Hi,
I hope you are doing great !!!
Kindly go through the job description and let me know your thoughts..
Role: Security Architect 2
Location: Dimondale, Michigan – Hybrid-Interview(in-person)
Job Summary:
We are seeking an experienced Security Architect to join our team in Dimondale, Michigan. This hybrid role requires a seasoned cybersecurity professional with over 5 years of experience in cybersecurity-related functions. The ideal candidate will possess a deep understanding of information technology systems, compliance regulations, and risk management practices. A Bachelor’s Degree in cybersecurity or a related field is highly preferred, along with relevant cybersecurity certifications.
Key Responsibilities:
- Design, implement, and manage cybersecurity strategies to protect the organization’s IT infrastructure, data, and assets.
- Lead cybersecurity initiatives and projects, ensuring alignment with organizational goals and regulatory requirements.
- Evaluate and enhance information security policies, standards, and procedures to safeguard the organization from emerging threats.
- Collaborate with IT teams to ensure the secure deployment and management of virtualization, containerization (Docker), and cloud hosting technologies (IaaS, PaaS, SaaS).
- Oversee compliance practices, including risk assessment, monitoring, surveillance, and testing activities, ensuring adherence to regulatory frameworks.
- Serve as a risk management expert, providing meaningful input on risk drivers and ensuring appropriate risk assessment and prioritization.
- Analyze and respond to audit findings, ensuring that risk ratings are appropriately addressed and mitigated.
- Provide expertise in risk identification, control evaluation, testing, and technology controls through the use of risk and controls questionnaires, audit engagement processes, and other methodologies.
- Contribute to the development and implementation of Secure Application Development Lifecycle (SADLC) and Software Development Lifecycle (SDLC) processes and practices within the organization.
- Maintain up-to-date knowledge of cybersecurity trends, threats, and best practices, ensuring the organization’s security posture remains robust and resilient.
- Develop and maintain disaster recovery and business continuity plans to ensure the organization can recover quickly from any security incidents.
- Communicate complex security concepts and risks to non-technical stakeholders in clear, concise language.
- Required Skills and Experience:
- Cybersecurity Experience: 5+ years in cybersecurity-related functions.
- Educational Background: Bachelor’s Degree in cybersecurity or related field (highly preferred).
- Certifications: Cybersecurity certifications (e.g., CISSP, CISM, CEH) are a plus.
Technical Knowledge:
- Virtualization and Containerization (Docker)
- Cloud Hosting Operations and Technologies (IaaS, PaaS, SaaS)
- Windows Workstations/Servers Functionalities
- Linux Server Functionalities
- Identification and Authentication processes and technologies (SSO/Reverse Proxies)
- Encryption and Cryptography
- Disaster Recovery and Business Continuity processes
- Computer Networking
- Compliance Knowledge: In-depth understanding of compliance regulations and frameworks, including:
- NIST SP800-53 Rev 4 & 5
- Criminal Justice Information Services (CJIS) Security Policy (Version 5.9)
- The Privacy Act of 1974
- The Health Insurance Portability and Accountability Act of 1996 (HIPAA)
- The Family Educational Rights and Privacy Act (FERPA)
- Risk Management Expertise: Ability to assess, prioritize, and respond to risks effectively.
- Audit Engagement: Experience with audit response and controls substantiation.
- Secure Application Development: General knowledge of SADLC and SDLC processes and practices.
- Communication Skills: Excellent verbal and written communication skills.
- Analytical Skills: Strong analytical and problem-solving abilities.
- Attention to Detail: Self-motivated with strong attention to detail.
Desired Experience:
- Experience with Criminal Justice Information Systems
- Experience Leading Cybersecurity Initiatives and Project
Joseph Kiran
Senior Technical Recruiter
Moxieit Solutions Inc.
Email: [email protected]
Phone: 703-574-4832
44025 Pipeline Plaza #110 Ashburn, VA 20147
www.moxieit.com
Connect me at:linkedin.com
|
|
|