Cyber Security Architect

Altimetrik

Princeton (NJ)

On-site

USD 150,000 - 185,000

Full time

31 hours ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

Altimetrik is seeking an experienced Cybersecurity Architect to design, govern, and optimize secure enterprise architectures across applications, infrastructure, and cloud platforms. The role aligns cybersecurity strategy with business goals, identifies risks, and guides engineering teams on secure design and DevSecOps practices.

Responsibilities include defining strategy, architecture reviews, threat modelling, risk assessments, and implementing robust identity and access controls, with a focus

Qualifications

  • 8–12 years of experience in cybersecurity, information security, or security architecture.
  • 3+ years designing and reviewing enterprise security architectures.
  • Strong knowledge of network, application, cloud security, IAM, cryptography, and security operations.
  • Experience with threat modelling frameworks and secure design principles.
  • Hands-on knowledge of security controls, vulnerability management, and incident response.
  • Experience with governance processes, policies, and security standards.

Responsibilities

  • Define and maintain cybersecurity strategy, standards, and reference architectures.
  • Design secure architectures for applications, networks, cloud, APIs, data, and infrastructure.
  • Translate requirements into security controls and architecture patterns.
  • Conduct threat modelling, risk assessments, and architecture reviews.
  • Guide DevSecOps practices, secure coding, and security testing.
  • Develop and govern IAM, SSO, MFA, RBAC/ABAC and zero-trust controls.
  • Review designs, IaC, and implementation plans for security compliance.
  • Support audits and regulatory compliance initiatives.

Skills

Cybersecurity Architecture
Threat Modelling
Zero Trust
IAM & Access
Cloud Security
Security Governance
DevSecOps

Tools

SAST
DAST
IaC Scanning
Secrets Scanning

Job description

We are looking for an experienced Cybersecurity Architect to design, implement, and govern secure enterprise architectures across applications, infrastructure, networks, cloud platforms, data, and identity systems. The successful candidate will align cybersecurity strategy with business objectives, identify security risks, define appropriate controls, and guide engineering teams in building secure and resilient technology solutions.

Key responsibilities
  • Define and maintain the organization’s cybersecurity strategy, principles, standards, and reference architectures.
  • Design secure architectures for enterprise applications, networks, cloud platforms, APIs, data platforms, and infrastructure.
  • Translate business, regulatory, and technical requirements into security controls and architecture patterns.
  • Conduct threat modelling, attack-surface analysis, security risk assessments, and architecture reviews.
  • Identify vulnerabilities, design gaps, single points of failure, and risks introduced by new technologies or system integrations.
  • Define security controls for confidentiality, integrity, availability, authentication, authorization, monitoring, and data protection.
  • Establish defense-in-depth strategies covering identity, network, endpoint, application, data, and cloud security.
  • Review solution designs, technical specifications, infrastructure-as-code, and implementation plans for security compliance.
  • Guide development and engineering teams in secure design, secure coding, DevSecOps, and security testing practices.
  • Design and govern identity and access management solutions, including SSO, MFA, RBAC, ABAC, PAM, and zero-trust controls.
  • Define security requirements for firewalls, WAF, VPN, IDS/IPS, SIEM, EDR, DLP, secrets management, and endpoint protection.
  • Develop cloud-security architectures for AWS, Azure, or Google Cloud environments.
  • Establish security logging, monitoring, alerting, detection, and incident-response requirements.
  • Support vulnerability assessments, penetration testing, configuration reviews, and remediation planning.
  • Assist incident-response and business-continuity teams during major security events.
  • Evaluate security products, technologies, vendors, and managed security services.
  • Maintain security architecture documentation, standards, diagrams, risk registers, and control mappings.
  • Support audits and compliance initiatives involving ISO 27001, SOC 2, PCI DSS, GDPR, HIPAA, or applicable regulatory frameworks.
  • Track changes in the threat landscape and update security controls and architecture accordingly.
Required qualifications
  • 8–12 years of experience in cybersecurity, information security, infrastructure security, cloud security, or security architecture.
  • 3+ years of experience designing and reviewing enterprise security architectures.
  • Strong knowledge of network security, application security, cloud security, IAM, cryptography, and security operations.
  • Experience with threat modelling frameworks such as STRIDE, MITRE ATT&CK, or equivalent methodologies.
  • Strong understanding of security principles including least privilege, zero trust, defense in depth, secure-by-design, and separation of duties.
  • Experience conducting security risk assessments and developing risk-treatment plans.
  • Hands-on knowledge of security controls, vulnerabilities, penetration testing, incident response, and disaster recovery.
  • Experience working with architecture frameworks, security policies, control standards, and governance processes.
  • Strong communication skills, with the ability to explain complex security risks to technical and business stakeholders.
  • Demonstrated ability to influence engineering teams and drive security improvements across projects.
Preferred qualifications
  • Experience securing AWS, Azure, or Google Cloud environments.
  • Knowledge of Kubernetes, containers, service meshes, serverless systems, and cloud-native architectures.
  • Experience with DevSecOps tools, CI/CD security, SAST, DAST, SCA, IaC scanning, secrets scanning, and container security.
  • Familiarity with SIEM, SOAR, EDR, XDR, WAF, CSPM, CNAPP, DLP, and vulnerability-management platforms.
  • Experience with API security, microservices security, OAuth 2.0, OpenID Connect, SAML, and JWT.
  • Knowledge of data classification, encryption, tokenization, key management, and privacy engineering.
  • Experience with security automation using Python, PowerShell, Terraform, or similar tools.
  • Familiarity with AI/ML security, LLM application security, prompt injection, data leakage, and model governance.
  • Experience with regulatory and security frameworks such as NIST CSF, NIST SP 800-53, CIS Controls, ISO 27001, SABSA, COBIT, and OWASP.
  • Professional certifications such as CISSP, CCSP, SABSA, CISM, GIAC, AWS Security Specialty, or Azure Security Engineer.
Technical skills
Area
Technologies and knowledge

AWS, Azure, GCP, IAM, KMS, GuardDuty, Defender, Security Command Center

Network security

Identity security

SSO, MFA, RBAC, ABAC, PAM, OAuth 2.0, OIDC, SAML

Security operations

Application security

OWASP, API security, SAST, DAST, SCA, threat modelling

DevSecOps

Jenkins, GitHub Actions, GitLab CI, Terraform scanning, container security

Infrastructure

Kubernetes, Docker, Linux, Windows, virtualization, service meshes

Data security

Encryption, DLP, tokenization, secrets management, key management

Governance

ISO 27001, NIST, CIS Controls, SOC 2, PCI DSS, GDPR

Automation

Python, PowerShell, Bash, Terraform, policy-as-code

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cybersecurity Architect
Cybersecurity Architect

Finezi Inc. • Rosemead (CA)

On-site
USD 130,000 - 160,000
Cybersecurity Architect
Cybersecurity Architect

OneMain Financial • Washington

On-site
USD 140,000 - 200,000
Cyber Security Architect
Cyber Security Architect

SIDRAM TECHNOLOGIES • New York (NY)

Hybrid
USD 170,000 - 230,000
Hiring Event - Security Architecture & Engineering - Sep 24-25th 2026
Hiring Event - Security Architecture & Engineering - Sep 24-25th 2026

JPMorgan Chase & Co. • Jersey City (NJ)

On-site
USD 150,000 - 210,000
Hiring Event - Security Architecture & Engineering - Sep 24-25th 2026
Hiring Event - Security Architecture & Engineering - Sep 24-25th 2026

JPMorgan Chase & Co. • McLean (VA)

On-site
USD 120,000 - 160,000
Lead Cybersecurity Integrated Architect
Lead Cybersecurity Integrated Architect

Cox Enterprises • Hapeville (GA)

On-site
USD 100,000 - 130,000
Lead Cybersecurity Integrated Architect
Lead Cybersecurity Integrated Architect

Cox Enterprises • Peachtree Corners (GA)

On-site
USD 100,000 - 130,000
Manager, Cyber Architecture
Manager, Cyber Architecture

Recru • Houston (TX)

On-site
USD 130,000 - 160,000
Senior Security Engineer
Senior Security Engineer

Hiring Our Heroes • Arlington (VA)

On-site
USD 120,000 - 150,000
Systems Architect
Systems Architect

Compunnel, Inc. • Irving (TX)

On-site
USD 140,000 - 190,000