Cybersecurity Architect

Overview

On Site
$140,000 - $150,000
Full Time
No Travel Required

Skills

AWS
SIEM
DLP
compliance
IAM
PAM
SSO
Architecture

Job Details

Job Summary:
We are seeking a Cybersecurity Architect to design, implement, and enhance the security architecture of our enterprise environment. This role will be responsible for developing security frameworks, ensuring compliance with industry standards, and integrating security controls across on-premises and cloud environments. The Cybersecurity Architect will work closely with IT, DevOps, Application, and Security Operations teams to mitigate risks, enforce security best practices, and align security strategies with business objectives.
The ideal candidate has deep expertise in cybersecurity principles, application security, cloud security, network security, threat modeling, and risk management, with hands-on experience in designing secure architectures for large-scale enterprises.


Key Responsibilities:

  • Security Architecture Design: Develop and implement enterprise-wide security architectures, covering network, endpoint, cloud, and application security.
  • Cloud & Hybrid Security: Design secure cloud architectures for AWS, Azure, Google Cloud Platform, and Oracle, ensuring compliance with cloud security best practices (e.g., CIS Benchmarks, NIST, CSA CCM).
  • Security Tooling & Automation: Recommend and integrate security tools (SIEM, SOAR, EDR, XDR, IDS/IPS, WAF, DLP) to enhance visibility and response capabilities.
  • Secure SDLC & DevSecOps: Work with development teams to embed security in CI/CD pipelines, conduct secure code reviews, and enforce application security best practices.
  • Incident Response & Threat Modeling: Support SOC and Incident Response teams by developing threat models, response playbooks, and attack simulations.
  • Regulatory & Compliance Alignment: Ensure security programs comply with regulations such as PCI-DSS, SOX, GDPR, CCPA, HIPAA, CSA CSM, and NIST 800-53.
  • Identity & Access Management (IAM): Architect robust IAM solutions, including Multi-Factor Authentication (MFA), Single Sign-On (SSO), and Privileged Access Management (PAM).
  • Risk Assessment & Mitigation: Identify security gaps, assess threats, and recommend security solutions to mitigate risks effectively.
  • Security Awareness & Training: Guide stakeholders on secure architecture principles and risk mitigation strategies.

Required Qualifications:

  • Bachelor s Degree with a Cybersecurity focus
  • 10+ years of experience in cybersecurity architecture, security engineering, or a related role.
  • Strong knowledge of network security, cloud security, endpoint security, and application security.
  • Hands-on experience with security frameworks (NIST, CIS, MITRE ATT&CK, Zero Trust).
  • Expertise in AWS, Azure, Google Cloud Platform, and Oracle Cloud security best practices.
  • Experience integrating security with Kubernetes, Docker, and microservices architectures.
  • Proficiency in IDS/IPS, SIEM, EDR, SOAR, IAM, and encryption technologies.
  • Strong understanding of PKI, TLS/SSL, cryptography, and secure authentication mechanisms.
  • Experience with DevSecOps, Infrastructure-as-Code (IaC), and secure cloud automation.
  • Strong analytical and problem-solving skills, with the ability to communicate security concepts to technical and non-technical stakeholders.
  • Knowledge of machine learning & AI in cybersecurity.

Preferred Qualifications:

  • Master s Degree with a Cybersecurity focus
  • Certifications: CISSP, CISM, CISA, CCSP, AWS Security Specialty, Azure Security Engineer, or GIAC (GSEC, GCIH, GCIA).
Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.