We are seeking a Principal Cybersecurity Architect to design, secure, and govern customer-facing lab environments used for infrastructure testing, solution validation, equipment staging, and datacenter deployment preparation. This is a hands-on security architecture role focused on network security, zero-trust architecture, infrastructure protection, multi-tenant isolation, secure customer connectivity, and security controls across dynamic lab environments.
Responsibilities
- Design and enforce strict multi-tenant isolation across customer lab environments.
- Architect VLAN/VRF segmentation, micro-segmentation, firewall zoning, ACLs, and inter-VLAN routing controls.
- Develop zero-trust security models ensuring customers cannot access other tenant environments.
- Define secure provisioning and decommissioning standards for customer lab environments.
- Conduct segmentation validation, penetration testing, traffic analysis, and configuration reviews.
- Architect secure customer connectivity using ZTNA, IPSec/SSL VPN, MPLS, dedicated circuits, and secure remote-access gateways.
- Define authentication, authorization, MFA, RBAC, least-privilege access, and time-bound access controls.
- Design remote-access architectures with centralized logging, session monitoring, and integration with SIEM/SOC platforms.
- Establish security architecture standards for firewalls, routers, switches, network access controls, endpoint security, and infrastructure services.
- Work with network and infrastructure engineering teams to implement secure designs.
- Review network diagrams, firewall rules, security configurations, and infrastructure changes.
- Identify architectural risks and recommend remediation strategies.
- Define security logging and monitoring requirements across lab infrastructure.
- Integrate network and security controls with SIEM, IDS/IPS, NDR, vulnerability management, and SOC workflows.
- Develop security standards, architecture documentation, and operational procedures.
- Support security assessments, vulnerability remediation, incident investigations, and audit activities.
Requirements
Required Skills: Network Security, Zero Trust, Remote Access, Security Technologies, Networking, Architecture, Cloud/Infrastructure, Security Frameworks, Penetration Testing
Preferred Skills: DHCP, Auditing, Authentication, Access Control, Dragon NaturallySpeaking, Cyber Security, IDS, Penetration Testing, Enterprise Networks, Multi-factor Authentication, Network, Infrastructure Architecture, OSPF, Network Security, TCP/IP, Virtual Private Network, Vulnerability Management, Network Design, RBAC, IPS, Border Gateway Protocol, Routing, Virtual Routing and Forwarding
Ideal Candidate
- Principal/Senior-level Cybersecurity Architect or Network Security Architect
- Strong hands-on background in enterprise network security and infrastructure architecture
- Proven experience designing segmented or multi-tenant environments
- Strong understanding of Zero Trust and secure remote-access architectures
- Able to work closely with network, infrastructure, engineering, and customer-facing teams
- Excellent communication and documentation skills
- Comfortable operating in a dynamic environment where infrastructure and customer requirements change frequently