Job Description
Winbond Electronics, a global leader in memory solutions, is seeking a Principal Cloud Security Architect to work Under the leadership of the Group/Regional CISO, design and operationalize a forward-looking, cross-region cyber defense and data protection architecture to support AI adoption and multi-cloud initiatives—ensuring resilience, visibility, and governance across global operations.
The position is located in our Herzliya office.
Core Responsibilities
Group-Level Security Architecture & Strategy
•Define the Global Cyber Defense & Data Protection Architecture spanning regions, AI workloads, and multi-cloud environments.
•Establish group-wide defense models aligned to Zero Trust, Defense-in-Depth, and Security by Design.
•Align security strategy with enterprise AI adoption and cloud strategy.
•Partner with HQ security/IT teams to drive group-wide implementation.
AI and Cloud Security
•Lead security architecture for Azure/AWS/GCP/private cloud; establish a consistent cross-cloud Security Baseline.
•Design cloud threat defense and detection reference architecture; define the Cloud Kill Chain and corresponding mitigation models.
•Develop and implement countermeasures for AI-assisted attacks and LLM/GenAI security risks.
•Promote Security as Code/Policy as Code, embedding controls into the application lifecycle.
•Partner with HQ security/IT teams to drive group-wide implementation.
Requirements
Must:
•10–15 years of cybersecurity experience, including at least 5 years in cloud or platform security architecture/strategy roles.
•Strong global governance and risk mindset; familiarity with international standards and regulations such as ISO, NIST, EU CRA, and supply chain security requirements.
•Deep technical and architectural expertise in Enterprise/Cloud Security Architecture, Zero Trust, IAM, and EDR/XDR.
•At least two relevant international certifications (e.g., CISSP, CISM, CCSP, SABSA, TOGAF – Security Architecture, Cloud Security Professional).
Nice to Have:
•Experience in multinational enterprises; cloud services/high-tech/manufacturing/semiconductor/critical infrastructure; or global cybersecurity consulting.
Track record of leading or contributing to group security transformations, SOC or Threat Intelligence Center build-outs, and AI/ML security initiatives.