Overview
Skills
Job Details
Opportunity
Welcome to the blue team! As a Security Architect, you will drive security innovation and play a key role in the definition, maintenance, evolution and advocacy of our security posture.
The Work
You will work with our team of Architects to craft secure design patterns, perform security assessments, and review system designs using a risk-based, threat-modeling approach. The Security Architect will have the following core responsibilities:
- Partner with business and technology teams to define security designs that meet security requirements and enable business objectives
- Create, maintain and document security architectures & design patterns to be used by technology teams
- Develop relationships, repeatable processes, and resources to usher security champions in the company
- Perform threat-modeling as required to substantiate the recommendations & designs
- Participate in the development and maintenance of security policy, standards & reference materials
- Review and contribute to infrastructure-as-code representations of architecture changes and designs
Candidate
You are passionate, curious, and self-driven. You enjoy understanding and solving complex problems with incomplete information. You may not know everything, but you have a solid foundation and can untangle, self-learn, and identify creative ways to solve problems. Likewise, you should be extremely comfortable architecting secure cloud-based systems, and you should be able to convey security threats, business implications & architectural requirements to both technical & non-technical audiences.
Skills and Experience Baseline
- Ability to collaborate & communicate effectively with technical & non-technical teams
- Extensive experience designing & building secure cloud-native solutions, especially in Amazon Web Services (AWS)
- Ability to partner with multiple stakeholders to derive accurate threat models for new/existing systems and reduce information security risk on systems
- Knowledge of Infrastructure-as-Code (IaC) principles & experience reviewing infrastructure configurations/changes in this format (e.g., CloudFormation, Terraform, etc.)
- Strong technical foundations in modern application/microservice architectures & related technologies (e.g., Containers, Kubernetes, Service Mesh, RESTful/gRPC APIs, etc.)
- Understanding of CI/CD & Secure Development processes & tools (e.g., Jenkins, Git, etc.)
- Strong foundation in cybersecurity landscape, especially in identity & access management, network access control and secure configuration management
Education
- Bachelor s degree in Information Technology, Computer Science, or related field; or equivalent experience.
Additional Skills & Qualifications You May have
- Familiarity with AWS Well-Architected Framework
- Familiarity with scrum project management tools (e.g., Jira)
- Professional certifications such as: AWS Certified Solutions Architect, AWS Cloud Practitioner, Certified Cloud Security Professional (CCSP), Certified Secure Software Engineer, SANS/GIAC Certificates, or Certified Information Systems Security Professional (CISSP)
- Experience working in Financial Services or FinTech space