← Tillbaka till jobb

Information Security Architect

  • Distans
  • Sverige
  • Engelska
  • Publicerad 09.09.26 14:50

Role: Information Security ArchitectLocalisation: 100% remoteStarting date: Octobre 1st 2026Activity rate: 50% Programme contextOur client is replacing its legacy core platform with a multi-cloud microservices architecture acrossAlibaba Cloud, Azure and AWS plus hybrid on-premise components. The consultant is embedded in the client's delivery teams, and every implementation must comply with the programme's ASPIC foundations - Architecture, Security, Privacy, Infrastructure and Cloud. Role overviewSupports the Information Security team in defining, guiding and reviewing the security architecture of the programme, with a strong focus on microservices, identity-centric design and multi-cloud environments.The role is advisory: it challenges designs constructively while operating without direct ownership. ResponsabilitiesSupport the definition and maintenance of the programme's security architecture foundations, principles, standards and guardrails.Review implementations and migrations to verify alignment; provide input for architecture validation, reviews and exception handling.Highlight deviations and escalate non-compliance to the Information Security team.Be embedded in programme delivery, working closely with solution architects, DevOps teams and external vendors.Perform continuous security reviews of embedded projects; support security within the delivery lifecycle (SDLC / DevSecOps).Promote and reinforce secure-by-design and zero-trust principles across design, build and migration phases.Support the IAM team from an architecture and design perspective; review IAM designs for alignment with enterprise identity principles.Contribute to improving the consistency of IAM implementation across programme projects. Required ExpertiseProven experience as a Security Architect in large transformation programmes.Strong expertise in cloud and multi-cloud security architecture, microservices and API security, and zero trust principles.Solid knowledge of IAM — SSO, OIDC, SAML, RBAC and least-privilege models.Experience contributing to security architecture blueprints, reference patterns and compliance reviews.Good understanding of DevSecOps and security tooling; ability to give clear, pragmaticadvisory recommendations.