Why This Role Stands Out
This remote Cybersecurity Architect role offers significant career growth by allowing you to shape an organization's security strategy and develop cutting-edge skills. You'll thrive here if you're a proactive, mid-senior level professional passionate about building robust security frameworks, and we encourage you to apply to join this forward-thinking team.
Quick Overview
Job Description
Position: Cyber Security Architect
Location: Remote/NJ, NY (Hybrid)
Duration: Full Time
1 DAY/WEEK ONSITE IN NJ, NY Or Remote in EAST who can work Once/Month with their own expenses.
Please submit along with availability for next 3 days multiple slots after 3 PM EST
Key responsibilities
- Define and maintain the organization’s cybersecurity strategy, principles, standards, and reference architectures.
- Design secure architectures for enterprise applications, networks, cloud platforms, APIs, data platforms, and infrastructure.
- Translate business, regulatory, and technical requirements into security controls and architecture patterns.
- Conduct threat modelling, attack-surface analysis, security risk assessments, and architecture reviews.
- Identify vulnerabilities, design gaps, single points of failure, and risks introduced by new technologies or system integrations.
- Define security controls for confidentiality, integrity, availability, authentication, authorization, monitoring, and data protection.
- Establish defense-in-depth strategies covering identity, network, endpoint, application, data, and cloud security.
- Review solution designs, technical specifications, infrastructure-as-code, and implementation plans for security compliance.
- Guide development and engineering teams in secure design, secure coding, DevSecOps, and security testing practices.
- Design and govern identity and access management solutions, including SSO, MFA, RBAC, ABAC, PAM, and zero-trust controls.
- Define security requirements for firewalls, WAF, VPN, IDS/IPS, SIEM, EDR, DLP, secrets management, and endpoint protection.
- Develop cloud-security architectures for AWS, Azure, or Google Cloud environments.
- Establish security logging, monitoring, alerting, detection, and incident-response requirements.
- Support vulnerability assessments, penetration testing, configuration reviews, and remediation planning.
- Assist incident-response and business-continuity teams during major security events.
- Evaluate security products, technologies, vendors, and managed security services.
- Maintain security architecture documentation, standards, diagrams, risk registers, and control mappings.
- Support audits and compliance initiatives involving ISO 27001, SOC 2, PCI DSS, GDPR, HIPAA, or applicable regulatory frameworks.
- Track changes in the threat landscape and update security controls and architecture accordingly.
Required qualifications
- 10–12 years of experience in cybersecurity, information security, infrastructure security, cloud security, or security architecture.
- 3+ years of experience designing and reviewing enterprise security architectures.
- Strong knowledge of network security, application security, cloud security, IAM, cryptography, and security operations.
- Experience with threat modelling frameworks such as STRIDE, MITRE ATT&CK, or equivalent methodologies.
- Strong understanding of security principles including least privilege, zero trust, defense in depth, secure-by-design, and separation of duties.
- Experience conducting security risk assessments and developing risk-treatment plans.
- Hands-on knowledge of security controls, vulnerabilities, penetration testing, incident response, and disaster recovery.
- Experience working with architecture frameworks, security policies, control standards, and governance processes.
- Strong communication skills, with the ability to explain complex security risks to technical and business stakeholders.
- Demonstrated ability to influence engineering teams and drive security improvements across projects.
Preferred qualifications
- Experience securing AWS, Azure, or Google Cloud environments.
- Knowledge of Kubernetes, containers, service meshes, serverless systems, and cloud-native architectures.
- Experience with DevSecOps tools, CI/CD security, SAST, DAST, SCA, IaC scanning, secrets scanning, and container security.
- Familiarity with SIEM, SOAR, EDR, XDR, WAF, CSPM, CNAPP, DLP, and vulnerability-management platforms.
- Experience with API security, microservices security, OAuth 2.0, OpenID Connect, SAML, and JWT.
- Knowledge of data classification, encryption, tokenization, key management, and privacy engineering.
- Experience with security automation using Python, PowerShell, Terraform, or similar tools.
- Familiarity with AI/ML security, LLM application security, prompt injection, data leakage, and model governance.
- Experience with regulatory and security frameworks such as NIST CSF, NIST SP 800-53, CIS Controls, ISO 27001, SABSA, COBIT, and OWASP.
- Professional certifications such as CISSP, CCSP, SABSA, CISM, GIAC, AWS Security Specialty, or Azure Security Engineer.
Technical skills | ||||||||||||||||||||
| ||||||||||||||||||||
|
Similar jobs
- DS
Sr Security & Compliance Analyst
NewDia Software Solutions
Lansing, MI🇺🇸Hybrid16 hours agoAgileAdministrative - IS
HSM Security Engineer
NewInnova Solutions, Inc
Addison, TX🇺🇸$71 - $76/hrOn-site16 hours agoGCPOracleSQL+15Technology - IN
Certified Security Engineer with Entra ID
InfoPeople Corp
Boston, MA🇺🇸Hybrid3 days agoTCP/IPActive DirectoryAzure+1Technology - KT
Direct Client: Security & Compliance Analyst @ Lansing, MI – Hybrid – Only Locals
NewKSN Technologies, Inc.
Lansing, MI🇺🇸Hybrid16 hours agoAgileAdministrative - DT
Security & Compliance Analyst - Lansing, MI
NewDigital Technology Solutions
Lansing, MI🇺🇸Hybrid16 hours agoAgileAdministrative - HA
SAP Security Engineer
NewHAYS
NE🇺🇸$124.5k - $150.1k/yrHybrid16 hours agoPerlPowerShellPythonTechnology