No SPONSORSHIP - NO OPT
EXPERT CYBER SECURITY ARCHITECT / ENGINEER- Contract to Hire
This will be a contract to hire.
Salary - $230 - 254K at the end of the contract
Position is 100% remote.
Job Description:
We are looking for a very very very senior architect/engineer. The resumes must be written and formatted well. They need to come from large enterprise companies and have experience in enterprise security, threat, vulnerability, red-teaming, applications, infrastructure, networking, governance, cloud, Azure is a must, Oracle is a plus, frameworks would be NIST , SOC, ITIL, and FedRAMP would be huge, heavy assessment experience across the enterprise, etc.
Responsibilities
Ideal candidate will reside local to Oakland, CA
(Please do note submit candidates from: Alaska, N. Dakota, Nebraska, HI, OK, VT, Maine, W. Virginia, NH, WY, Puerto Rico, DC)
Job Description:
The Expert Cyber Risk Management Engineer assesses enterprise information security solutions and services, including authentication and authorization, public key infrastructure, data loss prevention, third-party risk management, and security event analytics. This role requires proactive research and analysis of complex, enterprise-scale cybersecurity challenges. In addition to evaluating processes and technologies, the engineer advises on the development and maintenance of security systems.
Responsibilities
Develop processes, maintain internal frameworks, create documentation templates, and implement tooling to support and mature assurance service delivery.
Collaborate with security specialists, enterprise architects, and other technical leaders to ensure security solutions sufficiently mitigate risks and align with business objectives and regulatory requirements.
Analyze risk exposure and consult on the design of cyber risk management capabilities where improvements are needed.
Assess the effectiveness of cybersecurity capabilities, provide guidance on managing risks associated with ineffective controls, and influence decision-making by educating stakeholders.
Track and report issue status, ensuring timely resolution of identified risks.
Communicate cybersecurity risks and solutions to technical and non-technical audiences across all levels of management.
Advise on enterprise-level decisions by presenting insights to senior leadership, including technology executives and governance bodies.
Collaborate with legal, compliance, and audit teams to ensure alignment with regulatory expectations and contractual obligations.
Maintain ongoing communication with leadership regarding developments in assigned areas and contribute to special projects as needed.
Provide thought leadership and consulting support in the creation and maintenance of security-enabled processes across cybersecurity and technology teams.
Define and track key performance indicators (KPIs) for cyber risk management capabilities
Stay current with emerging threats, trends, and technologies, and provide strategic recommendations to enhance the organizations security posture.
Contribute to the development and enforcement of cybersecurity policies, standards, and guidelines to ensure consistent and effective practices.
Advise on the selection and implementation of security tools and technologies aligned with the cyber risk management strategy.
Qualifications
Pre-Screen Questions
How have you used KPIs or metrics to demonstrate whether a cyber risk management program is improving over time?
What experience do you have with Azure or Oracle cloud environments in a security context and what specific security controls or assessments have you performed in either platform?
Do you have any military service or experience supporting defense or government clients?