About the role
As a Cyber Security Architect, you will make an impact by designing and implementing secure cloud environments that protect sensitive data and ensure compliance across AWS platforms. You will be a valued member of the Cyber Security Engineering team and work collaboratively with cross-functional stakeholders including infrastructure, compliance, and DevOps teams.
In this role, you will:
Architect and implement secure AWS cloud environments, including landing zones, guardrails, and multi-account setups.
Design and manage Identity and Access Management (IAM) strategies, including SSO, MFA, and least privilege access.
Develop and enforce encryption and key management policies aligned with data classification standards.
Lead network security design efforts, including segmentation, egress controls, WAF/firewall configurations, and DNS security.
Integrate and manage secrets management solutions, ensuring secure vault usage and automated secret rotation.
Ensure compliance with cloud security frameworks such as HIPAA, GDPR, GxP, SOC2, and ISO 27001.
Work model:
We believe hybrid work is the way forward as we strive to provide flexibility wherever possible. Based on this role’s business requirements, this is a hybrid position requiring 2 days a week in a client or Cognizant office in Redwood City, CA. Regardless of your working arrangement, we are here to support a healthy work-life balance though our various wellbeing programs.
The working arrangements for this role are accurate as of the date of posting. This may change based on the project you’re engaged in, as well as business and client requirements. Rest assured; we will always be clear about role expectations.
What you need to have to be considered:
8–12 years of experience in AWS Cloud Security, including architecture and implementation.
8–12 years of experience in Identity and Access Management (IAM), including cross-account roles and lifecycle management.
8–12 years of experience in Cloud Security Compliance, with knowledge of HIPAA, GDPR, GxP, SOC2, and ISO 27001.
8–12 years of experience in Secrets Management, including secure vault integration and rotation strategies.
Strong understanding of encryption strategies, key management, and data classification in AWS.
These will help you stand out:
AWS certifications (e.g., AWS Certified Security – Specialty).
Experience working in regulated industries (e.g., healthcare, finance, pharma).
Knowledge of automation and Infrastructure as Code (IaC) for security controls.
Strong communication and stakeholder engagement skills.
Experience with cloud-native security tools and third-party integrations.
We're excited to meet people who share our mission and can make an impact in a variety of ways. Don't hesitate to apply, even if you only meet the minimum requirements listed. Think about your transferable experiences and unique skills that make you stand out as someone who can bring new and exciting things to this role.
Salary and Other Compensation:
Applications will be accepted until October 05, 2025
The annual salary for this position is between $ 110,000 - $ 130,000 depending on experience and other qualifications of the successful candidate.
This position is also eligible for Cognizant’s discretionary annual incentive program, based on performance and subject to the terms of Cognizant’s applicable plans.
Benefits: Cognizant offers the following benefits for this position, subject to applicable eligibility requirements:
Medical/Dental/Vision/Life Insurance
Paid holidays plus Paid Time Off
401(k) plan and contributions
Long-term/Short-term Disability
Paid Parental Leave
Employee Stock Purchase Plan
Disclaimer: The salary, other compensation, and benefits information is accurate as of the date of this posting. Cognizant reserves the right to modify this information at any time, subject to applicable law.
#LI-KV1 #CB #Ind123