Cybersecurity Architect100% Remote (must live in the United States)SummaryAs the Cybersecurity Architect, you will report to the VP of Cybersecurity, and have dynamic your responsibilities to design, develop, optimize, and oversee our company's IT/cyber security covering all projects, including projects currently in progress, in addition to new projects in the future. You will have ownership of all cybersecurity technical strategy, and accountability for engineering and "buck stops here” technical support oversight. As such, you will interface with both business stakeholders, to ensure the company's security posture is being optimized across departments, and the technical teams to deliver on these initiatives.
The role will be the technical champion for all cyber-specific technologies selected for use within the company, including partnering with development teams to drive SecDevOps/DevSecOps best practices.
Several areas of note that you'll be responsible for: hybrid cloud infrastructure (Microsoft environment), encryption, IAM, DLP, MDM, monthly and quarterly reporting standards, SIEM/SOC instrumentation, and all other components of a cyber infrastructure.
What you'll be doing- Design, Implement, Document, and maintain complex security infrastructure to support the innovative, disruptive technologies of the business
- Advise and mentor IT partners to maintain and follow Security Architecture Best Practices, and established standards, and provide solutions/proof of concepts.
- Create, document, and promote a detailed cybersecurity architectural roadmap.
- Create, document, and promote security solutions in partnership with our data scientists, cloud architects, and dev ops organizations.
- Conduct platform, tool, and process assessments to evaluate existing security controls, identify weaknesses, and make recommendations and process improvements.
- Assess security threats and risks to define and implement appropriate security models.
- Provide guidance to junior security staff and perform deep technical research on the security impacts of new technology.
- Ensure that the platform's security risk controls, mitigations, and approach are aligned with standards, IT, and business goals.
- Provide guidance to ensure policies and best practices are implemented across the firm.
- Broad technical experience in several security disciplines including endpoint and platform (Windows, Azure, and Mobile) controls, encryption/tokenization, identity and access management, data protection, and a myriad of other technologies.
- Regularly reviewing emerging trends, hype cycles, and magic quadrant guidance from industry researchers to ensure the firm applies best in class controls to protect our information and reputation
Skills we're seeking- Bachelor's Degree is required, ideally in an IT or security related field
- 10+ years of experience with technical Cybersecurity, Cloud Security, IT Security Ops and/or Network Security Engineering/Architecture experience
- 3+ years of experience as an Architect specifically or security leader specifically
- Must still be comfortable with "buck stops here” security technical support and engineering
- Strong cloud security experience
- Ideally within the Azure and the O365 ecosystem
- Strong IAM Experience
- Ideally working with vendors like Okta
- Strong experience with Network and Endpoint Security
- Ideally working with vendors like Crodstrike, Palo Alto, Fortinet, etc.
- Experience with SIEM, Incident Response, IDS/IPS
- Experience managing security and technology roadmaps
Nice to have experience- Experience with DLP
- Experience with SecDevOps/DevSecOps best practices to partner/mentor with software development/product/DevOps teams to improve security posture within the SDLC
- Experience presenting to executive level stakeholders
- Ability to communicate complex technical concepts to diverse audiences and guide leadership on value-added calculations and ROI of the technology the team is building
- Experience with IT Security Frameworks such as ISO27001, PCI DSS, and NIST 800-53.
- Experience building security reference architectures for complex information systems based on industry frameworks
- Relevant IT Security certifications
- Master's Degree, ideally in IT or a security related field