Epicareer Might not Working Properly
Learn More

Senior Security Architect

Salary undisclosed

Apply on

Availability Status

This job is expected to be in high demand and may close soon. We’ll remove this job ad once it's closed.


Original
Simplified
This position is 100% remote opportunity. Required:
  • Bachelor's or master's degree in computer science, information systems, cybersecurity or a related field or equivalent experience/certification.
  • 10+ years overall Information Technology experience with:
  • 5+ years of Information Security experience in security engineering with experience in three or more of the following areas
    • Conducting security reviews and identifying risks and gaps
    • Performing security accreditations
    • Developing security architectures and strategies
    • Developing Enterprise security patterns
    • Working with development teams and vendor teams for implementing compensating controls
  • Experience in reviewing and developing Security Architectures and identifying security risks/gaps as well as mitigation strategies
  • The security architect should have 3+ years combined experience in five or more of the following areas:
    • Full-stack knowledge of IT infrastructure:
      • Applications
      • Databases
      • Operating systems Windows, Unix, and Linux
      • IP networks WAN and LAN
      • Web Proxy
      • Front End Web Protections (e.g. Akana)
      • Bot protections and other internet monitoring and protection method and technologies
      • Knowledge of API Architectures
    • Cryptography and current cryptographic standards, including PKI
    • Direct, hands-on experience or a strong working knowledge of vulnerability management tools
    • Working knowledge of the OWASP Top 10

Preferred:
  • Strong working knowledge of IT service management (e.g., ITIL-related disciplines):
    • Change management
    • Configuration management
    • Asset management
    • Incident management
    • Problem management
  • Ability to provide Security Requirements for areas including but not limited to; Cloud Computing, Application Development, IAM, Cryptography, and Infrastructure design and standards
  • Ability to understand large complex integrated solutions and provide the security needed between systems
  • Experience in developing Enterprise Security Strategies.
  • Documented experience and a strong working knowledge of the methodologies to conduct threat-modeling exercises on new applications and services
  • Experience designing the deployment of applications and infrastructure into internal, hybrid, and public cloud services
  • Ability to conduct independent research
  • Strong abilities and experience in documentation and written communication for diverse audiences
  • Experience working with diverse and distributed global teams.
  • Current information security certification(s), such as Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), ISC2 Certified Cloud Security Professional (CCSP), GIAC certifications, ITIL
  • Knowledge of Industry Standards such as NIST Cybersecurity Framework (CSF), PCI-DSS, COBIT, CSA, MITRE ATT&CK & CAPAC, STRIDE, NIST 800-53, CIS Benchmarks, etc.
  • Knowledge of securing technologies such as, but not limited to; SaaS services (i.e., O365, Salesforce), Application Design, Container Platforms (ie. Docker, Kubernetes), APIs, Serverless, Network Infrastructure, Operating Systems, Identity and Access Management
  • Knowledge of SDLC (Waterfall/Agile), DevSecOps, and good understanding of the ITIL Framework
  • Knowledge of SAFe Agile Methodologies
  • Strong negotiating, influencing and problem resolution skills
  • Ability to effectively prioritize and execute tasks in a high-pressure environment
  • Ability to assess customer/client needs, creatively approach solutions, decide and influence appropriate courses of action
Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.
Report this job