Security Architect
TEKsystems
Description
Security Architect, within the Platform Security will work with the various assigned security teams:
• Top Skills' Details
1. Hands on application penetration testing is needed. In depth knowledge of OWASP Top 10 and other advanced appsec issues such as SSRF, Domain takeover, etc
2. Clearly articulate security risks to application teams and help them in remediating the security issues.
- Secure Code review Experience
- Comes from a Developer (Java) background . Minimum ability to read Java code
to help apps team fix bugs
3. Experience with SAST,DAST, IAST Tools.
4. AWS experience is a plus.
5. Certifications such as GWAPT, Portswigger academy, OSWE is a plus.
Top Skills' Details
Must be Hands on Technical (not looking for manager or someone to give only direction)
Must have strong Cloud Security Experience
10+ years of hands-on technical experience in Information security with a focus on Security Architecture
Financial Services
must have Cloud Security and Secondary Big Data Security or Application Security
Responsibilities:
• Develops, reviews, edits, and provides recommendations for new and existing security architecture design artifacts such as reference and solution architectures along with framework mapping to NIST, CIS, ISO etc.
• Provides security architecture guidance to internal customers and security teams for larger and more significant engagements.
• Subject matter expert in at least one security domain such as IAM, Application Security and/or Data Protection in addition to Cloud Security
• Support development of security patterns
• Assist with development and documentation of security architecture framework and defining security requirements for emerging technology/ platforms and applications.
• Maintain and update inventory of security tools/capabilities and mapping to internal controls & threat library/ framework.
• Conduct and facilitate security reviews, threat modelling and design reviews through the development lifecycle.
• Develops and recommends security designs and frameworks for technology systems by defining process and architecture.
• Participates on projects and recommends secure solutions based on policies, standards and best practices.
• Provides Information Security subject matter expertise in various risk assessments.
• Ensuring the security of cloud-based data and applications against unauthorized access, theft, and other threats
• Provides subject matter expertise for customer-initiated reviews of business security practices.
• Work closely with other Solution/Enterprise Architects to align the security requirements and the solution design with the customers’ business drivers and demonstrate unique value.
• Performs other related duties as assigned.
• Participate in customer conversations to define the security requirements and overall technical architecture for data and related solutions.
Qualifications & Skills:
• Bachelor's degree in computer science, information security, or a related field (master’s degree preferred)
• 10+ years of hands-on technical experience in Information security with a focus on Security Architecture, Vulnerability management, Secure development lifecycle and/or Security Operations/Engineering
• 5+ years of Cloud Security experience across Data, Application, IAM and Infrastructure domains (on multi-cloud such as AWS, Azure)
• Industry certifications such as CISSP, CISM, or CISA highly desired
• AWS Security and/or Azure Security certifications preferred
• Familiarity with major security frameworks & standards such as NIST, ISO, PCI, and FedRAMP
• Experience with Big-Data security/ analytics, Application Security and/or IAM required.
• Experience in data governance and data security best practices preferred
• Understanding of data security frameworks, data quality frameworks, metadata management & data catalogs and data governance
• Thorough understanding of modernizing data technology and information architecture on cloud
• Experience with cloud-native security tools and technologies (e.g., SIEM, CNAPP, CSPM, runtime monitoring)
• Experience with DevOps and CI/CD tooling
• Knowledge/ experience with containers/microservices
• Knowledge of the enterprise information technology (IT) architectural concepts and security patterns (e.g., baseline, validated design, and target architectures)
• Ability to design security architectures/ develop patterns and frameworks.
• Skill in determining how a security system should work (including its resilience and dependability capabilities) and how changes in conditions, operations, or the environment will affect these outcomes.
• Knowledge of integration and optimization of cyber security tools/ capabilities
• Understanding of industry trends for cybersecurity risk & threat intelligence, and governance
• Strong analytical and problem-solving abilities
• Advise stakeholders and translate business requirements into secure, scalable, and reliable cloud solutions.
• Excellent communication and collaboration skills
• A growth mindset and willingness to learn & continuously improve.
Skills
Cloud, Security architecture, Aws, Azure, Big Data Security, Application Security
Top Skills Details
Cloud,Security architecture,Aws,Azure,Big Data Security,Application Security
Additional Skills & Qualifications
Candidate must be hands on Technical
not looking for a manager or someone to just give the team direction
Help develop patterns
These are new roles as is building Security Architecture Program Team
Experience working in Large Financial Services organization is strongly preferred
Key:
cloud security (AWS, Azure)
* good application security hands on, IAM, big data, infrastructure domains
Certs - NIST, PCI
Pay and Benefits
The pay range for this position is $85.00 - $95.00/hr.
Eligibility requirements apply to some benefits and may depend on your job classification and length of employment. Benefits are subject to change and may be subject to specific elections, plan, or program terms. If eligible, the benefits available for this temporary role may include the following: • Medical, dental & vision • Critical Illness, Accident, and Hospital • 401(k) Retirement Plan – Pre-tax and Roth post-tax contributions available • Life Insurance (Voluntary Life & AD&D for the employee and dependents) • Short and long-term disability • Health Spending Account (HSA) • Transportation benefits • Employee Assistance Program • Time Off/Leave (PTO, Vacation or Sick Leave)
Workplace Type
This is a hybrid position in Rockville,MD.
Application Deadline
This position is anticipated to close on Feb 25, 2025.
About TEKsystems:
We're partners in transformation. We help clients activate ideas and solutions to take advantage of a new world of opportunity. We are a team of 80,000 strong, working with over 6,000 clients, including 80% of the Fortune 500, across North America, Europe and Asia. As an industry leader in Full-Stack Technology Services, Talent Services, and real-world application, we work with progressive leaders to drive change. That's the power of true partnership. TEKsystems is an Allegis Group company.
The company is an equal opportunity employer and will consider all applications without regards to race, sex, age, color, religion, national origin, veteran status, disability, sexual orientation, gender identity, genetic information or any characteristic protected by law.
Confirm your E-mail: Send Email
All Jobs from TEKsystems