Enable job alerts via email!

Data Architect, ISD (Hybrid)

Children’s Hospital of Orange County

California

On-site

USD 120,000 - 180,000

Full time

28 days ago

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

An established industry player is looking for a seasoned Security Architect to lead cloud security initiatives. In this pivotal role, you will design secure architectures that comply with stringent federal standards, ensuring the integrity and safety of data in the cloud. You will collaborate with engineering and compliance teams to implement robust security measures and educate stakeholders on best practices. This position offers a unique opportunity to influence security strategies within a dynamic environment, driving the organization's commitment to excellence in cloud security. If you're passionate about safeguarding cloud infrastructures and ensuring compliance, this role is perfect for you.

Qualifications

  • 15 years of experience in cloud technologies and application development.
  • Expertise in cloud security with AWS, GCP, and Azure.
  • Strong communication skills and experience in CI/CD.

Responsibilities

  • Design and implement secure cloud architectures meeting FedRAMP requirements.
  • Collaborate with teams to draft security standards and implement monitoring.
  • Analyze threats and vulnerabilities within the FedRAMP boundary.

Skills

Cloud Security
Security Architecture
FedRAMP Compliance
AWS
GCP
Azure
Python
Java
CI/CD
Infrastructure as Code

Education

Bachelor's degree in Computer Science
Master's degree in Information Technology

Tools

VMWare
Kubernetes
Docker
APIs
Pegasystems
Spring
.NET
Adobe Experience Manager

Job description

Note : Candidate needs to have U.S. Citizenship!

Summary Of Position Role / Responsibilities

We are seeking an experienced Security Architect FedRAMP to join our Information Security team. In this role you will design secure cloud architectures and security control plane components and interconnections. Youll define and document FedRAMP boundaries and recommend management plane and customer data plane configurations that meet stringent federal standards. With your deep expertise in (multi)cloud security encryption networking multitenancy isolation and defense in depth youll empower Rubrik to achieve and maintain FedRAMP (High) and Department of Defense Impact Level 5 authorization.

Essential Functions Of The Job

  1. Secure Architecture Leadership: Design and implement cloud security architectures (SaaS / application management customer data and security control planes) that meet FedRAMP and highly controlled Federal security requirements.
  2. Collaborate with Compliance to design and implement controls specify engineering standards and requirements and ensure audit readiness with technical and regulatory expertise.
  3. FedRAMP Technical Authority: Provide technical leadership on the authorization boundary ensuring FedRAMP compliance.
  4. Cloud Security Expertise: Recommend secure configurations for cloud services (e.g. AWS GovCloud Azure Government) balancing FedRAMP and security best practices.
  5. Translations: Educate cross functional partners (Engineering and IT) on how compliance drives architecture detailing allowed encryption (e.g. FIPS 1402 prohibited configurations and optimal services.
  6. Tool Guidance: Select security tools and microservices to meet federal requirements.
  7. FedRAMPSpecific Guidance: Advise on requirements like container scanning (e.g. runtime security image integrity) and design of Infrastructure as Code.
  8. Documentation: Develop and review deliverables including Authorization Boundary Network and data flow diagrams Front Matter for the System Security Plan (SSPs) and provide input to Change Control Plan Contingency Plan and Incident Response Plan.

About the team:

The Information Security organization advances the overall state of security at Rubrik through purposeful initiatives and coordination of large security projects. Information Security builds technologies tools and processes to better enable teams at Rubrik to develop secure software and protect data and systems with appropriate security controls. Information Security also develops systems to monitor and respond to attacks against our systems provides awareness education to teams on security best practices for data protection and ensures data sharing relationships with third parties in order to securely protect Rubrik information.

What you’ll do:

  1. Partner with engineering teams across Rubrik to create secure cloud infrastructure design and deployment architectures utilizing threat models and risk analysis documentation specific to a FedRAMP and IL4 environment.
  2. Work with development teams operations governance and other stakeholders to draft security standards and controls and implement monitoring alerting and governance to adhere to those specifications.
  3. Support incident responders in analyzing applicable threats vulnerabilities controls and residual risks inside and out of the FedRAMP boundary.
  4. Analyze and harden existing applications infrastructure automation and deployment processes partnering with multiple teams to design & implement solutions within the space.
  5. Execute Security impact Analysis reviews for all FedRAMP changes coming into the change management process.

Experience you’ll need:

  1. Bachelors degree required; BS or MS in Computer Science Information Technology or a related field.
  2. 15 years of experience including cloud technologies technical architecture and application development.
  3. 8 years experience in cloud security with experience across AWS GCP and / or Azure infrastructure design.
  4. 2 years experience in VMWare and / or Network security modeling.
  5. Broad knowledge of private and public cloud attack vectors and exploits.
  6. Subject matter expertise in CI / CD Cloud APIs and Identity management.
  7. Deep understanding of compute network and storage technologies in AWS GCP and / or Azure.
  8. Programming experience in Python Go or Java.
  9. Deep security policy subject matter expertise in at least one major public cloud provider (AWS GCP Azure).
  10. Experience with deploying and securing SaaS applications and cloud environments at scale.
  11. Working experience with CI / CD pipeline containerization (Kubernetes Docker etc) and MicroServices.
  12. Knowledge of IaC (Infrastructure as Code) concepts and implementing standards within them.
  13. Understanding of cloud security maturity model frameworks and how to apply them.
  14. Strong written and verbal communication skills.

Additional Requirements:

Due to the criteria and security levels for Rubrik's FedRAMP program this position will require the following:

  1. U.S. citizenship at the time of hire.
  2. Residence within the contiguous United States (i.e. the lower 48 states and the District of Columbia); and
  3. Willingness to undergo a Single Source Background Investigation if required.

When hired for a position where access to Moderate Risk criminal justice information is required the employee must complete a fingerprint-based national criminal history background check within 30 days after the employee's start date.

Key Skills:

APIs, Pegasystems, Spring, SOAP, .NET, Hybris, Solution Architecture, Service-Oriented Architecture, Adobe Experience Manager, J2EE, Java, Oracle.

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.