The Security Architect is a senior technical practitioner responsible for designing the security architecture of Hexion’s enterprise environment: on-premises infrastructure, Azure and AWS cloud platforms, AI and machine learning systems, and the interfaces between enterprise IT, Operational Technology, and physical security systems. This role owns reference architectures, security design patterns, and architectural standards — and holds the authority to review, challenge, and approve designs before they are built. This is an architecture role, not a compliance role. The successful candidate uses ISO/IEC 27001, 27017, 27018, 42001, and 27019 as the frameworks that shape control selection and design rationale, then works alongside engineering teams to make those controls real in configuration, code, and network design. This role ensures: Security is designed into systems at inception rather than assessed after deployment. On-premises, Azure, and AWS environments share a coherent identity, network, and data protection architecture. Cloud services are architected against ISO/IEC 27017 and 27018 expectations for cloud security and PII protection. AI and machine learning systems are designed with governance and technical controls aligned to ISO/IEC 42001 and recognized AI threat models. OT and process control architectures are secured in partnership with engineering, informed by ISO/IEC 27019 and IEC 62443. Physical security systems and controls are treated as part of the security architecture, not a separate discipline. Architectural decisions are documented, defensible, and traceable to risk.
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Job Type
Full-time
Career Level
Senior
Education Level
Associate degree