Security Solution Architect
Role Purpose
The Security Solution Architect will lead the Data Security Assessment and Remediation initiative from a security, privacy, governance, and risk management perspective. The role is responsible for assessing the current-state security posture, identifying control gaps, defining security and privacy requirements, and establishing a secure target-state architecture that protects sensitive customer and loyalty data.
Job Summary
The Security Solution Architect will provide strategic leadership across data protection, privacy, encryption, governance, and security architecture workstreams. This role will assess how sensitive data is collected, transmitted, stored, accessed, and consumed across the enterprise landscape and define practical recommendations to reduce data exposure risks while improving compliance, governance, and operational controls.
The role will collaborate closely with Data Architects, Data Analysts, business stakeholders, security teams, and technology owners to establish a secure-by-design framework for future-state solutions.
Key Responsibilities
- Lead data security and privacy assessments across source and destination systems.
- Assess PII, payment card, loyalty, and sensitive customer data exposure risks.
- Conduct encryption and protection assessments for data at rest and in transit.
- Evaluate data masking, tokenization, and data minimization opportunities.
- Review access governance, RBAC, privileged access, and ownership models.
- Identify security, privacy, and governance gaps.
- Define target-state security architecture and control framework.
- Develop remediation recommendations and implementation priorities.
- Facilitate security and governance workshops with stakeholders.
- Support risk assessments and executive reporting.
Required Technical Skills
- Enterprise Security Architecture
- Data Security & Privacy
- Data Protection Controls
- Encryption & Key Management
- Access Management & RBAC
- Data Governance Frameworks
- Risk Assessment Methodologies
- Security Architecture Review
- Cloud & Hybrid Security Controls
- Data Masking & Tokenization
Preferred Skills
- PIPEDA
- GDPR
- PCI-DSS
- Privacy by Design
- Zero Trust Security Principles
- Data Loss Prevention (DLP)
- Information Security Governance
- Security Control Frameworks (NIST, ISO 27001)
Experience Required
- 10+ years in Enterprise Security Architecture or Data Security.
- Experience leading large-scale data protection programs.
- Experience assessing customer and loyalty ecosystems.
- Proven ability to engage business and executive stakeholders.
Skills Required
- 10+ years of experience in enterprise security architecture or data security
- Experience leading large-scale data protection programs
- Experience assessing customer and loyalty ecosystems
- Ability to engage business and executive stakeholders
- Enterprise security architecture expertise
- Data security and privacy expertise
- Data protection controls expertise
- Encryption and key management expertise
- Access management and RBAC expertise
- Data governance frameworks expertise
- Risk assessment methodologies expertise
- Security architecture review expertise
- Cloud and hybrid security controls expertise
- Data masking and tokenization expertise
- PIPEDA knowledge
- GDPR knowledge
- PCI-DSS knowledge
- Privacy by Design knowledge
- Zero Trust security principles knowledge
- Data Loss Prevention knowledge
- Information security governance knowledge
- NIST and ISO 27001 security control frameworks knowledge
Ness Digital Engineering Compensation & Benefits Highlights
The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Ness Digital Engineering and has not been reviewed or approved by Ness Digital Engineering.
-
Healthcare Strength — Healthcare coverage is often positioned as comprehensive, with medical and dental described as strong in North America. Wellness programs are also emphasized as part of the core package.
-
Flexible Benefits — Flexible or remote work options are frequently highlighted as part of the overall rewards experience. Learning and upskilling support is repeatedly framed as a meaningful benefit tied to the employee value proposition.
-
Fair & Transparent Compensation — Pay is characterized as generally “okay to good,” with stronger packages appearing for certain senior roles and some U.S. positions. This suggests compensation can be market-aligned when role level and geography are favorable.
Ness Digital Engineering Insights
What We Do
Ness Digital Engineering, acquired by global investment firm KKR in 2022, is a full-lifecycle digital engineering firm offering digital advisory through scaled engineering services. Headquartered in New York, Ness serves our customers across 11 innovation hubs in the US, Eastern Europe, and India. Combining our core competence in engineering with the latest in digital strategy and technology, we seamlessly manage Digital Transformation journeys from strategy through execution to help businesses thrive in the digital economy. For more information, visit www.ness.com

.png)







