Are you ready to shape the future of cybersecurity? Do you have a passion for protecting organizations against emerging threats? If so, we want to hear from you!
This is a hybrid role with the flexibility to work in a hybrid model from our Kraków office, aligning with our in-country smart working policy.
responsibilities :
Understand technical security issues and their implications for Aon businesses, effectively communicating them to management and other business leaders.
Stay informed about emerging security technologies and determine their appropriate use within technology and business applications.
Maintain and enforce Aon’s cybersecurity policies and secure design documentation.
Execute and enhance Aon’s Security architecture review process, ensuring compliance for all technology and business initiatives.
Architect global programs that deploy strong security patterns and controls across applications and computing environments, while addressing security, business resiliency, and compliance frameworks.
Identify security risks and trends, guiding the Global Security Services (GSS) organization in addressing these issues.
Improve architectural adoption through automation and efficiently leverage security tools to solve challenges at scale.
Validate reference architectures for security best practices and recommend changes to enhance security and reduce risk, where applicable.
Collaborate with corporate functions, including Internal Audit, Compliance, Privacy, and Sourcing, to ensure Aon maintains a strong cybersecurity posture.
requirements-expected :
A minimum of 5+ years of hands-on experience in security architecture.
Bachelor’s Degree in Computer Science, Engineering, or a related discipline, or 6+ years of previous technical experience, specifically in security architecture.
Security certifications such as CISSP, CISM, CISA, SANS, Security+, etc.
Exceptional verbal and written communication skills, with the ability to tailor messages to various audiences, from senior executives to technical teams.
Detailed understanding of threats faced by consumer and digital platform organizations.
Proven hands-on experience securing cloud infrastructure and global hybrid architectures from both compute and network perspectives.
Expertise in securing operating systems (Microsoft, Linux, MacOS, etc.) and application security topics, including OWASP top 10 and technical remediation.