Thomson Reuters

Cloud Security Associate Architect

Thomson Reuters Bengaluru, Karnataka, India

Software Development · 10,001+ employees

12 h ago
Principal (10+ yrs) Full-time India
Create a free account to apply — email only, no card. You can also save this posting or score it against your profile with AI.

About the role

The Cloud Security Associate Architect will partner with cross-functional teams to embed secure-by-design principles across enterprise and cloud systems. They are responsible for defining security standards, conducting threat modeling, and guiding the organization toward secure, scalable architectural solutions.

What they look for

Cloud security Security architecture Threat modeling Risk assessment Secure design Enterprise security Cloud-native architectures DevSecOps SSDLC AI/ML security Governance frameworks Technical leadership Regulatory compliance Security standards Multi-cloud environments

Requirements

Candidates must have a bachelor's degree and over 10 years of hands-on experience in security architecture, cloud security, or software engineering. Strong expertise in cloud platforms, security frameworks, and the ability to communicate complex security concepts to diverse stakeholders is required.

Benefits

Flexible vacation Mental health days Headspace app access Retirement savings Tuition reimbursement Employee incentive programs Work from anywhere for up to 8 weeks per year Volunteer days off

Full description

Job Description

Cloud Security Associate Architect

As a Cloud Security Associate Architect, you will join Thomson Reuters' Security Architecture team to help embed security across products, platforms, and enterprise systems. You will partner with business and technical teams to promote secure-by-design architectures and secure-by-default configurations that are practical, scalable, and consistent across the organization.

In this role, you will provide technical leadership by collaborating with Information Security, Risk Management, Platform Engineering, Service Management, Commercial Engineering, and Product Engineering teams. You will play a critical role in identifying technology risks, defining security standards, and guiding teams toward secure solutions that align with business objectives while protecting customers and company assets.

Key Responsibilities

  • Partner with security, engineering, and business stakeholders to incorporate security requirements into enterprise, cloud, and product architectures.
  • Assess emerging technologies, evolving threats, and security risks, translating industry best practices, security frameworks, and regulatory requirements into actionable guidance.
  • Define and maintain security standards, reference architectures, secure design patterns, and implementation guardrails for cloud and enterprise environments.
  • Establish repeatable security assessment frameworks to help teams identify risks, select appropriate controls, and measure security outcomes.
  • Conduct architecture reviews, threat modeling exercises, and security assessments for new applications, cloud services, integrations, migrations, and emerging technologies, including AI and agentic systems.
  • Review architectural exceptions, evaluate associated risks, recommend compensating controls, and document design decisions and trade-offs.
  • Support the adoption of secure reference implementations across cloud landing zones, shared platforms, and engineering teams to drive standardization and consistency.
  • Track security findings, communicate risk-based recommendations, and work with stakeholders to support remediation and implementation efforts.
  • Continuously improve security architecture processes, governance models, reference architectures, and security knowledge repositories.
  • Act as a trusted technical advisor, building strong relationships across teams while mentoring engineers and contributing to the broader security community.

Required Qualifications

  • Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or equivalent practical experience.
  • 10+ years of hands-on experience in Security Architecture, Cloud Security, Application Security, Software Engineering, or a related field.
  • Strong understanding of cloud platforms, modern application architectures, and enterprise security controls.
  • Experience conducting security architecture reviews, threat modeling, risk assessments, and secure design evaluations.
  • Knowledge of security frameworks, industry standards, and regulatory requirements.
  • Excellent written and verbal communication skills, with the ability to explain complex security concepts to both technical and non-technical audiences.
  • Strong analytical and problem-solving skills with the ability to balance security, business, and engineering requirements.
  • Demonstrated ability to collaborate effectively across cross-functional teams and influence technical decision-making.
  • Passion for cybersecurity and continuous learning, with the ability to quickly evaluate and understand new technologies.

Preferred Qualifications

  • Experience designing and securing multi-cloud environments and cloud-native architectures.
  • Knowledge of AI/ML security, agentic systems, and emerging technology risk management.
  • Experience developing secure reference architectures, security patterns, and governance frameworks.
  • Familiarity with DevSecOps practices, secure software development lifecycle (SSDLC), and cloud security tooling.
  • Professional security certifications such as CISSP, CCSP, AWS Security Specialty, Azure Security Engineer, or equivalent.
  • Experience mentoring engineers, architects, or security professionals.
  • Proven track record of driving security initiatives across large-scale enterprise environments.
  • Active participation in the cybersecurity community through knowledge sharing, presentations, publications, or mentoring programs.

#LI-HG1

What’s in it For You?

  • Hybrid Work Model: We’ve adopted a flexible hybrid working environment (2-3 days a week in the office depending on the role) for our office-based roles while delivering a seamless experience that is digitally and physically connected.
  • Flexibility & Work-Life Balance: Flex My Way is a set of supportive workplace policies designed to help manage personal and professional responsibilities, whether caring for family, giving back to the community, or finding time to refresh and reset. This builds upon our flexible work arrangements, including work from anywhere for up to 8 weeks per year, empowering employees to achieve a better work-life balance.
  • Career Development and Growth: By fostering a culture of continuous learning and skill development, we prepare our talent to tackle tomorrow’s challenges and deliver real-world solutions. Our Grow My Way programming and skills-first approach ensures you have the tools and knowledge to grow, lead, and thrive in an AI-enabled future.
  • Industry Competitive Benefits: We offer comprehensive benefit plans to include flexible vacation, two company-wide Mental Health Days off, access to the Headspace app, retirement savings, tuition reimbursement, employee incentive programs, and resources for mental, physical, and financial wellbeing.
  • Culture: Globally recognized, award-winning reputation for inclusion and belonging, flexibility, work-life balance, and more. We live by our values: Obsess over our Customers, Compete to Win, Challenge (Y)our Thinking, Act Fast / Learn Fast, and Stronger Together.
  • Social Impact: Make an impact in your community with our Social Impact Institute. We offer employees two paid volunteer days off annually and opportunities to get involved with pro-bono consulting projects and Environmental, Social, and Governance (ESG) initiatives.
  • Making a Real-World Impact: We are one of the few companies globally that helps its customers pursue justice, truth, and transparency. Together, with the professionals and institutions we serve, we help uphold the rule of law, turn the wheels of commerce, catch bad actors, report the facts, and provide trusted, unbiased information to people all over the world.

About Us

Thomson Reuters informs the way forward by bringing together the trusted content and technology that people and organizations need to make the right decisions. We serve professionals across legal, tax, accounting, compliance, government, and media. Our products combine highly specialized software and insights to empower professionals with the data, intelligence, and solutions needed to make informed decisions, and to help institutions in their pursuit of justice, truth, and transparency. Reuters, part of Thomson Reuters, is a world leading provider of trusted journalism and news.

We are powered by the talents of 26,000 employees across more than 70 countries, where everyone has a chance to contribute and grow professionally in flexible work environments. At a time when objectivity, accuracy, fairness, and transparency are under attack, we consider it our duty to pursue them. Sound exciting? Join us and help shape the industries that move society forward.

As a global business, we rely on the unique backgrounds, perspectives, and experiences of all employees to deliver on our business goals. To ensure we can do that, we seek talented, qualified employees in all our operations around the world regardless of race, color, sex/gender, including pregnancy, gender identity and expression, national origin, religion, sexual orientation, disability, age, marital status, citizen status, veteran status, or any other protected classification under applicable law. Thomson Reuters is proud to be an Equal Employment Opportunity Employer providing a drug-free workplace.

We also make reasonable accommodations for qualified individuals with disabilities and for sincerely held religious beliefs in accordance with applicable law. More information on requesting an accommodation here.

Learn more on how to protect yourself from fraudulent job postings here.

More information about Thomson Reuters can be found on thomsonreuters.com.