Negotiable
Outside
Remote
USA
Summary: The Cyber Security Architect role focuses on designing and implementing security measures for both AWS and on-premises datacenters, with a strong emphasis on compliance with FedRAMP and FISMA controls. The position requires extensive experience in cyber security and cloud security services, along with leadership capabilities to mentor a team of security engineers. The architect will also be responsible for conducting security assessments, managing vulnerabilities, and ensuring compliance with regulatory standards. This role is remote and classified as outside IR35.
Key Responsibilities:
- Design and implement security measures for AWS and on-prem datacenters.
- Lead and mentor a team of Security Engineers.
- Conduct comprehensive security assessments and manage the vulnerability lifecycle.
- Monitor and analyze the organization’s security posture.
- Coordinate with cross-functional teams to resolve security issues.
- Ensure compliance with regulatory standards and internal policies.
- Create security reports for senior management and executives.
- Stay current with emerging security trends and technologies.
Key Skills:
- 7+ years of experience in IT with a focus on Cyber Security & Cloud security services.
- 5+ years of experience in major security domains like Cloud Security Engineering and IT Compliance.
- Strong experience with enterprise security solutions such as WAF, IPS, and SIEM.
- Experience with regulatory requirements like NIST, PCI, and HIPAA compliance.
- Architecture certification from a major cloud platform (Google, Amazon, Azure).
- CISSP certification.
- Strong leadership and mentoring skills.
- Ability to drive incident response processes.
Salary (Rate): undetermined
City: undetermined
Country: USA
Working Arrangements: remote
IR35 Status: outside IR35
Seniority Level: undetermined
Industry: IT
Role Title: Cyber Security Architect
Mandatory Skills: AWS and On-prem Datacenter security design & implementation Splunk ES design & implementation Assessment of FedRAMP & FISMA controls
Role Description Skills:
- At least 7+ years of experience in the IT industry with strong technical knowledge on Cyber Security & Cloud security services.
- Minimum 5+years of experience in leading any major security domains like Cloud Security Engineering, Security risk management, DevSecOps, IT Compliance, Information Security assessments, Security project management.
- Lead and mentor a team of Security Engineers, fostering a culture of collaboration, innovation, and continuous improvement.
- Experience in designing and implementing a Secured and highly available, fault-tolerant architectures for cloud-based applications.
- Good understanding of security controls related to regulatory requirements, such as NIST, PCI, ISO 27001, HIPAA compliance etc
- Strong experience working on enterprise security solutions such as WAF, IPS, DDOS, and SIEM.
- Experience working on managing alerts and insights from security solutions like SIEM, SOAR, CSPM, EDR & AppSec toolsets.
- Strong experience working on industry leading security toolsets like Splunk ES, Trend Micro, Prisma, SonarQube, Tenable, and Cloud native security services.
- Ensure compliance with regulatory standards & internal policies across all IT systems and processes. Experience in performing and/or participating in technical assessments in direct support of compliance efforts such as (FedRAMP, HIPAA, PCI, GxP, SOC2, ISO27001, ISO27002)
- Conduct comprehensive security assessments and actively manage the vulnerability lifecycle.
- Monitor and analyze the organization s security posture and report on threats, breaches, and security weaknesses.
- Coordinate with cross-functional teams to resolve security issues and enhance the overall security infrastructure.
- Experience in developing and reviewing system security plans, information security policies and procedures, contingency plans, incident response plans, etc.
- Update & maintain security policies, procedures, and guidelines in accordance with regulatory requirements.
- Ability to drive incident response process, including investigation and reporting of security incidents.
- Experience creating security reports for senior management and executives.
- Architecture certification (Google, Amazon, Azure) from a major cloud platform.
- Stay current with emerging security trends, threats, and technologies.
- Must be CISSP certified.