Cybersecurity Architect & Engineering Lead
DXC Technology · Abu Dhabi Emirate, United Arab Emirates
Apply & track with Apply EdgeCybersecurity Architect & Engineering LeadDXC Technology | United Arab Emirates | On-siteDXC Technology is seeking an experienced Cybersecurity Architect & Engineering Lead to provide cybersecurity architecture, engineering, and technical leadership within a large-scale technology transformation environment in the UAE.The successful candidate will be responsible for defining, governing, and driving the implementation of enterprise cybersecurity architecture across multiple technology domains, ensuring that security is embedded throughout the design, engineering, integration, and operational lifecycle.This is a senior technical leadership role requiring strong expertise across security architecture, security engineering, cloud security, network security, IAM/PAM, application security, data protection, endpoint security, and security monitoring technologies.Key ResponsibilitiesCybersecurity ArchitectureLead the definition and implementation of end-to-end cybersecurity architecture across multiple technology domains.Develop target security architectures, roadmaps, principles, standards, patterns, and technical security requirements.Translate business, technology, security, and risk requirements into practical cybersecurity architecture and engineering solutions.Embed Security-by-Design, Zero Trust, Defence-in-Depth, Least Privilege, and Secure-by-Default principles throughout the technology lifecycle.Ensure cybersecurity architecture is aligned across cloud, infrastructure, network, applications, APIs, identity, data, endpoints, and security platforms.Security Engineering LeadershipLead cybersecurity engineering activities across multiple technical workstreams.Provide technical direction to security engineers, architects, technical leads, vendors, and delivery teams.Translate security architecture into implementable engineering designs, technical controls, configurations, and standards.Review security engineering designs and ensure alignment with approved architecture.Support implementation, integration, testing, and validation of cybersecurity technologies.Drive resolution of complex security engineering and integration issues.Architecture Governance & Design AuthorityEstablish and maintain cybersecurity architecture governance and design assurance processes.Lead or participate in Architecture Review Boards and technical design authorities.Review and approve security designs produced by internal teams, vendors, and technology partners.Ensure solutions comply with approved security architecture, standards, patterns, and technical requirements.Document key security architecture decisions, exceptions, risks, and remediation requirements.Identity & Access ManagementDefine architecture and engineering requirements across IAM, PAM, SSO, MFA, federation, identity governance, directory services, RBAC/ABAC, and identity lifecycle management.Ensure consistent identity and access controls across applications, infrastructure, cloud platforms, and enterprise services.Promote Zero Trust and least-privilege access models.Review privileged access and administrative security architecture.Cloud & Infrastructure SecurityDefine and govern security architecture across public cloud, private cloud, hybrid infrastructure, compute, storage, virtualization, containers, and platform services.Ensure appropriate workload protection, configuration management, encryption, secrets management, vulnerability management, and security monitoring.Provide architecture guidance for cloud-native security capabilities.Support implementation of technologies and approaches such as CSPM, CNAPP, CWPP, cloud IAM, workload security, and cloud-native monitoring.Network & Endpoint SecurityDefine architecture and engineering requirements for enterprise network and endpoint security.Provide technical leadership across NGFW, WAF, IDS/IPS, NAC, VPN, segmentation, micro-segmentation, SASE/SSE, secure access, EDR/XDR, and endpoint protection.Ensure appropriate network segmentation and trust boundaries are incorporated into solution designs.Support Zero Trust Network Access and modern secure-access architectures.Ensure network and endpoint security technologies integrate effectively with monitoring and response platforms.Application, API & DevSecOps SecurityDefine security architecture requirements across applications, APIs, middleware, integration platforms, and microservices.Embed application security requirements throughout the software development lifecycle.Promote DevSecOps and Secure SDLC practices.Support security requirements for CI/CD pipelines, code repositories, secrets management, dependency management, and application testing.Ensure appropriate controls for API authentication, authorization, encryption, rate limiting, and secure integration.Support implementation of SAST, DAST, SCA and related application-security capabilities.Data Security & CryptographyDefine architecture requirements for data protection throughout the data lifecycle.Ensure appropriate controls for data classification, encryption, tokenization, key management, secrets management, and secure data exchange.Define security requirements for data at rest, in transit, and where applicable in use.Work with data and application architects to ensure appropriate security controls are incorporated into data architectures.Provide guidance on PKI, certificates, encryption standards, and cryptographic key management.Security Monitoring & Detection IntegrationEnsure cybersecurity architecture supports effective monitoring, detection, investigation, and response.Define technical integration requirements across SIEM, SOAR, EDR/XDR, NDR, threat intelligence, vulnerability management, cloud security, and other security platforms.Define logging, telemetry, audit, and security-event requirements across technology solutions.Work closely with security operations and MDR teams to improve visibility and detection coverage.Ensure newly implemented technologies are appropriately integrated into security monitoring capabilities.Vulnerability & Security AssuranceSupport technical vulnerability management and remediation activities.Review security vulnerabilities and identify appropriate technical remediation strategies.Conduct or support threat modelling and security architecture assessments.Ensure security controls are technically testable and measurable.Support security testing, penetration testing, remediation, and technical assurance activities.Drive closure of architecture and engineering-related security findings.Required Qualifications & ExperienceBachelor's degree in Cybersecurity, Computer Science, Information Technology, Engineering, or a related discipline.Typically 15+ years of IT/cybersecurity experience, with substantial experience in cybersecurity architecture and engineering.Demonstrated experience as a Cybersecurity Architect, Security Architect, Security Engineering Lead, Lead Security Architect, or equivalent.Proven experience designing cybersecurity solutions within large-scale, complex enterprise technology environments.Strong technical knowledge across multiple cybersecurity domains, including:Cloud SecurityNetwork SecurityIAM/PAMApplication & API SecurityData SecurityEndpoint SecuritySIEM/SOAR and Security MonitoringVulnerability ManagementStrong understanding of Zero Trust, Security-by-Design, Defence-in-Depth, and Least Privilege principles.Experience with cloud and hybrid security architecture across platforms such as Microsoft Azure, AWS, or equivalent.Strong experience working within complex multi-vendor and systems integration environments.Experience reviewing and governing technical security designs.Strong understanding of security architecture governance, threat modelling, risk assessment, and security assurance.Demonstrated ability to lead architects, engineers, vendors, and cross-functional technical teams.Excellent stakeholder management, communication, influencing, and technical leadership skills.Preferred QualificationsExperience delivering major cybersecurity architecture and engineering initiatives in the UAE or wider GCC region.Experience with modern security technologies and architectures including Zero Trust, SASE/SSE, CNAPP, CSPM, EDR/XDR, SIEM/SOAR, IAM/PAM, DevSecOps, and cloud-native security.Knowledge of recognised frameworks and standards such as NIST CSF, ISO/IEC 27001, CIS Controls, SABSA, MITRE ATT&CK, and TOGAF.Relevant professional certifications such as:CISSPCCSPSABSACISMGIACTOGAFMicrosoft Azure SecurityAWS SecurityEquivalent cybersecurity or cloud certificationsWhat We Are Looking ForWe are looking for a hands-on cybersecurity architecture and engineering leader, rather than a candidate whose background is predominantly GRC, audit, policy, or SOC operations.The successful candidate should have the technical breadth to understand security across the complete technology landscape and sufficient depth to challenge designs, guide engineers, govern vendors, and make complex cybersecurity architecture decisions.The ideal candidate will combine cybersecurity architecture expertise, engineering credibility, technical leadership, strong governance, stakeholder influence, and pragmatic decision-making.