Cloud Security Architect - Scotiabank, Toronto
Posted: July 17, 2026
Browse more Scotiabank jobs · See other jobs in Toronto
job description
AI Summary
Scotiabank is seeking a Cloud Security Architect in Toronto, Ontario. This senior role ensures the continuity and maturity of cloud security and CNAPP architecture, including foundational controls for the bank's cloud platforms. Key responsibilities involve leading CNAPP architecture rollout across multi-cloud and hybrid solutions. Successful candidates will have demonstrated experience in cloud security architecture across GCP, Azure, or AWS, and proven expertise in designing and scaling CNAPP capabilities.
About the Role
As a Cloud Security Architect at Scotiabank, you will play a pivotal role in advancing the bank's cloud security posture. This strategic position involves owning day-to-day architecture decisions, platform integrations, and risk-driven design, all aligned with enterprise security standards. You will lead the CNAPP architecture and its rollout across multi-cloud and hybrid solutions, including defining integration patterns and operationalization design. A key aspect of this role is designing comprehensive multi-cloud and hybrid security solutions covering data protection, Identity and Access Management (IAM), and threat management for enterprise workloads and a global user base. You will define robust security controls through policy as Code, ensuring alignment with enterprise standards and designing integration points to maintain posture security, vulnerability management, and remediation workflows. This includes publishing Security Reference Architectures and reusable secure-by-design patterns for engineering adoption across various platforms and products. Collaboration is crucial, as you will partner with platform engineering and DevSecOps teams to integrate scanning and controls into CI/CD pipelines, including managing risk decisions and exceptions. Furthermore, you will be responsible for maintaining cloud security architecture artifacts, such as diagrams and deep dives, and communicating current and target states to stakeholders. Your expertise will also be vital in providing advisory and architecture reviews, identifying gaps, recommending pragmatic remediation, and aligning solutions to delivery timelines. Supporting audit and compliance efforts through control documentation and traceability to frameworks like NIST, CSA, and CIS is also a core responsibility, alongside coordinating cloud security integrations that require network and service-boundary controls for vendor and tool onboarding. This role also extends to defining enterprise AI security reference architectures, showcasing the breadth of its impact across the bank's technological landscape.
What You'll Bring
To excel in this Cloud Security Architect role, you will bring demonstrated experience in cloud security architecture across major providers such as GCP, Azure, or AWS, including a deep understanding of cloud platform services and enterprise-scale design patterns. Proven experience in designing, implementing, and scaling CNAPP capabilities, including CSPM, CWPP, CIEM, and IaC scanning, in production-grade cloud environments is essential. Hands-on experience integrating DevSecOps controls into CI/CD pipelines, such as GitHub Actions or Jenkins, including secure infrastructure provisioning using tools like Terraform Cloud, is also a critical requirement. A strong understanding of cryptography, IAM, data protection, and network architecture will be foundational to your success. You should possess strong experience designing and implementing security controls aligned to industry frameworks such as NIST and CIS. Experience with cloud-native workload security, particularly containers and Kubernetes (e.g., GKE, AKS, EKS), and runtime controls (CWPP-style), is highly valued. Familiarity with common security toolchain integrations, including CNAPP, SSPM, SAST/DAST, and logging/monitoring solutions, will enable you to contribute effectively from day one. Excellent architecture communication skills, including writing reference architectures, creating diagrams, and documenting decision records, are necessary for influencing stakeholders across security, engineering, and risk teams. Relevant certifications or equivalent depth of experience, such as CISSP or CCSP, are important, along with comfort operating in regulated and audit-driven environments. Experience working in Agentic AI applications is considered a valuable asset. Scotiabank fosters an inclusive and high-performing culture, committed to results, where every employee is empowered to reach their fullest potential.
categories
about scotiabank
- Industry: Finance
- Size: 10000+ employees
- view all Scotiabank jobs
similar jobs
- clinical research coordinator iii - university health network, toronto - University Health Network
- respiratory therapist - university health network, toronto - University Health Network
- medical laboratory technologist, genetics - uhn, toronto - University Health Network
- research strategy development specialist i - university health network, toronto - University Health Network
- project coordinator ii, operations - uhn, toronto - University Health Network
- audio-visual & technology specialist - uhn, toronto - University Health Network
- senior manager, balance sheet analysis - scotiabank, toronto - Scotiabank
- financial advisor - scotiabank, mont-st-hilaire, qc - Scotiabank
- scotiamcleod assistant branch manager - scotiabank, regina - Scotiabank
- junior developer with python, pyspark, sql - scotiabank, toronto - Scotiabank
