Information Security Architect Specialist
Designs applications of advanced complexity which address business functionality and performance needs, while ensuring that maximum security is applied. Incorporates both in-house and externally acquired solutions. Considered a subject matter expertise in relation to security architecture and liaises with other areas of IT in the dissemination of this information to counter threats and internal and external vulnerabilities. Applies experience in topics such as enterprise software, software and hardware configurations, authentication, authorizations, detection and countering errant codes and scripts and related matters.
What Part Will You Play?
- Applies application development understanding and includes security controls within the application pipeline for moderate to highly complex projects. Verifies controls are adhered to and recommends changes to controls if gaps are identified.
- Reviews security architecture design recommendations and helps others overcome security architecture design review issues.
- Utilizes an expert understanding of the appropriate settings for premise or cloud based security platforms in order to build guides for highly complex implementations of a given platform.
- Helps solve issues with complex vulnerability scanning and/or penetration test results to eliminate false positives while identifying appropriate mitigation for true issues.
- Represents department in sharing InfoSec Architectural policies, standards and guidelines in documentation for consumption by both IT and non-IT resources. Contributes to the maintenance and development of InfoSec Architectural policies, standards and guidelines.
- Possesses detailed knowledge of the potential impacts of new threats and acts as point of contact for interpreting implications of new threats and potential impact to TSYS.
What Are We Looking For in This Role?
Minimum Qualifications
- Bachelor's Degree
- Relevant Experience or Degree in: in Information Security or Computer Science
- Typically Minimum 6 Years Relevant Exp
- Prior experience must be as an Information Security Analyst, or related role. Expert understanding of regulatory audit requirements and oversees the review of solutions developed by others to address findings. Degree strongly preferred; however, additional 4 years related experience may be considered in lieu of a degree.
- One or more of the following (or similar) -CISSP, CISA, CISM, PCI-QSA, PA-QSA, PCIP, CRISC, Security +, CGEIT
Preferred Qualifications
- Typically Minimum 8+ Years Relevant Exp
- Prior experience must be as an Information Security Engineer, Architect, or related role. Expert understanding of regulatory audit requirements and able to independently design solutions to address findings.
What Are Our Desired Skills and Capabilities?
- Skills / Knowledge - Having wide-ranging experience, uses professional concepts and company objectives to resolve complex issues in creative and effective ways. Some barriers to entry exist at this level (e.g., dept./peer review).
- Job Complexity - Works on complex issues where analysis of situations or data requires an in-depth evaluation of variable factors. Exercises judgment in selecting methods, techniques and evaluation criteria for obtaining results. Networks with key contacts outside own area of expertise.
- Supervision - Determines methods and procedures on new assignments and may coordinate activities of other personnel (Team Lead).
- Network Engineering/Architecture - Guides others in their understanding of TCP/IP network connectivity, subnet segmentation, security zones, secure ports/protocols, network authentication/authorization, security tools and their applicability (WAF, IPS, Sandbox, etc.).
- Systems Engineering/Architecture - Guides others in their understanding of Operating system infrastructure, including Windows, Linux, containers, container orchestration and Virtual Machines. Must understand system authentication options, user rights within systems, user authentication/authorization, least privilege, Group Policy, Automation tooling (Puppet, chef, ansible) and local security agents/tools (Anti-Virus, Whitelisting, forensics, firewall, etc.)
- Encryption/Cryptography - Guides others in the use of digital certificates, root certificate trust, and how to encrypt/decrypt network traffic. Leads the interpretation of data that must be encrypted at rest, and how to assure encryption key processes meet policy and regulatory r
Information Security Architect Specialist
We offer access to medical coverage that supports the health and wellbeing for you and your family
My Money
In addition to base salary, you may be eligible for bonuses and/or equity awards, determined by role, level, impact, and our policies.
My Lifestyle
We have a dedicated Wellness Week each year - which includes an extra paid day off - so you can take time to relax, recharge and invest in your wellbeing.
My Family
FLEX, our family inclusion community, offers support for all Globalpayers at every stage, from raising families to caring for loved ones
My Time Off
We offer paid time off and public holidays so you can rest, recharge and spend time on what matters most.
Privacy Statement
Global Payments is committed to protecting the privacy and security of all personal information that we process in order to provide services to our clients. For specific information on how Global Payments protects personal information online, please see the Online Privacy Notice.