- Company Name
- Ubisoft
- Job Title
- Solution Security Architect
- Job Description
-
Job title: Solution Security Architect
Role Summary: Architect and implement enterprise‑grade network security solutions, embedding security controls within IT and cloud environments to reduce risk and accelerate remediation.
Expactations: Deliver measurable risk reductions through proactive vulnerability remediation, configuration hardening, and security automation. Drive security governance and best‑practice adoption across multiple teams.
Key Responsibilities:
- Lead remediation of critical network vulnerabilities and manage post‑incident actions.
- Design, provision, and harden network infrastructure (routing, ACLs, VPNs, LAN/WAN, firewalls, load balancers).
- Deploy cloud network security controls (AWS VPC, Azure VNet, peering, security groups, NSGs, firewalls).
- Build and maintain security configuration templates and hardening standards.
- Prototype and validate new security improvements or tooling.
- Document and communicate all implemented controls and mitigation actions.
- Contribute to security knowledge bases, guidelines, and self‑service resources.
- Automate security provisioning through IaC (Terraform, Ansible) and scripting (Python, Go, Bash).
- Apply advanced security concepts (DNSSEC, PKI, TLS, NAC, 802.1X, device posture).
- Engage in container/Kubernetes networking security, zero‑trust practices, and SIEM operations.
Required Skills:
- Deep expertise in L2–L4 network security (routing, ACLs, VPNs, segmentation, LAN/WAN, Cisco, data center firewalls, load balancers).
- Cloud network security mastery for AWS and Azure (VPC/VNet design, peering, security groups/NSGs, firewalls, hybrid connectivity, policy enforcement).
- Linux system security (nftables/iptables, hardening, logging, DNS, IDS, PowerDNS, Suricata).
- Infrastructure as Code (Terraform, Ansible) and programming (Python, Go, Bash).
- Knowledge of DNSSEC, PKI, TLS, reverse proxies, Cisco ISE/NAC, 802.1X, device posture management.
- Experience with Kubernetes networking, CNI/Calico, zero‑trust, SIEM, and root‑cause analysis.
Required Education & Certifications:
- Bachelor’s degree in Computer Science, Information Security, or related field (or equivalent experience).
- Relevant certifications (e.g., CCNA/CCNP, AWS Certified Security – Specialty, Azure Security Engineer Associate, or equivalent) highly preferred.