivery practices.
-
Develop and operationalize identity threat response runbooks with cyber operations teams.
Risk & Governance
-
Ensure alignment with cybersecurity standards, regulatory requirements, and internal governance frameworks.
-
Maintain audit readiness and centralized audit trails for identity security controls.
-
Identify and manage program risks, dependencies, and escalations.
KEY STAKEHOLDERS
-
IAM Threat Architecture and Controls teams
-
Cybersecurity leadership and security operations teams
-
Engineering and enterprise architecture teams
-
Technology, infrastructure, and platform teams
-
Risk, compliance, and audit functions
SKILLS & EXPERIENCE
-
15+ years cybersecurity experience, including 8+ years in cyber threat detection, response, or threat intelligence.
-
Strong expertise in MITRE ATT&CK and DEFEND frameworks.
-
Experience designing threat detection and response solutions.
-
Knowledge of enterprise identity platforms (Active Directory, Entra ID, Okta, SailPoint).
-
Familiarity with cloud platforms (Azure/AWS) and enterprise infrastructure security.
-
Understanding of AI-related threats and non-human identity risks.
-
Strong stakeholder management, communication, and strategic delivery skills.
-
Experience in banking, financial services, or regulated industries preferred.
QUALIFICATIONS
-
Bachelor’s degree in Cyber Security, Computer Science, Engineering, or related field.
-
Relevant certifications such as GOSI, GSOA, GCIA, GEIR, or GCIH.
-
Experience with security technologies including Microsoft Defender, CrowdStrike, Palo Alto Cortex, CyberArk, BeyondTrust, Entra ID, Okta, or SailPoint.