
Security Architect
Posted Sep 4

Posted Sep 4
This is a fully remote position, open to applicants in Illinois, +1 more state.
• Execute the strategy established by the CISO, contributing insights as necessary.
• Evaluate, assess, and influence technology functions to promote the maturity of security-critical processes.
• Analyze security profiles and submissions from suppliers and partners.
• Oversee existing relationships and tools to ensure full utilization of licenses and entitlements.
• Align security initiatives and benchmarks with established risk and maturity frameworks.
• Stay informed about emerging tactics, tools, and solutions, and offer advice to stakeholders.
• Collaborate with community and sector-specific organizations and working groups.
• Advocate for defense in depth by layering protective controls and segmenting systems.
• Design, architect, and implement security solutions, tools, and services for the cloud network environment in partnership with engineering teams.
• Develop and uphold requirements and standards that support security operations, threat detection, intelligence, and incident response.
• Perform regular system tests and ensure ongoing monitoring of network security.
• Establish disaster recovery protocols and conduct security breach drills.
• Respond to security incidents and provide analysis following events.
• Collaborate with product management and software engineering teams throughout the SDLC to ensure secure application design and execution.
• Utilize threat models to outline requirements and identify gaps.
• Conduct security assessments of infrastructure, products, and services.
• Test web3 and web2 applications and their underlying systems for vulnerabilities using both tools and manual techniques; manage remediation until resolution.
• Assist in the development of secure coding standards and training resources.
• Investigate blockchain-specific vulnerabilities and integrate findings into security practices.
• Offer technical expertise on trends and emerging standards in cloud security and blockchain.
• Enhance, implement, and configure scalable security technologies while improving detection and response capabilities.
• Implement, review, and maintain access controls and identity roles within cloud infrastructure.
• Assist with tooling evaluations and deployments across the Security program.
• Support the CISO and Security team on additional security projects as required.
• At least 10 years of experience in designing and implementing security infrastructure services in AWS and other security solutions such as IAM, EDR, MDM, SIEM, KMS, and PAM.
• A minimum of 5 years of experience in blockchain security.
• Experience in Application Security, including SAST, DAST, open vulnerability management, and penetration testing.
• Comprehensive understanding of industry and corporate technology standards for security operations.
• Experience in developing cybersecurity and IT architectures.
• Proven ability to take ownership and collaborate with cross-functional teams to manage multiple projects simultaneously under pressure.
• Strong analytical and problem-solving capabilities.
• Excellent written and verbal communication skills, along with strong presentation abilities for both technical and non-technical audiences.
• Extensive experience with identity management solutions, trends, and practices.
• Practical experience with AWS services and tools, including CloudTrail, CloudWatch, SecurityHub, GuardDuty, Inspector, Shield, WAF, Secrets Manager, and Lambda.
• Strong grasp of secrets management and confidential computing.
• Familiarity with serverless computing, including AWS Lambda, and container implementations using EKS, Kubernetes, etc.
• Experience leading the design and security reviews of cloud-based systems.
• Awareness of security concerns related to language models, autonomous agents, machine learning, and AI-augmented systems.
• Ability to work closely with software, SRE, and cloud engineering teams.
• Software development experience is an advantage.
• CISSP, OSCP, GIAC, and/or AWS Certified Security Specialty certifications are a plus.
• Healthcare Insurance: Zerohash covers approximately 100% of employee premiums and a portion for spouse/children (U.S. only).
• Vision & Dental Insurance (U.S. only).
• Opportunity to earn equity.
• Maternity & Paternity leave (after 6 months).
• WeWork All Access Membership.
• Work From Home Yearly Stipend.
• Learning & Development Yearly Stipend (after 6 months).
GuidePoint Security
Gravie
Your Software Supplier
Dragonfli Group
Get handpicked remote jobs straight to your inbox weekly.